New CSS Attacks Break Webmail Defenses to Steal Passwords and Tokens
New research presented at Black Hat USA 2026 reveals that CSS and HTML techniques can break out of email message boundaries to…
New research presented at Black Hat USA 2026 reveals that CSS and HTML techniques can break out of email message boundaries to…
Cybersecurity researchers at Accomplish AI have disclosed a sandbox escape vulnerability in Anthropic's Claude Cowork, tracked as SharedRoot, that allows an AI…
An indirect prompt-injection email processed by Anthropic's Claude Cowork through a Gmail connector can exfiltrate Slack tokens into an HTML draft.
Anthropic has restored its Claude Fable 5 AI model worldwide after the U.S. Commerce Department lifted export controls imposed on June 12,…
Gmail's image-set() fallback can be abused to make external requests, enabling exfiltration of Slack tokens through prompt injection in AI-connected email workflows.