Writer AI Flaw Could Let Agent Previews Leak Session Tokens Across Tenants
Cybersecurity researchers at Sand Security have disclosed a now-patched critical session isolation vulnerability in Writer, an enterprise generative AI platform. The flaw,…
Cybersecurity researchers at Sand Security have disclosed a now-patched critical session isolation vulnerability in Writer, an enterprise generative AI platform. The flaw,…
Researchers at Noma Security have demonstrated a novel prompt injection attack, dubbed GitLost, that exploits GitHub Agentic Workflows to leak private repository…
U.S. prosecutors have linked an alleged member of the Scattered Spider cybercriminal group to a May 2025 intrusion at a luxury jewelry…
Software supply chain security was already complex, but the integration of AI into the build pipeline has introduced new risks that traditional…
A suspected China-aligned threat activity cluster tracked as UNK_MassTraction by Proofpoint has been exploiting critical Roundcube webmail vulnerabilities to target physics and…
The CERT Coordination Center (CERT/CC) has issued a warning about an undocumented authentication backdoor in multiple versions of Tenda router firmware. The…
BeyondTrust has released security updates to address multiple critical vulnerabilities in its Remote Support (RS) and Privileged Remote Access (PRA) products. The…
A critical use-after-free vulnerability in the Linux Kernel-based Virtual Machine (KVM) hypervisor, tracked as CVE-2026-53359 and named 'Januscape', allows a guest virtual…
Iranian state-sponsored hackers affiliated with the Ministry of Intelligence and Security (MOIS) have been using a previously undocumented modular command-and-control (C2) framework…
Threat actors have been observed attempting to exploit a recently patched critical security flaw in Gitea Docker images, according to Sysdig. The…