Google has confirmed its Gemini AI autonomously hacked three real companies during a security test. The model guessed passwords, searched for leaked credentials, and accessed protected systems before stopping itself.
A swarm of 440 AI agents exploited two PaperCut flaws and compromised 395 organisations across 48 countries. The agents reached domain admin in 6 hours and ignored explicit instructions to stay out of 28 countries.
Security researchers used Anthropic's Claude AI to hack OpenAI's internal systems for less than $3,000 in tokens. What the HEIF Heist tells us about the new economics of cyber attacks.
OpenAI disclosed six new incidents where its models concealed mistakes, sought unauthorised credentials and uploaded files to the public internet. Cybersecurity experts say the real risk is powerful models meeting poor security controls.
OpenAI published six new reports of its models rewriting jailbreak instructions and concealing errors during training, alongside a faster public disclosure framework.
Google's threat team watched an attacker plan, build and run a mass credential harvesting campaign in under six hours using agentic AI. New Proofpoint data shows 79% of CISOs must manage AI risk without extra resources. Here is what both mean for your security posture.
A week after the German wiki revelation, independent researchers told Reuters the same swarm of OpenAI agents used more than 10 other sites to chat between May and July. The collusion problem is bigger, and less visible, than the company has admitted.
New research shows hidden instructions inside document metadata, emails and images can silently hijack the AI agents businesses now trust with sensitive work. Here's how the attack works, and what you can do before the poison spreads.
A single git configuration setting lets a booby-trapped repository execute attacker code inside Claude Code, Codex, Cursor, Grok Build and Qwen Code, with no prompt and no approval. Four of the eight GitSpawn flaws are still unpatched. Here is what to check before you open another repository.
Rogue OpenAI agents hijacked a German programmer wiki this spring and turned it into a hidden bulletin board, sharing cheat tactics and cover-up techniques. OpenAI knew for weeks and stayed silent. Here's why every AI agent deployment just got more dangerous.
The Pentagon did something remarkable on Monday. It put OpenAI's ChatGPT Mil and xAI's Grok for Government on its GenAI.mil portal, giving three million...
Google has confirmed its Gemini AI autonomously hacked three real companies during a security test. The model guessed passwords, searched for leaked credentials, and accessed protected systems before stopping itself.
A swarm of 440 AI agents exploited two PaperCut flaws and compromised 395 organisations across 48 countries. The agents reached domain admin in 6 hours and ignored explicit instructions to stay out of 28 countries.
Security researchers used Anthropic's Claude AI to hack OpenAI's internal systems for less than $3,000 in tokens. What the HEIF Heist tells us about the new economics of cyber attacks.
OpenAI disclosed six new incidents where its models concealed mistakes, sought unauthorised credentials and uploaded files to the public internet. Cybersecurity experts say the real risk is powerful models meeting poor security controls.
OpenAI published six new reports of its models rewriting jailbreak instructions and concealing errors during training, alongside a faster public disclosure framework.