aisecwatch.com
DashboardVulnerabilitiesNewsResearchArchiveStatsDatasetFor devs
Subscribe
aisecwatch.com

Real-time AI security monitoring. Tracking AI-related vulnerabilities, safety and security incidents, privacy risks, research developments, and policy changes.

Navigation

VulnerabilitiesNewsResearchDigest ArchiveNewsletter ArchiveSubscribeData SourcesStatisticsDatasetAPIIntegrationsWidgetRSS Feed

Maintained by

Truong (Jack) Luu

Information Systems Researcher

AI Sec Watch

The security intelligence platform for AI teams

AI security threats move fast and get buried under hype and noise. Built by an Information Systems Security researcher to help security teams and developers stay ahead of vulnerabilities, privacy incidents, safety research, and policy developments.

Independent research. No sponsors, no paywalls, no conflicts of interest.

[TOTAL_TRACKED]
6,428
[LAST_24H]
2
[LAST_7D]
159
Daily BriefingSaturday, August 15, 2026
>

Anthropic Revenue Surges Ahead of Planned IPO: The company behind Claude reported quarterly revenue exceeding $11.5 billion, a 14-fold year-over-year increase, as it prepares to go public and compete directly with OpenAI for enterprise AI adoption.

>

AI Firms Suspected of Covert Data Acquisition Through Book Purchases: Secondhand booksellers across the UK and Ireland report unusual bulk orders believed to be AI companies acquiring physical texts for training data, with Anthropic previously confirmed to have spent millions on such acquisitions.

Latest Intel

page 178/643
VIEW ALL
01

Bank of England warns of AI scams as deepfakes of Farage-Bailey fight spread

safetysecurity
Critical This Week5 issues
critical

CVE-2026-49986: The Cortex MCP server (`neuro-cortex-memory`), a cross-platform persistent memory MCP, prior to version 3.17.1 treats th

CVE-2026-49986NVD/CVE DatabaseAug 14, 2026
Aug 14, 2026
Jun 9, 2026

The Bank of England warned the public about AI-generated scams after deepfake videos (fake videos created using AI to show people doing things they never did) of its governor fighting a politician spread on social media. These scams use AI to impersonate banks and public figures to trick people, especially vulnerable ones, into giving up money or personal information. Bank officials urged people to report these scams so authorities can remove them and catch the criminals behind them.

Fix: Andrew Bailey urged the public to report the videos so they could be taken down. The Bank of England raised concerns about the posts with Reform UK and with social media platforms. The UK's Online Safety Act contains provisions requiring tech platforms to tackle fraudulent advertising, though those duties do not come into force until next year.

The Guardian Technology
02

Will AI Kill the Bug Bounty Industry?

industrysecurity
Jun 9, 2026

AI systems like Claude are becoming very good at finding bugs automatically, which is changing the bug bounty industry (where companies pay people to discover security flaws). While this sounds helpful, it's creating problems: AI tools find many duplicate bugs and low-quality reports, overwhelming the review process and making it harder for human bounty hunters to get paid fairly.

SecurityWeek
03

Learning to lead in a hybrid human-AI enterprise

policyindustry
Jun 9, 2026

As AI agents (autonomous software that can independently handle complex tasks across organizational systems) are expected to grow significantly in adoption, companies are redesigning how work is distributed between humans and AI to shift employees toward higher-value tasks. Leadership teams recognize that this shift will transform workplace roles and responsibilities, with estimates suggesting three-quarters of current roles will need redesign or reskilling by 2030, but experts emphasize that humans must remain involved in oversight, particularly when AI agents access sensitive organizational data.

Fix: According to the source, governance should include robust data privacy rules and the establishment of governance layers such as an AI council. The source also emphasizes that "when you expose an AI agent to organizational data, when you integrate it into multiple enterprise systems, then pathways around the AI agent become extremely important," indicating that leadership needs to establish "stringent guardrails and constraints" for AI agents working with sensitive and personal data in enterprise settings.

MIT Technology Review
04

AI worm prototype shows attackers don’t need Mythos to take over your network

securityresearch
Jun 9, 2026

Researchers at the University of Toronto created an AI-powered computer worm prototype using only free, small language models (LLMs, which are AI systems trained on large amounts of text) that could self-replicate across a simulated network by finding and exploiting vulnerabilities (security weaknesses) and misconfigurations. The research shows that attackers don't need cutting-edge AI models to launch widespread network attacks, since using paid models would create detection points where safety filters could block malicious prompts.

CSO Online
05

Perplexity plans IPO in 2028 regardless of what happens to Anthropic or OpenAI, CEO tells CNBC

industry
Jun 9, 2026

Perplexity AI's CEO announced the company plans to hold an initial public offering (IPO, where a private company sells shares to become publicly traded) in 2028 regardless of whether competitors Anthropic and OpenAI succeed with their own IPOs. The CEO acknowledged that major IPOs from SpaceX, Anthropic, and OpenAI will test investor demand for expensive tech company offerings, but expressed confidence these companies deserve high valuations because they lead in AI model capabilities.

CNBC Technology
06

Meet Hades: The malware that lies to AI security agents

security
Jun 9, 2026

The Hades Campaign is a sophisticated malware attack targeting Python developer environments that uses multiple advanced techniques: it harvests credentials, replicates itself across systems, extracts sensitive data from computer memory, and uses adversarial prompt injection (tricking AI security scanners by hiding malicious instructions in plain text) to evade detection by AI-powered security tools. The malware enters through compromised Python packages and uses the Bun toolkit (a JavaScript runtime) to execute payloads while bypassing traditional security controls.

CSO Online
07

OpenAI’s Lockdown Mode is trying to solve the problem that it created

securitysafety
Jun 8, 2026

OpenAI introduced Lockdown Mode to reduce data exfiltration (unauthorized theft of data), a security feature that disables external capabilities like web browsing and file downloads. However, security experts say the mode only partially limits data theft and doesn't fully block it, especially since attackers could find alternate paths (prompt injection, or tricking an AI by hiding instructions in its input) to steal data.

Fix: Lockdown Mode can be activated within OpenAI products' settings and limits web browsing to cached content, limits image support, disables Deep Research and Agent Mode, denies users the ability to approve Canvas-generated code to access the network, and prevents ChatGPT from downloading files for data analysis, though it can still operate on manually uploaded files. Alternatively, security professionals can implement isolation through their own enterprise controls such as network segmentation, least privilege access, Zero Trust concepts, application controls, and air-gapping (physically isolating networks).

CSO Online
08

OpenAI plans to go public, intensifying investment race with Anthropic

industry
Jun 8, 2026

OpenAI has filed confidential paperwork with the US Securities and Exchange Commission to pursue an initial public offering (IPO, a process where a private company sells shares to the public on the stock market) at some point in the future, though the company has not decided on timing yet. This move intensifies competition with rival AI company Anthropic, which announced similar IPO plans one week earlier, as both companies compete for users, customers, and investors with valuations approaching $1 trillion. Going public would provide these AI companies with billions of dollars in capital, which they need because running AI systems requires enormous compute costs (the infrastructure and processing power needed to build, train, and operate AI models).

BBC Technology
09

Plan for AI legal assistants in England and Wales ‘cannot replace funding and staff’, lawyers say

policysafety
Jun 8, 2026

England and Wales plans to trial AI legal assistants in crown courts to reduce case backlogs, but lawyers warn the technology should not replace funding and staff. Concerns have been raised about AI hallucinations (false information generated by AI systems), including cases where AI created fake legal citations that were used in court decisions, highlighting risks to the justice system's integrity.

The Guardian Technology
10

OpenAI confidentially files for initial public offering on US stock market

industry
Jun 8, 2026

OpenAI has filed confidentially to go public on the US stock market, with an expected valuation exceeding $850 billion, making it one of the largest IPO (initial public offering, when a private company first sells shares to the public) listings in history. The company announced the filing preemptively because it expected the confidential submission to become public anyway, and stated it has not yet decided on a timeline for going public.

The Guardian Technology
Prev1...176177178179180...643Next
critical

CVE-2026-19297: IBM Langflow OSS 1.0.0 through 1.9.6 could allow a remote attacker to obtain unauthorized access to user accounts due to

CVE-2026-19297NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73656: Trigger.dev is a platform for building and deploying fully managed AI agents and workflows. Prior to 4.5.6, POST /api/v1

CVE-2026-73656NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73487: Flowise before 3.1.3 contains a regex-based Python code validator bypass in CSV and Airtable Agent nodes that allows una

CVE-2026-73487NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73485: Flowise before 3.1.3 contains a code injection vulnerability in the Airtable Agent node that allows unauthenticated atta

CVE-2026-73485NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026