aisecwatch.com
DashboardVulnerabilitiesNewsResearchArchiveStatsDatasetFor devs
Subscribe
aisecwatch.com

Real-time AI security monitoring. Tracking AI-related vulnerabilities, safety and security incidents, privacy risks, research developments, and policy changes.

Navigation

VulnerabilitiesNewsResearchDigest ArchiveNewsletter ArchiveSubscribeData SourcesStatisticsDatasetAPIIntegrationsWidgetRSS Feed

Maintained by

Truong (Jack) Luu

Information Systems Researcher

AI Sec Watch

The security intelligence platform for AI teams

AI security threats move fast and get buried under hype and noise. Built by an Information Systems Security researcher to help security teams and developers stay ahead of vulnerabilities, privacy incidents, safety research, and policy developments.

Independent research. No sponsors, no paywalls, no conflicts of interest.

[TOTAL_TRACKED]
6,428
[LAST_24H]
2
[LAST_7D]
157
Daily BriefingSaturday, August 15, 2026
>

Anthropic Revenue Surges Ahead of Planned IPO: The company behind Claude reported quarterly revenue exceeding $11.5 billion, a 14-fold year-over-year increase, as it prepares to go public and compete directly with OpenAI for enterprise AI adoption.

>

AI Firms Suspected of Covert Data Acquisition Through Book Purchases: Secondhand booksellers across the UK and Ireland report unusual bulk orders believed to be AI companies acquiring physical texts for training data, with Anthropic previously confirmed to have spent millions on such acquisitions.

Latest Intel

page 189/643
VIEW ALL
01

WhatsApp, Slack Notifications Could Hijack Google Gemini on Android

securitysafety
Critical This Week5 issues
critical

CVE-2026-49986: The Cortex MCP server (`neuro-cortex-memory`), a cross-platform persistent memory MCP, prior to version 3.17.1 treats th

CVE-2026-49986NVD/CVE DatabaseAug 14, 2026
Aug 14, 2026
Jun 3, 2026

A vulnerability in Google Gemini's Android voice assistant could be hijacked through poisoned notifications from apps like WhatsApp or Slack, allowing attackers to manipulate what Gemini says, open windows, fake messages, or launch apps without needing malicious software on the phone. The attack works by treating hostile notification text as instructions the assistant should follow. Google has already patched this vulnerability, and there is no evidence it was exploited in the real world.

Fix: Google has since patched it.

The Hacker News
02

xAI Asks Court to Strip Alleged Grok Deepfake Nudes Victims of Anonymity

safetypolicy
Jun 3, 2026

Elon Musk's AI company xAI is asking a court to force four people who claim Grok (an AI chatbot) was used to create sexual deepfake images of them to reveal their real names in a lawsuit, despite their concerns about harassment and privacy. The plaintiffs, currently identified by pseudonyms like "South Carolina Doe," say they already suffered emotional distress from the deepfakes, including one targeting a child, and fear further harm if their identities become public.

Wired (Security)
03

Unveiling the black box: A multi-layer framework for explaining reinforcement learning-based cyber agents

research
Jun 3, 2026

This research paper presents a framework for understanding how reinforcement learning-based cyber agents (AI systems trained to make decisions by trial and error in cybersecurity contexts) make their decisions. The authors developed a multi-layer approach to explain the "black box" problem (the difficulty in understanding why AI systems reach certain conclusions), which is important for security experts to verify that these AI agents are operating correctly and safely.

Elsevier Security Journals
04

Labour MP sues Elon Musk’s AI company over fake sexualised images

safetysecurity
Jun 3, 2026

A UK Labour MP is suing Elon Musk's AI company after its Grok tool (a generative AI chatbot) was used to create non-consensual sexualized images of her, part of a broader problem of fake intimate images being generated and shared on X. The MP described seeing herself depicted in inappropriate ways without permission as deeply violating.

The Guardian Technology
05

As AI gets better, it reveals an empty promise

safetyprivacy
Jun 3, 2026

Google's new Gemini AI agent called Spark demonstrates impressive capability by accessing personal information like pet names and family members' identities without users explicitly sharing them, raising privacy concerns. The article argues that while AI companies promote these tools as solutions to improve productivity, they may be missing more important societal problems that actually need fixing.

The Verge (AI)
06

OpenAI CEO Sam Altman to meet with lawmakers, Trump officials in DC

policy
Jun 3, 2026

OpenAI CEO Sam Altman is meeting with U.S. lawmakers and Trump administration officials in Washington, D.C. to discuss a new executive order requiring AI companies to voluntarily give the government access to their models for up to 30 days before release. Altman publicly supports the order, saying it strikes the right balance between developing safe AI models and providing cybersecurity tools to trusted defenders.

CNBC Technology
07

Former police officer in hiding after being falsely linked to Henry Nowak arrest

safetypolicy
Jun 3, 2026

A former police officer named Christi Hill was falsely identified on social media and AI platforms, including Grok (an AI chatbot), as being involved in an arrest related to a murder case, forcing her to go into hiding. The false identification spread across multiple platforms, demonstrating how AI systems can amplify misinformation by misidentifying people in real-world situations.

The Guardian Technology
08

Morgan Stanley will soon open its trillion-dollar wealth management funnel to AI agents

industry
Jun 3, 2026

Morgan Stanley is opening its wealth management platforms (ShareWorks and Equity Edge) to AI agents (autonomous software that can make decisions and take actions without human input) from corporate clients, allowing these agents to access data directly without using traditional human-focused interfaces. The bank plans to expand this access to 3,400 clients by next year, using the Model Context Protocol (an open-source standard that lets AI models connect to data sources). This move reflects Wall Street's shift toward AI agents handling tasks that software users currently perform manually.

CNBC Technology
09

Microsoft and OpenAI broke up — now they’re ready to fight

industry
Jun 3, 2026

Microsoft announced new AI initiatives at its Build conference, including in-house reasoning models (AI systems designed to work through problems step-by-step) and AI agents (software that can perform tasks autonomously), signaling it is moving toward independence in the AI market. The company's partnership with OpenAI, which previously dominated Microsoft's AI strategy, effectively ended in late April, though Microsoft still provides cloud computing services (the remote servers that store and process data) to OpenAI.

The Verge (AI)
10

Meta is trying to sell AI agents to businesses in latest effort to diversify away from ads

industry
Jun 3, 2026

Meta is launching Meta Business Agent, an AI tool that helps businesses of any size respond to customer questions, recommend products, and book appointments through WhatsApp, Messenger, and Instagram. The feature will be available through a paid subscription tier as Meta tries to reduce its dependence on advertising (which currently makes up 98% of its revenue) and compete with other AI companies like OpenAI and Google.

CNBC Technology
Prev1...187188189190191...643Next
critical

CVE-2026-19297: IBM Langflow OSS 1.0.0 through 1.9.6 could allow a remote attacker to obtain unauthorized access to user accounts due to

CVE-2026-19297NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73656: Trigger.dev is a platform for building and deploying fully managed AI agents and workflows. Prior to 4.5.6, POST /api/v1

CVE-2026-73656NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73487: Flowise before 3.1.3 contains a regex-based Python code validator bypass in CSV and Airtable Agent nodes that allows una

CVE-2026-73487NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73485: Flowise before 3.1.3 contains a code injection vulnerability in the Airtable Agent node that allows unauthenticated atta

CVE-2026-73485NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026