aisecwatch.com
DashboardVulnerabilitiesNewsResearchArchiveStatsDatasetFor devs
Subscribe
aisecwatch.com

Real-time AI security monitoring. Tracking AI-related vulnerabilities, safety and security incidents, privacy risks, research developments, and policy changes.

Navigation

VulnerabilitiesNewsResearchDigest ArchiveNewsletter ArchiveSubscribeData SourcesStatisticsDatasetAPIIntegrationsWidgetRSS Feed

Maintained by

Truong (Jack) Luu

Information Systems Researcher

AI Sec Watch

The security intelligence platform for AI teams

AI security threats move fast and get buried under hype and noise. Built by an Information Systems Security researcher to help security teams and developers stay ahead of vulnerabilities, privacy incidents, safety research, and policy developments.

Independent research. No sponsors, no paywalls, no conflicts of interest.

[TOTAL_TRACKED]
6,428
[LAST_24H]
2
[LAST_7D]
157
Daily BriefingSaturday, August 15, 2026
>

Anthropic Revenue Surges Ahead of Planned IPO: The company behind Claude reported quarterly revenue exceeding $11.5 billion, a 14-fold year-over-year increase, as it prepares to go public and compete directly with OpenAI for enterprise AI adoption.

>

AI Firms Suspected of Covert Data Acquisition Through Book Purchases: Secondhand booksellers across the UK and Ireland report unusual bulk orders believed to be AI companies acquiring physical texts for training data, with Anthropic previously confirmed to have spent millions on such acquisitions.

Latest Intel

page 192/643
VIEW ALL
01

CVE-2026-32625: LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. In versions up to and including 0.8.3, the M

security
Jun 2, 2026

LibreChat, a ChatGPT-like tool that works with multiple AI providers, has a vulnerability in versions up to 0.8.3 where it unsafely replaces environment variable placeholders (like ${VAR}) when validating user-provided server URLs. An authenticated attacker can create a malicious server configuration that tricks LibreChat into sending sensitive secrets like encryption keys and database credentials to an attacker-controlled server, compromising the entire installation without needing admin access.

Critical This Week5 issues
critical

CVE-2026-49986: The Cortex MCP server (`neuro-cortex-memory`), a cross-platform persistent memory MCP, prior to version 3.17.1 treats th

CVE-2026-49986NVD/CVE DatabaseAug 14, 2026
Aug 14, 2026

Fix: This is patched in version 0.8.4-rc1.

NVD/CVE Database
02

CVE-2026-31942: LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. In versions up to and including 0.7.6, an In

security
Jun 2, 2026

LibreChat, a ChatGPT-like application supporting multiple AI providers, has an IDOR vulnerability (insecure direct object reference, where an attacker can access or modify resources belonging to other users) in its API key management system in versions up to 0.7.6. An authenticated attacker can inject a userId parameter to overwrite another user's API keys, potentially stealing their API key configurations or blocking their service.

Fix: This vulnerability is patched in version 0.8.3-rc1.

NVD/CVE Database
03

OpenAI upgrades GPT-5.5, as it plans to retire legacy ChatGPT models

industry
Jun 2, 2026

OpenAI has upgraded GPT-5.5 Instant to respond more accurately with more natural, human-like language and shorter responses, while retiring older models like o3 (August 26) and GPT-4.5 (June 27) to focus resources on newer capabilities. The company is also adding a job search tool to ChatGPT that integrates with job boards like Indeed and Upwork to help users find positions and tailor resumes.

BleepingComputer
04

Microsoft's new MAI models

industry
Jun 2, 2026

Microsoft announced two new text-based LLMs (large language models, AI systems trained on text data): MAI-Thinking-1, a 35-billion-parameter model (parameters are the adjustable values that make up a neural network) designed for reasoning tasks, and MAI-Code-1-Flash, a smaller 5-billion-parameter model built specifically for code generation in GitHub Copilot and VS Code. Both models were trained on licensed data rather than web scrapes, and Microsoft claims MAI-Thinking-1 outperforms Claude's Sonnet 4.6 model despite its smaller size.

Simon Willison's Weblog
05

HP Poly VoIP vulnerability sets the stage for executive voice deepfakes

security
Jun 2, 2026

HP released patches for a critical buffer overflow vulnerability (a coding flaw where too much data is written into a fixed-size memory container) in its Poly Voice conference phones that could allow attackers without authentication to gain root access (complete control of the operating system) and record conversations for voice deepfakes (AI-generated fake audio impersonations). The flaw exists in code that processes ICE (Interactive Connectivity Establishment, a feature for establishing direct network connections) requests and affects multiple Poly phone models.

Fix: HP has fixed the vulnerability in Poly Unified Communications Software (UCS) versions 6.4.8 for VVX devices, 8.1.7 for Trio 8300, and 7.2.8 for Trio 8500 and 8800 phones. Additionally, HP advises administrators to disable the ICE feature if it is not needed, since it is not enabled by default on HP Poly devices.

CSO Online
06

Microsoft unveils new AI models to lessen reliance on OpenAI and lower costs for developers

industry
Jun 2, 2026

Microsoft announced new AI models including MAI-Code-1-Flash (a model that generates source code from written descriptions) and MAI-Thinking-1 (a reasoning model) to reduce dependence on OpenAI and lower costs for developers. These models run on Microsoft's own Azure cloud infrastructure, allowing the company to avoid paying third parties while offering developers lower token costs (tokens are the basic units that an AI model reads and processes). Microsoft is positioning itself to compete directly with proprietary models from OpenAI and Google by building its own AI capabilities across multiple layers of the technology stack.

CNBC Technology
07

Trump Signs Executive Order That Invites Vetting of Top AI Models for National Security Risks

policy
Jun 2, 2026

President Trump signed an executive order establishing a voluntary framework for the federal government to review the national security risks of the most advanced AI systems (models built by companies like OpenAI and Google that represent the cutting edge of AI development) before their public release, with a 30-day review period. The order aims to balance security concerns with concerns about slowing innovation, and it allows frontier labs to voluntarily share their most advanced models to help secure critical infrastructure and strengthen government cyber defenses.

SecurityWeek
08

The Meta AI Account Recovery Incident Wasn’t Just a Chatbot Problem

security
Jun 2, 2026

Hackers reportedly used Meta's AI support chatbot to take over high-profile Instagram accounts by tricking it into changing email addresses linked to those accounts, affecting pages associated with the Obama White House, Sephora, and other notable figures. The incident wasn't simply a case of prompt injection (tricking an AI by hiding instructions in its input), but rather revealed a deeper problem with how the AI chatbot was designed to handle account recovery requests.

Check Point Research
09

Microsoft Build 2026: The 7 biggest announcements

industry
Jun 2, 2026

Microsoft held its Build 2026 conference with announcements from CEO Satya Nadella covering new hardware and AI updates, including a Surface RTX Spark Dev Box designed to help developers run local AI models (machine learning systems that operate on a user's own device rather than in the cloud) on their computers. The event also featured updates to Microsoft's own AI models and an always-on personal assistant feature.

The Verge (AI)
10

Securing AI Agents Before They Go Rogue Is Next to Impossible

safetysecurity
Jun 2, 2026

AI agents (systems that can act independently to complete tasks) with high autonomy and broad permissions are very difficult to secure and pose a serious risk to enterprises. The article warns that companies need to take action now to prevent AI agents from causing major problems in the future.

Dark Reading
Prev1...190191192193194...643Next
critical

CVE-2026-19297: IBM Langflow OSS 1.0.0 through 1.9.6 could allow a remote attacker to obtain unauthorized access to user accounts due to

CVE-2026-19297NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73656: Trigger.dev is a platform for building and deploying fully managed AI agents and workflows. Prior to 4.5.6, POST /api/v1

CVE-2026-73656NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73487: Flowise before 3.1.3 contains a regex-based Python code validator bypass in CSV and Airtable Agent nodes that allows una

CVE-2026-73487NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73485: Flowise before 3.1.3 contains a code injection vulnerability in the Airtable Agent node that allows unauthenticated atta

CVE-2026-73485NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026