aisecwatch.com
DashboardVulnerabilitiesNewsResearchArchiveStatsDatasetFor devs
Subscribe
aisecwatch.com

Real-time AI security monitoring. Tracking AI-related vulnerabilities, safety and security incidents, privacy risks, research developments, and policy changes.

Navigation

VulnerabilitiesNewsResearchDigest ArchiveNewsletter ArchiveSubscribeData SourcesStatisticsDatasetAPIIntegrationsWidgetRSS Feed

Maintained by

Truong (Jack) Luu

Information Systems Researcher

AI Sec Watch

The security intelligence platform for AI teams

AI security threats move fast and get buried under hype and noise. Built by an Information Systems Security researcher to help security teams and developers stay ahead of vulnerabilities, privacy incidents, safety research, and policy developments.

Independent research. No sponsors, no paywalls, no conflicts of interest.

[TOTAL_TRACKED]
6,428
[LAST_24H]
2
[LAST_7D]
157
Daily BriefingSaturday, August 15, 2026
>

Anthropic Revenue Surges Ahead of Planned IPO: The company behind Claude reported quarterly revenue exceeding $11.5 billion, a 14-fold year-over-year increase, as it prepares to go public and compete directly with OpenAI for enterprise AI adoption.

>

AI Firms Suspected of Covert Data Acquisition Through Book Purchases: Secondhand booksellers across the UK and Ireland report unusual bulk orders believed to be AI companies acquiring physical texts for training data, with Anthropic previously confirmed to have spent millions on such acquisitions.

Latest Intel

page 194/643
VIEW ALL
01

Microsoft Build 2026: All the news about Windows, AI, RTX Spark, and more

industry
Jun 2, 2026

Microsoft is holding its annual Build 2026 developer conference starting June 2nd in San Francisco, where the company is expected to announce new AI models, agentic tools (AI systems that can take actions autonomously), a Copilot "super app" (a single application combining multiple services), and updates to Windows 11. The conference will also feature announcements about new hardware like the Surface Laptop Ultra and Project Solara, an operating system designed for AI agent gadgets (specialized devices running autonomous AI systems).

Critical This Week5 issues
critical

CVE-2026-49986: The Cortex MCP server (`neuro-cortex-memory`), a cross-platform persistent memory MCP, prior to version 3.17.1 treats th

CVE-2026-49986NVD/CVE DatabaseAug 14, 2026
Aug 14, 2026
The Verge (AI)
02

CVE-2026-10591 - Kiro IDE Insufficient File Write Restrictions to Execution-Sensitive Paths

security
Jun 2, 2026

Kiro IDE (an AI agent that runs on your desktop) has a vulnerability where attackers can trick it into writing files to sensitive locations (like .vscode/tasks.json, which automatically runs code when you open a folder), allowing them to execute arbitrary commands (run code they choose). This affects all versions before 0.11.

Fix: Update Kiro IDE to version 0.11 or later.

AWS Security Bulletins
03

Anthropic scales Claude Mythos to critical infrastructure in 15+ countries

securityindustry
Jun 2, 2026

Anthropic is expanding Project Glasswing, an initiative that uses its AI model Claude Mythos to find and fix critical software vulnerabilities (security weaknesses that attackers could exploit), to about 150 new organizations across 15+ countries in critical sectors like power, water, and healthcare. Claude Mythos can identify thousands of zero-day vulnerabilities (security flaws unknown to vendors or the public) in a few weeks, and the company is scaling access because a successful attack on these organizations' code could affect over 100 million people.

TechCrunch (Security)
04

Why the browser is now the front line for AI security

securitysafety
Jun 2, 2026

AI is making phishing attacks faster and harder to stop, with attackers using AI to quickly create and rotate phishing infrastructure (fake websites designed to steal login information) across multiple channels like email, social media, and search ads, while employees simultaneously adopt unvetted AI tools that expose sensitive data. Traditional security defenses that rely on blocklists and IOC feeds (indicators of compromise, like flagged domain names and IP addresses) are becoming ineffective because phishing pages now appear and disappear in hours, making them essentially zero-day attacks (previously unseen threats) that blocklists cannot catch in time. The article argues that browsers are now the critical security battleground where both attacker delivery and account compromise occur.

BleepingComputer
05

Anthropic Expanding Mythos Access to 150 New Organizations

securityindustry
Jun 2, 2026

Anthropic is expanding Project Glasswing, a program that uses Claude Mythos (an AI tool for finding security flaws) to help organizations scan their code for vulnerabilities. The initiative is adding roughly 150 new partner organizations from over 15 countries in critical sectors like power, water, and healthcare, after the initial 50 partners identified thousands of vulnerabilities using Mythos.

Fix: Anthropic says Mythos can help with both verification and patching of vulnerabilities. The company is also working with others to 'substantially scale up the reviewing and patching of vulnerabilities in open-source software' and is sharing 'ideas and best practices for disclosing vulnerabilities to open-source maintainers, with the intent of making these reports easier to triage and to act upon.'

SecurityWeek
06

Human Behavior Anonymization for Secure Teleoperation

privacyresearch
Jun 2, 2026

This research addresses a privacy risk in teleoperated robotics (systems where humans remotely control robots by having their movements tracked and converted into robot commands). The problem is that motion-tracking data can leak biometric information (unique physical characteristics) that could allow someone to re-identify the operator. The authors propose using a VAE (variational autoencoder, a type of machine learning model that learns compressed representations of data) to filter out identity-revealing patterns while keeping the motion information needed for the robot to complete tasks.

IEEE Xplore (Security & AI Journals)
07

Trigger as Entity: Backdoor Attacks to Graph-Based Retrieval-Augmented Generation of Large Language Models

securityresearch
Jun 2, 2026

Researchers discovered a new security vulnerability in graph-based RAG (retrieval-augmented generation, where an AI system pulls information from external knowledge graphs to answer questions) systems used with large language models. Attackers can poison the external database by inserting hidden triggers and false information into the knowledge graph, causing the AI to give wrong answers when those triggers appear in user queries while still answering normal questions correctly. The attack uses three types of triggers at different complexity levels, from simple words to semantic patterns, and tests showed the attack works across multiple AI systems.

IEEE Xplore (Security & AI Journals)
08

Gemini Spark is the most impressive and terrifying AI experience I’ve had yet

industry
Jun 2, 2026

Gemini Spark is Google's new agentic AI (an AI system that can take independent actions to complete tasks) that goes beyond typical chatbots in handling complex requests like trip planning. Unlike previous AI tools that only handle generic travel suggestions, Spark appears to deliver more detailed and personalized results by actively searching multiple sources and creating comprehensive itineraries.

The Verge (AI)
09

Alphabet's stock sale, Iran negotiations, Anthropic's IPO plans and more in Morning Squawk

industry
Jun 2, 2026

This article is a business news roundup covering multiple topics including geopolitical negotiations, stock market movements, and corporate announcements. The only AI-related item is that Anthropic, an AI startup, has confidentially filed paperwork with regulators to prepare for going public (an IPO, or initial public offering, where a private company sells shares to the public), ahead of its rival OpenAI which is also preparing a similar filing.

CNBC Technology
10

Travelers deploys AI-powered claims countrywide with OpenAI

industry
Jun 2, 2026

Travelers Insurance deployed an AI Claim Assistant powered by OpenAI's Realtime API (a system that lets AI have natural voice conversations in real time) to help customers file auto insurance claims after accidents. The assistant guides customers through the claims process 24/7 without wait times, and 85-90% of customers now complete their claims entirely through the AI, freeing human staff to handle more complex cases.

OpenAI Blog
Prev1...192193194195196...643Next
critical

CVE-2026-19297: IBM Langflow OSS 1.0.0 through 1.9.6 could allow a remote attacker to obtain unauthorized access to user accounts due to

CVE-2026-19297NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73656: Trigger.dev is a platform for building and deploying fully managed AI agents and workflows. Prior to 4.5.6, POST /api/v1

CVE-2026-73656NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73487: Flowise before 3.1.3 contains a regex-based Python code validator bypass in CSV and Airtable Agent nodes that allows una

CVE-2026-73487NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73485: Flowise before 3.1.3 contains a code injection vulnerability in the Airtable Agent node that allows unauthenticated atta

CVE-2026-73485NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026