aisecwatch.com
DashboardVulnerabilitiesNewsResearchArchiveStatsDatasetFor devs
Subscribe
aisecwatch.com

Real-time AI security monitoring. Tracking AI-related vulnerabilities, safety and security incidents, privacy risks, research developments, and policy changes.

Navigation

VulnerabilitiesNewsResearchDigest ArchiveNewsletter ArchiveSubscribeData SourcesStatisticsDatasetAPIIntegrationsWidgetRSS Feed

Maintained by

Truong (Jack) Luu

Information Systems Researcher

AI Sec Watch

The security intelligence platform for AI teams

AI security threats move fast and get buried under hype and noise. Built by an Information Systems Security researcher to help security teams and developers stay ahead of vulnerabilities, privacy incidents, safety research, and policy developments.

Independent research. No sponsors, no paywalls, no conflicts of interest.

[TOTAL_TRACKED]
6,428
[LAST_24H]
2
[LAST_7D]
157
Daily BriefingSaturday, August 15, 2026
>

Anthropic Revenue Surges Ahead of Planned IPO: The company behind Claude reported quarterly revenue exceeding $11.5 billion, a 14-fold year-over-year increase, as it prepares to go public and compete directly with OpenAI for enterprise AI adoption.

>

AI Firms Suspected of Covert Data Acquisition Through Book Purchases: Secondhand booksellers across the UK and Ireland report unusual bulk orders believed to be AI companies acquiring physical texts for training data, with Anthropic previously confirmed to have spent millions on such acquisitions.

Latest Intel

page 195/643
VIEW ALL
01

AI to drive up UK youth unemployment, as Alphabet raises $80bn for spending splurge – business live

industrypolicy
Critical This Week5 issues
critical

CVE-2026-49986: The Cortex MCP server (`neuro-cortex-memory`), a cross-platform persistent memory MCP, prior to version 3.17.1 treats th

CVE-2026-49986NVD/CVE DatabaseAug 14, 2026
Aug 14, 2026
Jun 2, 2026

This article covers various economic news topics, including Anthropic's confidential filing for an initial public offering (IPO, a process where a private company becomes publicly traded by selling shares to the public) and a report from the European Central Bank showing that gold has become the world's largest reserve asset for countries, surpassing US government bonds. The shift reflects geopolitical tensions driving central bank demand for gold, though some of the change is due to gold's price increasing significantly in recent years.

The Guardian Technology
02

Rehumanizing global health care with agentic AI

industrysafety
Jun 2, 2026

Healthcare providers are increasingly adopting agentic AI (AI systems that can make autonomous decisions and handle complex tasks without human intervention for each step) to automate administrative work and patient scheduling, with over two-thirds of providers already using it. Unlike earlier digital tools that added burden, agentic AI can handle nuanced scenarios by retrieving information from expert sources and iterating over time, freeing clinicians to focus on patient care. At Hospital for Special Surgery, AI agents reduced insurance claim processing from weeks to automated monthly handling of 1,100 claims, and now manage patient scheduling and triage 24/7 through conversational AI.

Fix: For high-stakes AI decisions, the source explicitly describes safeguards at HSS: 'Sensitive, complex, or uncertain scenarios are escalated to human specialists. Every decision made by the AI agent is auditable and human staff can step in at any point.' The source also notes that 'providers to ensure they have these sorts of guardrails embedded into systems' and mentions HSS uses 'an AI subcommittee' to filter all technology decisions. Additionally, 'Patient data is kept secure and the system is trained on all HSS protocols, policies, and care pathways.'

MIT Technology Review
03

Attack targeting OpenAI Codex users exposes AI software supply chain risks

security
Jun 2, 2026

Attackers published a malicious npm package (a software library distribution platform) called codexui-android that appeared to be a legitimate tool for OpenAI Codex users but secretly stole authentication tokens and sent them to an external server. The attack exploited a supply chain gap where malicious code was hidden in the distributed package but not visible in the public source code repository, allowing the package to reach about 27,000 weekly downloads before detection. Security experts warn this reflects a broader vulnerability in AI software security, where developer tokens provide persistent access to accounts and are increasingly attractive targets as AI tools become widespread.

Fix: A cybersecurity researcher stated that 'enterprises should verify both the provenance of software packages and the consistency between published artifacts and their public source code.' Additionally, organizations should apply 'least-privilege and behavioral monitoring disciplines to AI tools' the same way they do for human user accounts, and maintain 'a complete inventory of what their AI tools can access, what credentials they inherit, and what external services they interact with.'

CSO Online
04

Advancing youth safety and opportunity through global leadership

policysafety
Jun 2, 2026

This text discusses how AI can benefit young people through personalized learning and skill development, but emphasizes that companies must build products with safety safeguards by default rather than relying on parents or students to manage risks alone. OpenAI and other organizations are proposing an international youth safety institute to coordinate ongoing research, standards, and guidance across governments, industry, and civil society to keep AI safe and age-appropriate for young users.

Fix: The source proposes establishing either a new international institute or giving an existing national AI institute a global mandate to share research and guidance. It recommends that companies implement two key practices: (1) use 'effective, privacy-preserving age estimation' to identify minors and apply age-appropriate protections by default, and (2) complete 'annual youth safety risk assessments' and implement safeguards based on identified risks, considering developmental stages and empirical evidence from actual use.

OpenAI Blog
05

CVE-2026-3198: MLflow 3.9.0 with basic-auth (`--app-name basic-auth`) fails to enforce authorization checks for multiple Gateway API 'l

security
Jun 2, 2026

MLflow 3.9.0 with basic authentication has a missing authorization check bug where three Gateway API endpoints (ListGatewaySecretInfos, ListGatewayEndpoints, ListGatewayModelDefinitions) don't validate user permissions properly, allowing any logged-in user to see sensitive information like API keys and model configurations they shouldn't access.

NVD/CVE Database
06

CVE-2022-0492: Linux Kernel Improper Authentication Vulnerability

security
Jun 1, 2026

CVE-2022-0492 is a privilege escalation (gaining unauthorized higher-level access to a system) vulnerability in the Linux Kernel that exploits a feature called cgroups v1 release_agent. This vulnerability is currently being actively exploited by attackers in the wild, making it a serious threat to systems running affected Linux versions.

Fix: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable. Consult with specific vendors for information on patching status.

CISA Known Exploited Vulnerabilities
07

Florida lawsuit accuses OpenAI of ignoring safety warnings and putting children at risk

safetypolicy
Jun 1, 2026

Florida filed a lawsuit against OpenAI and CEO Sam Altman, claiming the company marketed ChatGPT to the public while ignoring safety warnings and concealing serious risks, especially to children. The state alleges OpenAI allowed a dangerous product to reach millions of users. This is the first state-level lawsuit against the AI company in the US.

The Guardian Technology
08

Microsoft and Google are late to AI coding, but 'absolutely critical' they compete for growth

industry
Jun 1, 2026

Major tech companies like Google and Microsoft are competing heavily in the AI coding assistant market, where Anthropic's Claude Code has taken an early lead. The market is projected to grow from $9.3 billion this year to roughly $30 billion by 2031, making it critical for these companies to compete not just for revenue, but also to get developers using their cloud services and training data to improve their AI models.

CNBC Technology
09

Anthropic to Open Mythos AI to EU's ENISA

policy
Jun 1, 2026

Anthropic is allowing the European Union's security agency (ENISA, the European Network and Information Security Agency) to access Mythos AI, a tool for testing AI security vulnerabilities. This partnership comes from cooperation between the European Commission and Anthropic as part of Project Glasswing.

Dark Reading
10

Gemini’s new AI agent is about as good as Google’s demo

industry
Jun 1, 2026

Google has released Gemini Spark, an AI agent (a program that can independently complete multi-step tasks) that can work on tasks in the background on your behalf. While the agent performs well in demonstrations, the article raises concerns about its financial cost and potential privacy risks, questioning whether these tradeoffs are worthwhile.

The Verge (AI)
Prev1...193194195196197...643Next
critical

CVE-2026-19297: IBM Langflow OSS 1.0.0 through 1.9.6 could allow a remote attacker to obtain unauthorized access to user accounts due to

CVE-2026-19297NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73656: Trigger.dev is a platform for building and deploying fully managed AI agents and workflows. Prior to 4.5.6, POST /api/v1

CVE-2026-73656NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73487: Flowise before 3.1.3 contains a regex-based Python code validator bypass in CSV and Airtable Agent nodes that allows una

CVE-2026-73487NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73485: Flowise before 3.1.3 contains a code injection vulnerability in the Airtable Agent node that allows unauthenticated atta

CVE-2026-73485NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026