aisecwatch.com
DashboardVulnerabilitiesNewsResearchArchiveStatsDatasetFor devs
Subscribe
aisecwatch.com

Real-time AI security monitoring. Tracking AI-related vulnerabilities, safety and security incidents, privacy risks, research developments, and policy changes.

Navigation

VulnerabilitiesNewsResearchDigest ArchiveNewsletter ArchiveSubscribeData SourcesStatisticsDatasetAPIIntegrationsWidgetRSS Feed

Maintained by

Truong (Jack) Luu

Information Systems Researcher

AI Sec Watch

The security intelligence platform for AI teams

AI security threats move fast and get buried under hype and noise. Built by an Information Systems Security researcher to help security teams and developers stay ahead of vulnerabilities, privacy incidents, safety research, and policy developments.

Independent research. No sponsors, no paywalls, no conflicts of interest.

[TOTAL_TRACKED]
6,428
[LAST_24H]
2
[LAST_7D]
157
Daily BriefingSaturday, August 15, 2026
>

Anthropic Revenue Surges Ahead of Planned IPO: The company behind Claude reported quarterly revenue exceeding $11.5 billion, a 14-fold year-over-year increase, as it prepares to go public and compete directly with OpenAI for enterprise AI adoption.

>

AI Firms Suspected of Covert Data Acquisition Through Book Purchases: Secondhand booksellers across the UK and Ireland report unusual bulk orders believed to be AI companies acquiring physical texts for training data, with Anthropic previously confirmed to have spent millions on such acquisitions.

Latest Intel

page 198/643
VIEW ALL
01

Detecting Partially Spoofed Utterances Without Segment Annotation Through Fake Segment Mining-Based Graph Neural Networks

research
Jun 1, 2026

This paper addresses the problem of detecting partially spoofed utterances (audio that contains both real and fake segments mixed together) without needing labeled data marking where the fake parts are. The researchers propose FMG, a method using Graph Neural Networks (GNNs, a type of AI model that understands relationships between connected pieces of data) to better track how different audio segments relate to each other over time and to identify which segments are likely fake.

Critical This Week5 issues
critical

CVE-2026-49986: The Cortex MCP server (`neuro-cortex-memory`), a cross-platform persistent memory MCP, prior to version 3.17.1 treats th

CVE-2026-49986NVD/CVE DatabaseAug 14, 2026
Aug 14, 2026
IEEE Xplore (Security & AI Journals)
02

mmGuard: A Countermeasure Against Physical Adversarial Attacks on mmWave Radar Sensing

researchsafety
Jun 1, 2026

Physical adversarial attacks (PAAs, carefully crafted materials or objects that trick radar systems into giving wrong readings) threaten mmWave radar (millimeter-wave radar, a type of sensor used in autonomous vehicles and security systems) by manipulating its signals, but detecting these attacks has been difficult. mmGuard is a defense framework that identifies adversarial attacks by looking for three telltale physical signatures: spatial phase discontinuities (unnatural patterns in how radar waves reflect), anomalous radar cross-section patterns (unusual reflections), and violations of natural physics-based relationships, achieving over 90% detection accuracy.

Fix: mmGuard addresses the threat through multi-domain feature extraction to capture adversarial signatures, neural refinement to improve detection, and per-object attack detection and mitigation compatible with automotive radar update rates. The paper notes that few-shot adaptation enables calibration to unseen settings.

IEEE Xplore (Security & AI Journals)
03

Flowise’s MCP implementation can run ghost commands

security
Jun 1, 2026

Flowise, an open-source platform for building self-hosted AI assistants, has a critical remote code execution (RCE, where attackers can run commands on a system they don't own) vulnerability in its Model Context Protocol (MCP, a system that lets AI agents interact with local tools and files) stdio server implementation. The flaw allows attackers to execute arbitrary commands with the privileges of the Flowise process by importing a malicious chatflow, and Flowise's attempted patches using input validation have proven ineffective.

Fix: The only complete mitigation explicitly recommended by researchers is to disable MCP stdio by setting "CUSTOM_MCP_PROTOCOL=sse". For deployments that cannot disable this feature without disrupting operations, the researchers suggest pinning trusted packages where possible and reviewing imported chatflows from untrusted sources, though these are presented as partial measures rather than complete fixes.

CSO Online
04

Building the infrastructure for the Intelligence Age in Michigan

industry
Jun 1, 2026

OpenAI is building The Barn, a 1GW data center campus (a facility that processes and stores data for AI systems) in Michigan, with commitments to protect local residents from infrastructure costs, preserve water resources through closed-loop cooling, create thousands of union construction and permanent jobs, and invest $10 million in community improvements. The company is also providing up to $45 million in Codex credits (free access to AI coding tools) to over 400,000 Michigan college and trade school students, along with AI literacy and workforce training programs to help students develop skills for AI-related jobs.

OpenAI Blog
05

'Disrupted or dead': AI is crushing a generation of startups built before ChatGPT

industry
Jun 1, 2026

ChatGPT's arrival in 2022 disrupted the venture capital landscape, making hundreds of startups built before this AI boom appear outdated and overvalued. Over 220 companies that had reached "unicorn" status (valued at $1 billion or more) are now worth significantly less, with startups from 2021 down 68% in value on average, because they lack AI-native products and investors have redirected funding toward AI-focused companies instead.

CNBC Technology
06

Nvidia launches ‘superchip’ putting AI power into laptops and PCs

industry
Jun 1, 2026

Nvidia has launched a new chip called RTX Spark PC designed for Windows computers that brings AI capabilities directly to laptops and desktop computers, potentially allowing AI agents to replace traditional input methods like mice and keyboards. This move positions Nvidia in competition with other major chip makers like Intel, Apple, Qualcomm, and AMD in the AI chip market.

The Guardian Technology
07

OpenAI frontier models and Codex are now available on AWS

industry
Jun 1, 2026

OpenAI's frontier models (advanced AI systems) and Codex (a code-writing AI tool) are now available through AWS, Amazon's cloud computing platform. This integration lets companies use OpenAI's AI tools within their existing AWS environments, reducing obstacles related to security reviews, approval processes, and getting AI systems ready for real-world use. Future additions will include Daybreak, a specialized tool designed to help security teams find and fix vulnerabilities in software during development.

OpenAI Blog
08

OpenAI Codex Authentication Tokens Stolen in codexui-android npm Supply Chain Attack

security
Jun 1, 2026

Attackers compromised the popular npm package codexui-android (which provides a remote interface for OpenAI Codex, a code-writing AI tool) and embedded malicious code that secretly steals authentication tokens (login credentials) from users and sends them to an attacker-controlled server. The stolen tokens, especially the refresh_token (which never expires), allow attackers to impersonate users indefinitely and access everything their Codex account can do.

The Hacker News
09

6 critical security gaps every CISO must address

securitypolicy
Jun 1, 2026

A 2025 report on cybersecurity leadership reveals that many organizations have significant security gaps, with one-third of security leaders saying their data isn't adequately protected and 58% unprepared for cyberattacks. The article identifies six critical gaps, including CISOs viewing security as an IT protection problem rather than a business resilience issue, security teams moving too slowly compared to attackers who exploit vulnerabilities almost immediately, and the challenge of keeping security pace with rapid business changes.

CSO Online
10

Check Point Lays the Groundwork for the Future of AI Factory Security with NVIDIA

securityindustry
Jun 1, 2026

NVIDIA and Check Point are collaborating to develop security tools for large-scale AI systems, including private LLM (large language model) environments and distributed inference systems (where AI models run across multiple computers). As organizations build bigger AI infrastructure with more interconnected components, they need better security to protect sensitive data and prevent unauthorized access across these complex systems.

Check Point Research
Prev1...196197198199200...643Next
critical

CVE-2026-19297: IBM Langflow OSS 1.0.0 through 1.9.6 could allow a remote attacker to obtain unauthorized access to user accounts due to

CVE-2026-19297NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73656: Trigger.dev is a platform for building and deploying fully managed AI agents and workflows. Prior to 4.5.6, POST /api/v1

CVE-2026-73656NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73487: Flowise before 3.1.3 contains a regex-based Python code validator bypass in CSV and Airtable Agent nodes that allows una

CVE-2026-73487NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73485: Flowise before 3.1.3 contains a code injection vulnerability in the Airtable Agent node that allows unauthenticated atta

CVE-2026-73485NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026