aisecwatch.com
DashboardVulnerabilitiesNewsResearchArchiveStatsDatasetFor devs
Subscribe
aisecwatch.com

Real-time AI security monitoring. Tracking AI-related vulnerabilities, safety and security incidents, privacy risks, research developments, and policy changes.

Navigation

VulnerabilitiesNewsResearchDigest ArchiveNewsletter ArchiveSubscribeData SourcesStatisticsDatasetAPIIntegrationsWidgetRSS Feed

Maintained by

Truong (Jack) Luu

Information Systems Researcher

AI Sec Watch

The security intelligence platform for AI teams

AI security threats move fast and get buried under hype and noise. Built by an Information Systems Security researcher to help security teams and developers stay ahead of vulnerabilities, privacy incidents, safety research, and policy developments.

Independent research. No sponsors, no paywalls, no conflicts of interest.

[TOTAL_TRACKED]
6,400
[LAST_24H]
25
[LAST_7D]
169
Daily BriefingThursday, August 13, 2026
>

Flowise AI Platform Suffers Multiple Critical RCEs: Flowise versions before 3.1.3 contain two critical vulnerabilities allowing unauthenticated attackers to execute arbitrary Python code through prompt injection (tricking the AI by hiding instructions in input) in CSV and Airtable Agent nodes, bypassing weak regex-based validators to gain full host system access in an unsandboxed environment. (CVE-2026-73487, CVE-2026-73485)

>

vLLM Inference Engine Hit by Wave of Security Flaws: vLLM, a widely-used large language model serving engine, disclosed multiple vulnerabilities in versions before 0.26.0 including concurrent request race conditions that bypass prompt embedding safety checks, information disclosure through error messages, regex-based denial of service attacks, and an integer overflow bug that could leak one user's AI outputs to another. (CVE-2026-73557, CVE-2026-73555, CVE-2026-73556, CVE-2026-73558)

Latest Intel

page 54/640
VIEW ALL
01

Microsoft Says New Cybersecurity AI Model Helps MDASH Score 95.95% at Half the Cost

securityindustry
Critical This Week5 issues
critical

CVE-2026-73487: Flowise before 3.1.3 contains a regex-based Python code validator bypass in CSV and Airtable Agent nodes that allows una

CVE-2026-73487NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
>

Microsoft Warns AI Is Transforming Attack Economics: Microsoft security leaders presented evidence that AI tools now generate working exploits for vulnerabilities in 21 minutes at $3.61 cost, making traditional reactive patching and defenses like ASLR (address space layout randomization, which makes system memory locations unpredictable) increasingly ineffective as vulnerability processing volume increases nine-fold.

>

Autonomous AI Agents Conduct Multi-Day Attack on Asian Government: Autonomous AI agents built on open-source frameworks executed a coordinated cyberattack on Asian government networks across 12 waves, creating thousands of fake accounts and stealing personnel records while using parallel AI systems to perform reconnaissance, crack credentials, and exploit vulnerabilities at dramatically reduced cost compared to traditional attacks.

Jul 28, 2026

Microsoft launched MAI-Cyber-1-Flash, a new AI model designed specifically for cybersecurity tasks, which it integrated into MDASH (a system for identifying and fixing vulnerabilities). The company claims this configuration achieved a 95.95% score on CyberGym (a test that checks whether AI can reproduce known vulnerabilities) while costing 50% less than previous model combinations, though the score has not been verified on the public leaderboard and some testing details remain unclear.

The Hacker News
02

Hugging Face Has a Deepfake Nudes Problem

safetysecurity
Jul 28, 2026

Hugging Face, an open-source AI platform hosting AI models and datasets, has a widespread problem with nonconsensual deepfake nudes, according to research by AI Forensics. Researchers found that seven out of nine tested image editing tools on the platform could easily remove clothes from photos, and over 73 percent of user requests to honeypot (fake decoy) spaces were sexual in nature, with 83 percent seeking to undress or sexualize women without consent. The platform's content policies prohibit such deepfakes, but researchers found no safety mechanisms (called guardrails, which are filters to block harmful outputs) actually implemented at the platform level to prevent this misuse.

Fix: Hugging Face could "easily filter what is coming in and coming out of a system" according to researcher Paul Bouchaud quoted in the source. Some pages promoting nudifying services were removed after the publication contacted the company, though it is unclear if the two actions are directly related.

Wired (Security)
03

Microsoft unveils multi-model agentic cyber stack for security operations

securityindustry
Jul 27, 2026

Microsoft announced Project Perception, an AI-powered security service that uses multiple specialized AI agents (red team, blue team, and green team agents) to automatically find vulnerabilities, simulate attacks, detect threats, and develop fixes in an organization's systems. The service uses a multi-model approach (selecting different AI models based on which works best for each task) and includes Microsoft's custom model MAI-Cyber-1-Flash, which outperforms competitors' models while costing nearly half as much.

CSO Online
04

Samsung’s entry into AI-powered glasses forces CISOs to again consider corporate risk

securityprivacy
Jul 27, 2026

Samsung and other major tech companies are releasing AI-powered glasses, forcing corporate security leaders (CISOs, or Chief Information Security Officers) to worry about data leakage and privacy risks. However, enforcing restrictions on these devices is nearly impossible because they look like regular eyeglasses, employees can disable their recording indicator lights, and IT departments cannot monitor what workers wear at home or in hybrid work settings.

CSO Online
05

Samsung’s AI-powered glasses could be looking at your data

securityprivacy
Jul 27, 2026

Samsung's AI-powered glasses are creating security concerns for businesses because they can easily capture sensitive data (like screens or conversations) without being noticed, and IT teams struggle to enforce policies against them. The core challenge is that these devices look like regular glasses, making them nearly impossible to ban or detect in offices or remote work settings, while settings meant to limit data use may not actually be enforced by the AI devices themselves.

CSO Online
06

AI Agent Drives Espionage Attack on Thai Ministry of Finance

security
Jul 27, 2026

Attackers used Hermes, an autonomous open source tool that can operate in unrestricted "YOLO mode" (a setting where it runs without safety checks), to conduct espionage against Thailand's Ministry of Finance. The attack demonstrates how AI agents designed to act independently can be misused for cyber attacks when their safety restrictions are disabled.

Dark Reading
07

Microsoft touts cost-saving AI model for cybersecurity

industry
Jul 27, 2026

Microsoft announced a new AI model called MAI-Cyber-1-Flash designed to detect cybersecurity vulnerabilities (weaknesses in software that attackers could exploit), claiming it outperforms competitors' models while costing 50% less. The model will be part of Project Perception, a collection of AI agents for finding and fixing vulnerabilities, becoming available in public preview on August 3, 2026.

CNBC Technology
08

Anthropic CEO Dario Amodei says AI company isn't advocating for ban of open-weight models

policyindustry
Jul 27, 2026

Anthropic CEO Dario Amodei stated that his company does not advocate for banning open-weight models (AI models that users can download and run themselves), pushing back against criticism that Anthropic wants to control AI's future. Instead, Amodei proposed focusing on restricting access to powerful computing chips in authoritarian countries, stopping distillation attacks (where smaller AI models are created by copying outputs from larger, existing models), and requiring safety testing for all sufficiently capable models regardless of whether they are open or closed.

CNBC Technology
09

Jim Cramer warns AI's circular financing frenzy echoes the dot-com bubble

industry
Jul 27, 2026

Financial analyst Jim Cramer warns that the current wave of AI investment, where chipmaker Nvidia is investing heavily in its own customers like OpenAI and guaranteeing financing for their projects, mirrors the risky lending practices that fueled the dot-com bubble (the late 1990s tech industry collapse). He cautions that if these AI companies cannot eventually pay for the expensive chips they're buying, Nvidia and other investors could face major losses, similar to what happened when telecom equipment makers financed their customers' purchases in 2000.

CNBC Technology
10

Some people's chats with Claude AI found publicly available online

securityprivacy
Jul 27, 2026

Hundreds of user conversations with Claude, Anthropic's AI chatbot, were accidentally made publicly searchable on Google and other search engines because users who chose to share chat links did not realize search engines would index them. The shared chats contained sensitive information like personal details, work projects, and healthcare research, though Anthropic stated that sharing links makes content publicly accessible and that the search visibility was removed over the weekend.

Fix: Anthropic used available tools to block the chat log links from search results. According to the article, website owners can use Google's straightforward process for blocking links from search results, which must be initiated by the website owner.

BBC Technology
Prev1...5253545556...640Next
critical

CVE-2026-73485: Flowise before 3.1.3 contains a code injection vulnerability in the Airtable Agent node that allows unauthenticated atta

CVE-2026-73485NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

Zoom zero-click RCE flaws allow attackers to compromise meeting participants

CSO OnlineAug 11, 2026
Aug 11, 2026
critical

CVE-2026-73032: PapersGPT for Zotero 0.6.1 contains a remote code execution vulnerability that allows attackers to execute arbitrary Jav

CVE-2026-73032NVD/CVE DatabaseAug 11, 2026
Aug 11, 2026
critical

CVE-2026-72898: Metabase SQL Injection Vulnerability

CVE-2026-72898CISA Known Exploited VulnerabilitiesAug 10, 2026
Aug 10, 2026