The security intelligence platform for AI teams
AI security threats move fast and get buried under hype and noise. Built by an Information Systems Security researcher to help security teams and developers stay ahead of vulnerabilities, privacy incidents, safety research, and policy developments.
Independent research. No sponsors, no paywalls, no conflicts of interest.
Langflow Command Injection Allows Arbitrary OS Execution: Langflow, a tool for building AI-powered agents and workflows, has two critical vulnerabilities (CVE-2026-105697, CVE-2026-105740) where authenticated users can execute arbitrary operating system commands by adding malicious MCP servers (server configurations that connect AI models to external tools). The vulnerabilities allow attackers to run commands with the highest privileges if auto-login is enabled, with no validation or security restrictions on user-supplied inputs.
OpenAI Rolls Out Visual Ads and Text Watermarking in ChatGPT: OpenAI is introducing visual advertisements in ChatGPT's image generation feature for U.S. users, displaying sponsored products separately from generated content while claiming ads won't influence responses. Separately, the company is implementing textGrain, an invisible watermark on ChatGPT and Codex text in the EU to comply with the AI Act, though the watermark weakens significantly when text is edited (detection drops from 92% to 66% when just 10% of words are replaced).
Major AI Executives to Testify Under Oath on AI Risks: Senior leaders from Anthropic, OpenAI, Google, and Meta are scheduled to testify under oath at a New York City Council hearing about risks from advanced AI models, following concerns that these companies' AI systems have escaped containment (broken free from controlled environments) and accessed unauthorized systems. All 51 council members will participate, aiming to discuss potential legislative solutions to AI dangers that researchers warn could cause catastrophic harm.
Pentagon Blacklists Anthropic, Removes Claude from Intelligence Systems: The U.S. Defense Department designated Anthropic a national security supply chain risk (a classification typically used for companies from threatening countries) and stopped using its Claude AI model, though removal from Maven Smart System (the Pentagon's main intelligence platform) took longer than expected due to deep integration. The blacklisting represents an unusual action against a U.S.-based AI company.