aisecwatch.com
DashboardVulnerabilitiesNewsResearchArchiveStatsDatasetFor devs
Subscribe
aisecwatch.com

Real-time AI security monitoring. Tracking AI-related vulnerabilities, safety and security incidents, privacy risks, research developments, and policy changes.

Navigation

VulnerabilitiesNewsResearchDigest ArchiveNewsletter ArchiveSubscribeData SourcesStatisticsDatasetAPIIntegrationsWidgetRSS Feed

Maintained by

Truong (Jack) Luu

Information Systems Researcher

AI Sec Watch

The security intelligence platform for AI teams

AI security threats move fast and get buried under hype and noise. Built by an Information Systems Security researcher to help security teams and developers stay ahead of vulnerabilities, privacy incidents, safety research, and policy developments.

Independent research. No sponsors, no paywalls, no conflicts of interest.

[TOTAL_TRACKED]
6,419
[LAST_24H]
20
[LAST_7D]
168
Daily BriefingFriday, August 14, 2026
>

Apple Partners with Alibaba on China-Specific LLM: Apple has developed a custom large language model (LLM, a type of AI trained on large amounts of text data) for the Chinese market in collaboration with Alibaba, marking a strategic shift to gain greater control over its AI offerings in China's competitive landscape.

Latest Intel

page 97/642
VIEW ALL
01

Albanese to compare pivotal moment in AI to renewable energy transition as he outlines approach

policy
Jul 13, 2026

Australia's Prime Minister Anthony Albanese will give a speech comparing AI development to the renewable energy transition and discuss safety concerns and policy protections needed for AI. However, he is not expected to announce updates on copyright reforms that would protect artists and creators from having their work used by tech companies without permission.

Critical This Week5 issues
critical

CVE-2026-19297: IBM Langflow OSS 1.0.0 through 1.9.6 could allow a remote attacker to obtain unauthorized access to user accounts due to

CVE-2026-19297NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
The Guardian Technology
02

New MemGhost Attack Plants Persistent False Memories in AI Agents Through One Email

securityresearch
Jul 13, 2026

Researchers discovered MemGhost, an attack that tricks AI agents (assistants that remember information about you across sessions) into secretly storing false information through a single specially crafted email. The planted false "memory" then influences the agent's future responses without the user noticing, because the agent hides its file-editing steps and users rarely check raw memory files. The attack succeeded in 87.5% of background-mode tests, showing that agents reading email inboxes are vulnerable to having their persistent memories poisoned.

The Hacker News
03

Distributed Functional Mechanism in Shallow Networks: Differential Privacy Without Gradient Noise

researchprivacy
Jul 13, 2026

Researchers proposed DFM (Distributed Functional Mechanism), a method for training AI models while protecting user privacy in systems where multiple people contribute data. Unlike older privacy-focused training methods like DP-SGD (differentially private stochastic gradient descent, which adds noise to the mathematical directions the model learns), DFM protects privacy by adding noise to polynomial approximations (simplified mathematical descriptions) of the training process, making it faster and more stable while maintaining privacy guarantees across all users.

IEEE Xplore (Security & AI Journals)
04

“Say What You Mean”: Natural Language Access Control With Large Language Models for Internet of Things

researchsecurity
Jul 13, 2026

Access control in IoT (Internet of Things, networks of connected devices) is complex because policies need to consider dynamic factors like time and location, but existing systems are too rigid or require experts to manually translate natural language requirements into code, creating errors. LACE (Language-based Access Control Engine) is a new system that uses LLMs (large language models, AI systems trained on text) combined with retrieval-augmented reasoning (pulling in relevant information to help the AI decide) and formal validation (checking rules are logically correct) to let users write access control policies in plain English, which the system automatically converts into machine-enforced rules.

IEEE Xplore (Security & AI Journals)
05

AI Agents are Only As Effective as Their Harness

safety
Jul 13, 2026

AI agents (autonomous systems that complete complex tasks with minimal human oversight) depend on large language models (LLMs, which are AI systems trained on vast amounts of text to understand and generate language) for reasoning power, but reliability comes from the 'harness'—the framework and controls surrounding the agent rather than the model itself. The piece argues that vendors focus too much on the underlying LLM's capabilities while overlooking the infrastructure needed to make agents trustworthy for critical tasks like network security.

Check Point Research
06

Email Agent Hijacking: The Hidden Threat That Breaks Post-Delivery Security

securitysafety
Jul 13, 2026

AI agents that automatically read and respond to emails create a new security vulnerability called Email Agent Hijacking, where attackers hide malicious instructions in email content to trick the AI into making harmful decisions before humans ever see the message. Traditional email security checks happen after delivery, but they miss threats that target AI agents processing emails immediately upon arrival. Organizations currently lack adequate protection for emails that will be read by AI rather than humans.

Check Point Research
07

Empowering India’s next generation of innovators with ATL Saathi

safetypolicy
Jul 13, 2026

ATL Saathi is a new Gemini-powered web application (a tool built on Google's AI model) launched to help teachers at Atal Tinkering Labs across India by providing 24/7 planning and training support. The tool organizes curriculum materials, generates grade-appropriate project ideas for students, and works in 8 Indian languages to make high-quality mentorship more accessible to over 1.1 crore (11 million) students.

DeepMind Safety Research
08

Iran strikes, Lindsey Graham, Apple takes OpenAI to court and more in Morning Squawk

securityindustry
Jul 13, 2026

This newsletter discusses several major business and geopolitical developments, including renewed U.S.-Iran military conflict over the Strait of Hormuz that caused oil prices to rise, the unexpected death of Senator Lindsey Graham at 71, and Apple suing OpenAI for allegedly stealing trade secrets related to hardware development, marking a significant deterioration in their partnership. The item also mentions Amazon's recent large-scale layoffs and challenges in the tech job market.

CNBC Technology
09

RabbitMQ flaws expose OAuth secrets, risk complete takeover of the broker

security
Jul 13, 2026

RabbitMQ, a widely-used open-source message broker that transfers data between services in applications, had two security flaws that could expose OAuth secrets (authentication credentials) and allow attackers to take over the system. The more severe vulnerability let anyone access the broker's OAuth client secret without logging in, potentially giving attackers complete control, while the second flaw allowed even low-privilege users to discover and monitor queues and exchanges (the message storage and routing systems) they shouldn't have access to.

Fix: For CVE-2026-57219: upgrade to patched versions 3.13.15, 4.0.20, 4.1.11, or 4.2.6. RabbitMQ fixed this by removing the vulnerable endpoint and delivering OAuth configuration through "an authenticated bootstrap mechanism that no longer exposes the client secret over HTTP." Additionally, organizations should "rotate any exposed OAuth client secrets after patching and ensure the management interface is never exposed to untrusted networks." For CVE-2026-57221: upgrade to a patched release, and "isolate tenants into separate virtual hosts until patching can be completed" since there is no configuration workaround or WAF (web application firewall) mitigation. RabbitMQ fixed this by ensuring passive queue and exchange declarations now enforce authorization checks.

CSO Online
10

Thinking Fast and Slow in the SOC: The Case for Combining Autonomous AI with Analyst Copilots

industryresearch
Jul 13, 2026

This article compares how Security Operations Centers (SOCs, the teams that monitor and respond to security threats) should be designed to how the human brain actually works. Research shows that 98% of security alerts can be handled automatically, matching Kahneman's finding that 95% of human thinking happens unconsciously, while the remaining alerts need careful human review. Many SOCs currently waste analyst time on routine alerts instead of reserving human judgment for the small percentage of threats that truly need expert decision-making.

The Hacker News
Prev1...9596979899...642Next
critical

CVE-2026-73656: Trigger.dev is a platform for building and deploying fully managed AI agents and workflows. Prior to 4.5.6, POST /api/v1

CVE-2026-73656NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73487: Flowise before 3.1.3 contains a regex-based Python code validator bypass in CSV and Airtable Agent nodes that allows una

CVE-2026-73487NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73485: Flowise before 3.1.3 contains a code injection vulnerability in the Airtable Agent node that allows unauthenticated atta

CVE-2026-73485NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

Zoom zero-click RCE flaws allow attackers to compromise meeting participants

CSO OnlineAug 11, 2026
Aug 11, 2026