aisecwatch.com
DashboardVulnerabilitiesNewsResearchArchiveStatsDatasetFor devs
Subscribe
aisecwatch.com

Real-time AI security monitoring. Tracking AI-related vulnerabilities, safety and security incidents, privacy risks, research developments, and policy changes.

Navigation

VulnerabilitiesNewsResearchDigest ArchiveNewsletter ArchiveSubscribeData SourcesStatisticsDatasetAPIIntegrationsWidgetRSS Feed

Maintained by

Truong (Jack) Luu

Information Systems Researcher

AI Sec Watch

The security intelligence platform for AI teams

AI security threats move fast and get buried under hype and noise. Built by an Information Systems Security researcher to help security teams and developers stay ahead of vulnerabilities, privacy incidents, safety research, and policy developments.

Independent research. No sponsors, no paywalls, no conflicts of interest.

[TOTAL_TRACKED]
6,419
[LAST_24H]
18
[LAST_7D]
166
Daily BriefingFriday, August 14, 2026
>

Apple Partners with Alibaba on China-Specific LLM: Apple has developed a custom large language model (LLM, a type of AI trained on large amounts of text data) for the Chinese market in collaboration with Alibaba, marking a strategic shift to gain greater control over its AI offerings in China's competitive landscape.

Latest Intel

page 99/642
VIEW ALL
01

CVE-2026-61447: PraisonAI before 1.6.78 contains a remote code execution vulnerability in CodeAgent._execute_python() that executes LLM-

security
Jul 11, 2026

PraisonAI before version 1.6.78 has a critical remote code execution vulnerability in its CodeAgent._execute_python() function, which runs Python code generated by the AI without proper safety checks like AST validation (checking code structure before running it) or sandboxing (isolating code so it can't access the full system). Attackers can use prompt injection (tricking the AI by hiding malicious instructions in their input) to make the AI generate harmful code that steals secret credentials from the system or runs arbitrary commands.

Critical This Week5 issues
critical

CVE-2026-19297: IBM Langflow OSS 1.0.0 through 1.9.6 could allow a remote attacker to obtain unauthorized access to user accounts due to

CVE-2026-19297NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026

Fix: Upgrade PraisonAI to version 1.6.78 or later.

NVD/CVE Database
02

CVE-2026-61439: PraisonAI versions before 4.6.78 contain a prompt injection defense misconfiguration where the block threshold defaults

security
Jul 11, 2026

PraisonAI versions before 4.6.78 have a security misconfiguration in their prompt injection defense (a security feature that blocks attempts to trick an AI into ignoring its instructions). The defense is set to only block attacks marked as CRITICAL severity, which means HIGH-severity attacks slip through without being blocked, allowing attackers to extract hidden system prompts and trigger unauthorized tool use.

NVD/CVE Database
03

Using private data with freedom: A cloud-assisted ID-Private data join protocol for privacy-preserving machine learning over distributed data

researchprivacy
Jul 11, 2026

This research paper proposes a cloud-assisted protocol for privacy-preserving machine learning that allows AI models to be trained on distributed data (data stored in different locations) without exposing users' private information. The protocol uses ID-Private data joins, a technique that matches data from different sources while keeping sensitive details hidden from the cloud and other parties involved.

Elsevier Security Journals
04

A Deep Dive into Fairness, Bias, Threats, and Privacy in Recommender Systems: Insights and Future Research

researchsafety
Jul 11, 2026

This academic survey examines fairness, bias, threats, and privacy issues in recommender systems (AI systems that suggest products, content, or services to users). The paper analyzes insights from existing research and identifies areas needing future investigation, but does not present or evaluate specific technical fixes.

ACM Digital Library (TOPS, DTRAP, CSUR)
05

ML4SOC: A Comprehensive Review on Machine Learning for Security Operations Centres

researchsecurity
Jul 11, 2026

This is a comprehensive academic review article published in ACM Computing Surveys that examines how machine learning (algorithms that learn patterns from data) is being used in Security Operations Centres (SOCs, which are teams and systems that monitor networks for threats). The article surveys the current state of ML applications across security operations but does not focus on a specific vulnerability or problem requiring a mitigation.

ACM Digital Library (TOPS, DTRAP, CSUR)
06

'Ghostcommit' hides prompt injection in images to fool AI agents, steal secrets

securityresearch
Jul 11, 2026

Researchers discovered 'Ghostcommit', an attack that hides prompt injection (tricking an AI by embedding hidden instructions in its input) inside PNG image files within code repositories to steal secrets. When a human code reviewer approves a pull request containing a malicious image, an AI coding agent later reads the image, extracts instructions to steal sensitive credentials from .env files (configuration files containing secret keys), and encodes them as numbers in the code where they go undetected by security scanners.

BleepingComputer
07

Meta turns off the Instagram feature that let users make AI deepfakes of public accounts

safetyprivacy
Jul 10, 2026

Meta announced a feature that let users create AI-generated images by tagging public Instagram accounts, but the feature allowed content from any public account to be used without the account owner's permission. Following backlash, Meta is turning off this feature.

Fix: Meta is turning off the feature that allowed users to generate AI images by @-mentioning public Instagram accounts.

The Verge (AI)
08

Apple sues OpenAI, its employees claiming theft of trade secrets

securitypolicy
Jul 10, 2026

Apple has sued OpenAI, claiming the AI company stole trade secrets through former Apple employees who allegedly emailed themselves confidential information about products and operations. The lawsuit targets OpenAI, two former Apple workers (including OpenAI's current chief hardware officer), and io Products (a design startup OpenAI acquired), accusing them of a coordinated strategy to extract Apple's proprietary manufacturing techniques and unreleased product details to help OpenAI enter the consumer hardware market.

Fix: Apple has asked the court to immediately prohibit OpenAI from obtaining or using any alleged confidential information and is seeking unspecified monetary damages. The company also stated it attempted to discuss its concerns with OpenAI in February before filing the lawsuit.

BBC Technology
09

Apple sues OpenAI alleging trade secret theft, says scheme was 'at every level'

security
Jul 10, 2026

Apple sued OpenAI in federal court, alleging that OpenAI stole Apple's trade secrets (confidential information that gives a company competitive advantage) to develop hardware products, with involvement from OpenAI's hardware chief and former Apple employees. The lawsuit marks a dramatic reversal from the companies' 2024 partnership integrating ChatGPT into iPhones, which deteriorated after OpenAI announced plans to enter the hardware business by acquiring designer Jony Ive's startup.

CNBC Technology
10

Apple sues OpenAI, alleging artificial intelligence company stole trade secrets

securitypolicy
Jul 10, 2026

Apple sued OpenAI, claiming the AI company stole trade secrets by recruiting Apple employees and pressuring them to share confidential information about unreleased products and designs. The lawsuit names several former Apple employees, including OpenAI's chief hardware officer, and alleges they took proprietary information and even physical Apple equipment to help OpenAI develop its own hardware business. Apple is seeking damages and a court order to prevent OpenAI from using its stolen trade secrets.

The Guardian Technology
Prev1...979899100101...642Next
critical

CVE-2026-73656: Trigger.dev is a platform for building and deploying fully managed AI agents and workflows. Prior to 4.5.6, POST /api/v1

CVE-2026-73656NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73487: Flowise before 3.1.3 contains a regex-based Python code validator bypass in CSV and Airtable Agent nodes that allows una

CVE-2026-73487NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

CVE-2026-73485: Flowise before 3.1.3 contains a code injection vulnerability in the Airtable Agent node that allows unauthenticated atta

CVE-2026-73485NVD/CVE DatabaseAug 13, 2026
Aug 13, 2026
critical

Zoom zero-click RCE flaws allow attackers to compromise meeting participants

CSO OnlineAug 11, 2026
Aug 11, 2026