aisecwatch.com
DashboardVulnerabilitiesNewsResearchArchiveStatsDatasetFor devs
Subscribe
aisecwatch.com

Real-time AI security monitoring. Tracking AI-related vulnerabilities, safety and security incidents, privacy risks, research developments, and policy changes.

Navigation

VulnerabilitiesNewsResearchDigest ArchiveNewsletter ArchiveSubscribeData SourcesStatisticsDatasetAPIIntegrationsWidgetRSS Feed

Maintained by

Truong (Jack) Luu

Information Systems Researcher

Browse All

All tracked items across vulnerabilities, news, research, incidents, and regulatory updates.

to
Export CSV
9703 items

Deepfake detection with dual-mode swin transformer: Multi-scale feature learning and local ambiguity mitigation

inforesearchPeer-Reviewed
researchsafety
Jun 2, 2026

This research paper presents a method for detecting deepfakes (synthetic videos or images created by AI to look realistic) using a dual-mode Swin Transformer, which is a type of neural network architecture. The approach uses multi-scale feature learning (analyzing visual details at different zoom levels) and local ambiguity mitigation (reducing confusion in uncertain areas) to improve detection accuracy. This is a technical contribution to security research, not a response to an existing vulnerability or security incident.

Elsevier Security Journals

CVE-2026-45247: Mirasvit Full Page Cache Warmer Deserialization of Untrusted Data Vulnerability

infovulnerability
security
Jun 2, 2026
CVE-2026-45247🔥 Actively Exploited

Palo Alto CEO says customer meeting requests have surged amid AI security concerns

infonews
securityindustry

CVE-2026-44654: LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. In versions up to and including 0.8.3, a sha

highvulnerability
security
Jun 2, 2026
CVE-2026-44654

LibreChat (a ChatGPT-like tool that connects to multiple AI providers) has a security flaw in versions up to 0.8.3 where someone with editing access to a shared agent can delete files globally, breaking the owner's separate private agents that use the same files. This is a cross-agent integrity violation, meaning one agent's access should not affect another agent's files.

CVE-2026-44653: LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. In versions up to and including 0.8.3, users

mediumvulnerability
security
Jun 2, 2026
CVE-2026-44653

LibreChat, a ChatGPT-like application supporting multiple AI providers, has a vulnerability in versions up to 0.8.3 where users with limited VIEW access can retrieve encrypted admin passwords and API keys through specific API endpoints, exposing credentials that should remain secret. This happens because the API returns plaintext sensitive values instead of hiding them from non-admin users.

CVE-2026-32625: LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. In versions up to and including 0.8.3, the M

criticalvulnerability
security
Jun 2, 2026
CVE-2026-32625

LibreChat, a ChatGPT-like tool that works with multiple AI providers, has a vulnerability in versions up to 0.8.3 where it unsafely replaces environment variable placeholders (like ${VAR}) when validating user-provided server URLs. An authenticated attacker can create a malicious server configuration that tricks LibreChat into sending sensitive secrets like encryption keys and database credentials to an attacker-controlled server, compromising the entire installation without needing admin access.

CVE-2026-31942: LibreChat is an enhanced ChatGPT clone that supports multiple AI providers. In versions up to and including 0.7.6, an In

highvulnerability
security
Jun 2, 2026
CVE-2026-31942

LibreChat, a ChatGPT-like application supporting multiple AI providers, has an IDOR vulnerability (insecure direct object reference, where an attacker can access or modify resources belonging to other users) in its API key management system in versions up to 0.7.6. An authenticated attacker can inject a userId parameter to overwrite another user's API keys, potentially stealing their API key configurations or blocking their service.

OpenAI upgrades GPT-5.5, as it plans to retire legacy ChatGPT models

infonews
industry
Jun 2, 2026

OpenAI has upgraded GPT-5.5 Instant to respond more accurately with more natural, human-like language and shorter responses, while retiring older models like o3 (August 26) and GPT-4.5 (June 27) to focus resources on newer capabilities. The company is also adding a job search tool to ChatGPT that integrates with job boards like Indeed and Upwork to help users find positions and tailor resumes.

Microsoft's new MAI models

infonews
industry
Jun 2, 2026

Microsoft announced two new text-based LLMs (large language models, AI systems trained on text data): MAI-Thinking-1, a 35-billion-parameter model (parameters are the adjustable values that make up a neural network) designed for reasoning tasks, and MAI-Code-1-Flash, a smaller 5-billion-parameter model built specifically for code generation in GitHub Copilot and VS Code. Both models were trained on licensed data rather than web scrapes, and Microsoft claims MAI-Thinking-1 outperforms Claude's Sonnet 4.6 model despite its smaller size.

HP Poly VoIP vulnerability sets the stage for executive voice deepfakes

highnews
security
Jun 2, 2026

HP released patches for a critical buffer overflow vulnerability (a coding flaw where too much data is written into a fixed-size memory container) in its Poly Voice conference phones that could allow attackers without authentication to gain root access (complete control of the operating system) and record conversations for voice deepfakes (AI-generated fake audio impersonations). The flaw exists in code that processes ICE (Interactive Connectivity Establishment, a feature for establishing direct network connections) requests and affects multiple Poly phone models.

Microsoft unveils new AI models to lessen reliance on OpenAI and lower costs for developers

infonews
industry
Jun 2, 2026

Microsoft announced new AI models including MAI-Code-1-Flash (a model that generates source code from written descriptions) and MAI-Thinking-1 (a reasoning model) to reduce dependence on OpenAI and lower costs for developers. These models run on Microsoft's own Azure cloud infrastructure, allowing the company to avoid paying third parties while offering developers lower token costs (tokens are the basic units that an AI model reads and processes). Microsoft is positioning itself to compete directly with proprietary models from OpenAI and Google by building its own AI capabilities across multiple layers of the technology stack.

Trump Signs Executive Order That Invites Vetting of Top AI Models for National Security Risks

infonews
policy
Jun 2, 2026

President Trump signed an executive order establishing a voluntary framework for the federal government to review the national security risks of the most advanced AI systems (models built by companies like OpenAI and Google that represent the cutting edge of AI development) before their public release, with a 30-day review period. The order aims to balance security concerns with concerns about slowing innovation, and it allows frontier labs to voluntarily share their most advanced models to help secure critical infrastructure and strengthen government cyber defenses.

The Meta AI Account Recovery Incident Wasn’t Just a Chatbot Problem

infonews
security
Jun 2, 2026

Hackers reportedly used Meta's AI support chatbot to take over high-profile Instagram accounts by tricking it into changing email addresses linked to those accounts, affecting pages associated with the Obama White House, Sephora, and other notable figures. The incident wasn't simply a case of prompt injection (tricking an AI by hiding instructions in its input), but rather revealed a deeper problem with how the AI chatbot was designed to handle account recovery requests.

Microsoft Build 2026: The 7 biggest announcements

infonews
industry
Jun 2, 2026

Microsoft held its Build 2026 conference with announcements from CEO Satya Nadella covering new hardware and AI updates, including a Surface RTX Spark Dev Box designed to help developers run local AI models (machine learning systems that operate on a user's own device rather than in the cloud) on their computers. The event also featured updates to Microsoft's own AI models and an always-on personal assistant feature.

Securing AI Agents Before They Go Rogue Is Next to Impossible

infonews
safetysecurity

Trump revives parts of canceled AI order with cybersecurity-focused directive

infonews
policysecurity

Trump signs executive order to review AI models before they’re released

infonews
policy
Jun 2, 2026

President Trump signed an executive order creating a voluntary framework requiring AI companies to share their frontier models (cutting-edge AI systems at the technological frontier) with the federal government before public release, aiming to improve security and protect critical infrastructure. The order balances innovation concerns with security risks by directing federal agencies to develop a system for assessing the advanced cyber capabilities of AI models before they are released.

Microsoft’s first advanced reasoning AI is here

infonews
industry
Jun 2, 2026

Microsoft announced MAI-Thinking-1, a new in-house AI model designed for advanced reasoning tasks, at its Build 2026 conference. The company claims this medium-sized model performs as well as leading models on software engineering benchmarks and was trained from scratch on clean data without using techniques from other companies' models. This represents Microsoft's growing effort to develop its own AI models instead of relying solely on its partnership with OpenAI.

Microsoft Scout is a new AI personal assistant built on OpenClaw

infonews
industry
Jun 2, 2026

Microsoft is launching Microsoft Scout, a new AI personal assistant built on OpenClaw (a foundation model technology) that integrates into Microsoft 365 apps like Outlook, OneDrive, and Teams. Unlike the existing Copilot assistant, Scout can see and do more, functioning as a comprehensive personal assistant that helps employees with tasks like organizing calendars, managing expenses, and drafting emails.

Google’s Phone app will tell you if a scammer is impersonating one of your contacts

infonews
safety
Jun 2, 2026

Google is adding a feature to its Phone app that detects when scammers use AI to impersonate calls from people in your contacts list, alerting you so you can hang up. The feature is part of Google's June Android update, which includes several other security and convenience improvements across Android devices.

Previous200 / 486Next

Mirasvit Full Page Cache Warmer contains a deserialization vulnerability (a flaw where untrusted data is converted back into executable code), allowing attackers without authentication to run arbitrary commands on affected systems by sending a malicious serialized PHP object (a packaged piece of code) through the CacheWarmer cookie. This vulnerability is currently being exploited in active attacks.

Fix: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable. See vendor changelog at https://mirasvit.com/package/changelog/?package=mirasvit/module-cache-warmer for available patches.

CISA Known Exploited Vulnerabilities
Jun 2, 2026

Palo Alto Networks CEO Nikesh Arora reported a surge in customer meetings, with the company fielding roughly 1,200 inquiries in recent weeks from organizations seeking guidance on AI security risks. The article notes that AI-powered attacks are becoming more sophisticated, making cybersecurity more important for companies, and that earlier investor concerns about AI disrupting cybersecurity companies appear to have been overblown.

CNBC Technology

Fix: Version 0.8.4 contains a patch.

NVD/CVE Database

Fix: Version 0.8.4 contains a patch. The source also recommends these additional approaches: never return decrypted admin-managed secrets to non-owners; redact apiKey.key and oauth.client_secret from all API responses; consider returning only boolean presence indicators for secrets (true/false flags showing whether a secret exists, similar to the auth-values route pattern); and if owners need to edit configs without re-entering secrets, preserve secrets server-side and return placeholders instead of plaintext values.

NVD/CVE Database

Fix: This is patched in version 0.8.4-rc1.

NVD/CVE Database

Fix: This vulnerability is patched in version 0.8.3-rc1.

NVD/CVE Database
BleepingComputer
Simon Willison's Weblog

Fix: HP has fixed the vulnerability in Poly Unified Communications Software (UCS) versions 6.4.8 for VVX devices, 8.1.7 for Trio 8300, and 7.2.8 for Trio 8500 and 8800 phones. Additionally, HP advises administrators to disable the ICE feature if it is not needed, since it is not enabled by default on HP Poly devices.

CSO Online
CNBC Technology
SecurityWeek
Check Point Research
The Verge (AI)
Jun 2, 2026

AI agents (systems that can act independently to complete tasks) with high autonomy and broad permissions are very difficult to secure and pose a serious risk to enterprises. The article warns that companies need to take action now to prevent AI agents from causing major problems in the future.

Dark Reading
Jun 2, 2026

President Trump signed an executive order focused on strengthening cybersecurity and establishing voluntary cooperation between the federal government and AI developers, reviving parts of a broader AI initiative he had canceled two weeks earlier. The order directs federal agencies to deploy AI-enhanced cybersecurity tools, create a government-industry system for sharing information about security vulnerabilities (known as a vulnerability-sharing initiative), and evaluate the cyber capabilities of advanced AI models. The order emphasizes that it does not impose mandatory licensing or approval requirements on AI developers, attempting to balance national security concerns with innovation.

Fix: The executive order specifies several explicit actions: Within 30 days, the Committee on National Security Systems must prioritize cyber defense of national security systems (NSS, government systems handling classified information). The Department of Defense is directed to prioritize protection of its own information systems. The Cybersecurity and Infrastructure Security Agency (CISA) must issue directives and guidance to strengthen civilian federal networks and accelerate adoption of AI-enabled defensive technologies.

CSO Online
The Verge (AI)
The Verge (AI)
The Verge (AI)
The Verge (AI)