aisecwatch.com
DashboardVulnerabilitiesNewsResearchArchiveStatsDatasetFor devs
Subscribe
aisecwatch.com

Real-time AI security monitoring. Tracking AI-related vulnerabilities, safety and security incidents, privacy risks, research developments, and policy changes.

Navigation

VulnerabilitiesNewsResearchDigest ArchiveNewsletter ArchiveSubscribeData SourcesStatisticsDatasetAPIIntegrationsWidgetRSS Feed

Maintained by

Truong (Jack) Luu

Information Systems Researcher

Browse All

All tracked items across vulnerabilities, news, research, incidents, and regulatory updates.

to
Export CSV
9705 items

Claude Mythos AI Finds 10,000 High-Severity Flaws in Widely Used Software

infonews
securityindustry
May 23, 2026

Anthropic's Project Glasswing uses Claude Mythos Preview, an advanced AI model, to automatically find security flaws (vulnerabilities) in widely-used software before attackers can exploit them. Since launching last month, the program has identified over 10,000 high-severity vulnerabilities across critical software, with 97 already patched and 88 security advisories issued. However, Anthropic notes that finding vulnerabilities is much easier than fixing them, presenting a major challenge for cybersecurity.

Fix: Anthropic recommends that software developers and network defenders shorten their patch cycles and deployment timelines. Specific steps mentioned include: hardening networks' default configurations, enforcing multi-factor authentication (requiring two or more ways to verify identity), and keeping comprehensive logs for detection and response. Additionally, Anthropic launched a Cyber Verification Program that allows security professionals to use its models without safety restrictions for legitimate purposes such as vulnerability research, penetration testing, and red teaming (simulated attacks by friendly security experts).

The Hacker News

Google’s new anything-to-anything AI model is wild

infonews
safety
May 23, 2026

Google's Gemini AI model can generate realistic videos from simple inputs, as demonstrated by an experiment where someone created deepfake (synthetic media made to look real) videos of a stuffed animal. The article highlights how accessible and effective these video generation tools have become, raising questions about the line between harmless creative use and potentially misleading AI-generated content.

The FBI Wants ‘Near Real-Time’ Access to US License Plate Readers

infonews
security
May 23, 2026

Google accidentally published working exploit code for an unfixed vulnerability in Chromium (the open-source foundation for Chrome, Edge, and other browsers) that was originally reported 42 months earlier. The bug allows websites to install a persistent service worker (background code that runs on your device) that could monitor your browsing, redirect your traffic, or use your computer in DDoS attacks (large-scale coordinated attacks that overload servers).

DWT-AMSA: Robust image steganography via frequency-domain adaptive masking and progressive adversarial training

inforesearchPeer-Reviewed
research

Adaptive Trust-Aware SOC Human–AI Teaming for resilient operations

inforesearchPeer-Reviewed
research

Empirical Validation of a Data Security Risks Model for Implementing Mobile Cloud Computing in Higher Education

inforesearchPeer-Reviewed
security

Tulsi Gabbard resigns as national intelligence director, with Trump naming Aaron Lukas as acting DNI chief – US politics live

infonews
policy
May 22, 2026

This article reports on US political news regarding personnel changes in the intelligence community, specifically the resignation of the national intelligence director and appointment of a replacement. The content focuses on political developments and does not discuss any AI, cybersecurity, or technology-related issues.

Elon, stop trying to make Grok happen

infonews
industry
May 22, 2026

According to a Reuters report, Grok (Elon Musk's AI chatbot) is not performing well and has minimal adoption, appearing in only 3 out of over 400 documented cases of U.S. government AI use, and only for basic tasks like document drafting or social media management. This low usage is a sign of trouble for xAI's flagship product, despite Musk's plans to make it central to a major financial offering.

CVE-2026-9255 - Tool Execution Without Authorization via Piped Stdin in Kiro CLI

highvulnerability
security
May 22, 2026

Kiro CLI, a command-line tool that lets developers use AI to run code and shell commands, has a security flaw (CVE-2026-9255) where it doesn't properly check where input comes from before authorizing tool execution. An attacker on the same computer could trick the tool into running arbitrary commands without the user's permission by sending specially crafted data through stdin (the standard input stream that feeds data into a program).

Microsoft says it’s making AI ‘safe for work’ in your browser

infonews
securitypolicy

The literary world isn’t prepared for AI

infonews
safety
May 22, 2026

A story selected for a prestigious British literary award appears to have been written by an LLM (large language model, an AI trained on text to generate human-like writing) rather than by a human author, raising concerns about how the literary world will handle AI-generated submissions. The story exhibits characteristic patterns of AI-generated text, such as repetitive sentence structures and predictable phrasing.

Spotify says its AI remix tool is for superfans, but I’m not convinced

infonews
industry
May 22, 2026

Spotify has partnered with Universal Music Group (UMG) to create a new tool that uses generative AI (AI that creates new content from patterns in training data) to let users make remixes and covers of songs from UMG's music catalog. The article expresses concern that this tool will make it even easier to flood the internet with AI-generated music covers, which already appear widely on platforms like YouTube, TikTok, and Instagram.

FairRoP: Robust Client Selection Scheme for Fairness-Aware Federated Learning

inforesearchPeer-Reviewed
research

Receding-Horizon Radar Time Resource Scheduling for Jamming-Resilient Target Search and Tracking

inforesearchPeer-Reviewed
research

AI Attacks Are No Longer Experimental: Key Findings from the March-April 2026 AI Threat Landscape

highnews
security
May 22, 2026

Between December 2025 and February 2026, a single attacker compromised nine Mexican government agencies using AI as the core tool to carry out the entire attack, rather than just a helper tool. The attacker accessed sensitive data including tax records, civil registry information, patient files, and electoral systems, and researchers only discovered the breach after finding materials on the attacker's servers.

The Download: coding’s future, the ‘Steroid Olympics,’ and AI-driven science

infonews
industrysafety

Mega-IPOs could signal market top, say analysts as SpaceX and OpenAI prep record floats

infonews
industry
May 22, 2026

SpaceX, OpenAI, and Anthropic are planning major initial public offerings (IPOs, where companies sell shares to the public for the first time) in 2026, with SpaceX targeting a $1.75 trillion valuation. However, analysts warn these mega-cap floats resemble the late-1990s dot-com bubble, noting that all three companies are unprofitable and have opaque business models, with SpaceX's only profitable division being its Starlink internet service while its AI and space divisions operate at significant losses.

Why your AI strategy stops where the PLC starts: Hard lessons from the OT frontlines

infonews
securitypolicy

Mars colony and Grok warnings: five strange details in SpaceX’s pitch to investors

infonews
industry
May 22, 2026

SpaceX released a 300+ page investor document (prospectus, which outlines a company's finances and plans to potential investors) as part of its plan to go public on the US stock market, revealing financial details and various risk warnings about the company's ambitious plans. The document includes unusual disclosures that reflect Elon Musk's vision for space exploration and shows how interconnected his different businesses are with each other.

Google folds CodeMender into agent ecosystem amid push for AI-led AppSec

infonews
industry
May 22, 2026

Google is integrating CodeMender, an AI agent that automatically finds and fixes software vulnerabilities, into its larger Agent Platform ecosystem rather than keeping it as a standalone tool. CodeMender uses Gemini reasoning models (advanced AI that can think through complex problems) to analyze code vulnerabilities, generate fixes, and test them before showing them to developers. This shift suggests Google believes enterprises want autonomous security tools embedded within a governed infrastructure framework with identity and monitoring systems, rather than as isolated products.

Previous213 / 486Next
The Verge (AI)
Wired (Security)
May 22, 2026

This research paper presents DWT-AMSA, a new method for image steganography (hiding secret data inside images so others cannot detect it) that uses frequency-domain adaptive masking (adjusting which parts of an image's mathematical representation are modified based on the image content) and progressive adversarial training (a machine learning technique where two competing AI systems improve each other iteratively to make the hidden data harder to detect). The method aims to make hidden information more robust and harder for attackers to discover or remove.

Elsevier Security Journals
safety
May 22, 2026

This research paper examines how Security Operations Centers (SOCs, teams that monitor and respond to security threats) can work effectively with AI systems by using adaptive trust mechanisms. The study focuses on building resilient operations, meaning systems that can continue functioning even when problems occur, through better collaboration between human security experts and AI tools that can process large amounts of data quickly.

Elsevier Security Journals
May 22, 2026

This research paper validates a model for identifying and managing data security risks when higher education institutions use mobile cloud computing (storing and accessing data through mobile devices and internet-based servers rather than local computers). The study empirically tests this security risk model to help universities better understand and protect sensitive data in mobile cloud environments.

Elsevier Security Journals
The Guardian Technology
The Verge (AI)

Fix: Update kiro-cli to version 1.28.0 or later. The affected versions are kiro-cli prior to 1.28.0.

AWS Security Bulletins
May 22, 2026

Microsoft is testing agentic AI (AI that can perform multi-step tasks automatically) in its Edge for Business browser to help employees complete routine work like filling forms and gathering information across tabs. A key focus is protecting corporate data through features that keep AI prompts within the company's Microsoft 365 tenant (a private cloud environment), prevent copy-paste operations, block sensitive uploads, and allow companies to audit what users do.

Fix: Microsoft provides several data protection features in Edge for Business: enterprises can block copy and paste functionality, ensure all AI prompts and responses stay within their Microsoft 365 tenant (preventing use for model training), enable audit capabilities for prompts, and use the Purview compliance tool to analyze file uploads and detect sensitive data to block risky actions. These protections are active as soon as users sign into Edge for Business.

CSO Online
The Verge (AI)
The Verge (AI)
security
May 22, 2026

Federated learning (a system where multiple computers train an AI model together while keeping their data private) can be unfair to some participants and vulnerable to attacks where bad actors tamper with the process. FairRoP is a new method that uses adaptive client selection (choosing which computers to include based on their trustworthiness) and a bandit algorithm (a technique for balancing exploration and exploitation in decision-making) to improve both fairness and robustness against attacks. The approach combines three components: fairness awareness, attack detection, and q-Balance to handle the different challenges involved.

IEEE Xplore (Security & AI Journals)
May 22, 2026

This article addresses how radar systems (devices that detect objects using electromagnetic waves) can better allocate their time between searching for targets and tracking known ones when facing jamming (intentional interference meant to disrupt detection). The researchers propose a dynamic scheduling strategy using receding-horizon optimization (a method that repeatedly solves shorter planning problems instead of one big long-term problem) combined with mathematical techniques to keep radar performance strong even under jamming attacks.

IEEE Xplore (Security & AI Journals)
Check Point Research
May 22, 2026

At Anthropic's developer event, nearly half the attendees reported shipping code written entirely by Claude (an AI assistant), with many not reading it first before deploying it live. The article discusses how AI coding tools are becoming increasingly capable and how developers are automating their work, though not everyone agrees this approach is beneficial.

MIT Technology Review
CNBC Technology
May 22, 2026

AI security strategies often fail in operational technology (OT) environments, like power plants and factories, because critical legacy systems don't send data to AI systems—a maintenance laptop running unpatched Windows 7 is common. AI trained on typical IT data (like web traffic logs) often misclassifies normal industrial traffic as threats, and automated responses can accidentally shut down production lines faster than actual attacks, because in OT systems availability (keeping things running) is more important than the IT security priorities of confidentiality and integrity.

CSO Online
The Guardian Technology
CSO Online