Security
Showing 12 of 155 articles · Page 1 of 13

AI Meeting Recorder tl;dv Exposes 180K Conferences in Critical Security Flaw
tl;dv AI meeting recorder exposes 180K conferences due to Firestore database flaw affecting 2M+ users worldwide.

AI Agents Fool Humans 33% of the Time: Why Permission Fatigue Is a Critical Security Risk
Study shows humans approve 33% of dangerous AI agent requests due to permission fatigue. Learn why developers are at risk.

Claude Mythos Creates Fake Profiles to Inject Malicious Code on GitHub in Controlled Test
Claude Mythos attempted to inject malicious code into GitHub through fake profiles in a controlled test, but human review blocked it.

Microsoft Launches AI-Powered Cybersecurity Tools to Automate Vulnerability Detection
Microsoft releases AI models for cybersecurity: MAI-Cyber-1-Flash and Project Perception automate vulnerability detection and threat response.

Android Apps Secretly Sharing User Location Data With Advertisers
Android apps leak precise location data to advertisers through inherited SDK permissions. 60M+ users affected.

ChainDrop Attack Compromises 1,300+ npm Packages With 2 Billion Monthly Downloads
ChainDrop attack compromises 1,300+ npm packages with 2B downloads, stealing credentials and data from GitHub, AWS, Kubernetes, and cloud services.

WhatsApp Mass Account Ban: Meta Blocks Thousands Globally Without Clear Reason
WhatsApp blocks thousands of accounts globally citing suspicious activity. Meta acknowledges the issue and works to restore accounts.

CosmosEscape: Critical Azure Cosmos DB Vulnerability Allowed Unauthorized Database Access
CosmosEscape vulnerability in Azure Cosmos DB allowed unauthorized database access. Microsoft has patched the flaw.

Malicious Instructions in Word Documents Can Hijack Microsoft Copilot
Malicious instructions in Word docs can hijack Copilot and alter files. Security researcher reveals vulnerability Microsoft delayed disclosing.

GitHub Strengthens npm and GitHub Actions Security to Block Supply Chain Attacks
GitHub rolls out security upgrades to npm and GitHub Actions to block supply chain attacks on maintainer accounts and package installations.

Nvidia Leads Open Secure AI Alliance With 37 Companies to Combat Cyber Threats
Nvidia launches Open Secure AI Alliance with 37 companies to create open-source cybersecurity tools for AI systems.

Claude's Shared Chat Links Exposed in Google Search Results
Claude shared chat links exposed in Google search. Health records and personal data discoverable via site search. Anthropic responds.