AI  2023  

DATE

NAME

Info

CATEG.

WEB

28.10.25 New ChatGPT Atlas Browser Exploit Lets Attackers Plant Persistent Hidden Commands Cybersecurity researchers have discovered a new vulnerability in OpenAI's ChatGPT Atlas web browser that could allow malicious actors to inject nefarious instructions into the AI The Hacker News
28.10.25 ChatGPT Atlas Browser Can Be Tricked by Fake URLs into Executing Hidden Commands The threat actors behind a large-scale, ongoing smishing campaign have been attributed to more than 194,000 malicious domains since January 1, 2024, targeting a broad range of AI

The Hacker News

26.10.25 Spoofed AI sidebars can trick Atlas, Comet users into dangerous actions OpenAI's Atlas and Perplexity's Comet browsers are vulnerable to AI sidebar spoofing attacks that mislead users into following fake AI-generated instructions. AI

BleepingComputer

19.10.25 Microsoft debuts Copilot Actions for agentic AI-driven Windows tasks Microsoft announced today a new Windows 11 Copilot feature called Copilot Actions that enables AI agents to perform real tasks on local files and applications. AI

BleepingComputer

19.10.25 How to spot dark web threats on your network using NDR Dark web activity can hide in plain sight within everyday network traffic. Corelight's NDR platform brings deep visibility, AI-driven detection, and behavioral analytics to uncover hidden threats across your network. AI

BleepingComputer

18.10.25 When AI Agents Join the Teams: The Hidden Security Shifts No One Expects AI assistants are no longer just helping — they're acting. Autonomous agents now open tickets, fix incidents, and make decisions faster than humans can monitor. As "Shadow AI" spreads, learn from Token Security why orgs must govern these agents like powerful new identities before oversight disappears. AI

BleepingComputer

12.10.25

Redefining Security Validation with AI-Powered Breach and Attack Simulation Security teams are drowning in threat intel — but AI is changing that. AI-powered Breach and Attack Simulation turns new threats into real, testable scenarios in minutes — delivering proof that your defenses work, not just assumptions. Join the BAS Summit 2025 to see how AI redefines security validation. AI

BleepingComputer

12.10.25

Google's new AI bug bounty program pays up to $30,000 for flaws This week, Google has launched an AI Vulnerability Reward Program dedicated to security researchers who find and report flaws in the company's AI systems. AI BleepingComputer

11.10.25

The role of Artificial Intelligence in today’s cybersecurity landscape AI is transforming cybersecurity—from detecting phishing and insider threats to accelerating response. See how Waziuh, the open-source XDR and SIEM, integrates AI to turn raw security data into actionable insights and smarter threat hunting. AI

BleepingComputer

9.10.25

From Phishing to Malware: AI Becomes Russia's New Cyber Weapon in War on Ukraine Russian hackers' adoption of artificial intelligence (AI) in cyber attacks against Ukraine has reached a new level in the first half of 2025 (H1 2025), the country's State Service for Special AI

The Hacker News

8.10.25

OpenAI Disrupts Russian, North Korean, and Chinese Hackers Misusing ChatGPT for Cyberattacks OpenAI on Tuesday said it disrupted three activity clusters for misusing its ChatGPT artificial intelligence (AI) tool to facilitate malware development. This includes a Russian‑language AI

The Hacker News

8.10.25

Google's New AI Doesn't Just Find Vulnerabilities — It Rewrites Code to Patch Them Google's DeepMind division on Monday announced an artificial intelligence (AI)-powered agent called CodeMender that automatically detects, patches, and rewrites vulnerable code to prevent AI

The Hacker News

5.10.25

Google Drive for desktop gets AI-powered ransomware detection Google has begun rolling out a new AI-powered security feature for Google Drive desktop, which will automatically pause file syncing when it detects a ransomware attack to minimize impact. AI

BleepingComputer

5.10.25

CometJacking: One Click Can Turn Perplexity's Comet AI Browser Into a Data Thief Cybersecurity researchers have disclosed details of a new attack called CometJacking targeting Perplexity's agentic AI browser Comet by embedding malicious prompts within a AI

The Hacker News

4.10.25 Can We Trust AI To Write Vulnerability Checks? Here's What We Found Can AI speed up writing vulnerability checks without sacrificing quality? Intruder put it to the test. Their researchers found where AI helps, where it falls short, and why human oversight is still critical. See what they discovered in practice. AI

BleepingComputer

3.10.25 Red Hat OpenShift AI Flaw Exposes Hybrid Cloud Infrastructure to Full Takeover A severe security flaw has been disclosed in the Red Hat OpenShift AI service that could allow attackers to escalate privileges and take control of the complete infrastructure under certain AI The Hacker News
3.10.25 Researchers Disclose Google Gemini AI Flaws Allowing Prompt Injection and Cloud Exploits Cybersecurity researchers have disclosed three now-patched security vulnerabilities impacting Google's Gemini artificial intelligence (AI) assistant that, if successfully exploited, could have AI The Hacker News
3.10.25 EvilAI Malware Masquerades as AI Tools to Infiltrate Global Organizations Threat actors have been observed using seemingly legitimate artificial intelligence (AI) tools and software to sneakily slip malware for future attacks on organizations worldwide. According AI The Hacker News
3.10.25 Microsoft Flags AI-Driven Phishing: LLM-Crafted SVG Files Outsmart Email Security Microsoft is calling attention to a new phishing campaign primarily aimed at U.S.-based organizations that has likely utilized code generated using large language models (LLMs) to AI The Hacker News
28.9.25 Microsoft’s new AI feature will organize your photos automatically Microsoft has begun testing a new AI-powered feature in Microsoft Photos, designed to categorize photos automatically on Windows 11 systems. AI

BleepingComputer

28.9.25 The hidden cyber risks of deploying generative AI Generative AI can boost productivity—but without safeguards, it also opens the door to phishing, fraud & model manipulation. Learn more from Acronis TRU on why AI security must be built in from the start. AI

BleepingComputer

28.9.25 OpenAI is testing a new GPT-5-based AI agent "GPT-Alpha" OpenAI is internally testing a new version of its AI agent, which uses a special version of GPT-5 dubbed "GPT-Alpha." AI

BleepingComputer

26.9.25 Salesforce Patches Critical ForcedLeak Bug Exposing CRM Data via AI Prompt Injection The North Korea-linked threat actors associated with the Contagious Interview campaign have been attributed to a previously undocumented backdoor called AkdoorTea, along with tools like AI The Hacker News
24.9.25 Two Critical Flaws Uncovered in Wondershare RepairIt Exposing User Data and AI Models Cybersecurity researchers have disclosed two security flaws in Wondershare RepairIt that exposed private user data and potentially exposed the system to artificial intelligence (AI) AI The Hacker News
20.9.25 Researchers Uncover GPT-4-Powered MalTerminal Malware Creating Ransomware, Reverse Shell Cybersecurity researchers have discovered what they say is the earliest example known to date of a malware with that bakes in Large Language Model (LLM) capabilities. The malware has AI The Hacker News
20.9.25 ShadowLeak Zero-Click Flaw Leaks Gmail Data via OpenAI ChatGPT Deep Research Agent Cybersecurity researchers have disclosed a zero-click flaw in OpenAI ChatGPT's Deep Research agent that could allow an attacker to leak sensitive Gmail inbox data with a single crafted email AI The Hacker News
15.9.25 AI-Powered Villager Pen Testing Tool Hits 11,000 PyPI Downloads Amid Abuse Concerns A new artificial intelligence (AI)-powered penetration testing tool linked to a China-based company has attracted nearly 11,000 downloads on the Python Package AI The Hacker News
14.9.25 Cursor AI editor lets repos “autorun” malicious code on devices A weakness in the Cursor code editor exposes developers to the risk of automatically executing tasks in a malicious repository as soon as it's opened. AI

BleepingComputer

12.9.25 AI-powered malware hit 2,180 GitHub accounts in “s1ngularity” attack Investigations into the Nx "s1ngularity" NPM supply chain attack have unveiled a massive fallout, with thousands of account tokens and repository secrets leaked. AI

BleepingComputer

12.9.25 Cursor AI Code Editor Flaw Enables Silent Code Execution via Malicious Repositories A security weakness has been disclosed in the artificial intelligence (AI)-powered code editor Cursor that could trigger code execution when a maliciously crafted AI The Hacker News
12.9.25 Google Pixel 10 Adds C2PA Support to Verify AI-Generated Media Authenticity Google on Tuesday announced that its new Google Pixel 10 phones support the Coalition for Content Provenance and Authenticity (C2PA) standard out of the box AI The Hacker News
7.9.25 Threat actors abuse X’s Grok AI to spread malicious links Threat actors are using Grok, X's built-in AI assistant, to bypass link posting restrictions that the platform introduced to reduce malicious advertising. AI

BleepingComputer

7.9.25 Hackers use new HexStrike-AI tool to rapidly exploit n-day flaws Hackers are increasingly using a new AI-powered offensive security framework called HexStrike-AI in real attacks to exploit newly disclosed n-day flaws. AI

BleepingComputer

6.9.25 OpenAI releases big upgrade for ChatGPT Codex for agentic coding OpenAI has announced a big update for Codex, which is the company's agentic coding tool. AI

BleepingComputer

6.9.25 Anthropic is testing GPT Codex-like Claude Code web app Anthropic is testing GPT Codex-like Claude Code web app AI

BleepingComputer

6.9.25 ChatGPT can now create flashcards quiz on any topic If you use ChatGPT to learn new topics, you might want to try its new flashcard-based quiz feature, which can help you evaluate your progress. AI

BleepingComputer

6.9.25 OpenAI is testing "Thinking effort" for ChatGPT OpenAI is working on a new feature called the Thinking effort picker for ChatGPT. AI

BleepingComputer

4.9.25 Cybercriminals Exploit X's Grok AI to Bypass Ad Protections and Spread Malware to Millions Cybersecurity researchers have flagged a new technique that cybercriminals have adopted to bypass social media platform X's malvertising protections and AI The Hacker News
4.9.25 Weaponized GenAI + Extortion-First Strategies Fueling a New Age of Ransomware Trends and insights based on expert analysis of public leak sites, ransomware samples and attack data. AI The Hacker News
2.9.25 Shadow AI Discovery: A Critical Part of Enterprise AI Governance The Harsh Truths of AI Adoption MITs State of AI in Business report revealed that while 40% of organizations have purchased enterprise LLM subscriptions, over 90% AI The Hacker News
31.8.25 Malware devs abuse Anthropic’s Claude AI to build ransomware Anthropic's Claude Code large language model has been abused by threat actors who used it in data extortion campaigns and to develop ransomware packages. AI

BleepingComputer

31.8.25 Experimental PromptLock ransomware uses AI to encrypt, steal data Threat researchers discovered the first AI-powered ransomware, called PromptLock, that uses Lua scripts to steal and encrypt data on Windows, macOS, and Linux systems. AI

BleepingComputer

30.8.25 New AI attack hides data-theft prompts in downscaled images Researchers have developed a novel attack that steals user data by injecting malicious prompts in images processed by AI systems before delivering them to a large language model. AI

BleepingComputer

27.8.25 Salesloft OAuth Breach via Drift AI Chat Agent Exposes Salesforce Customer Data A widespread data theft campaign has allowed hackers to breach sales automation platform Salesloft to steal OAuth and refresh tokens associated with the Drift AI The Hacker News
24.8.25 Why Certified VMware Pros Are Driving the Future of IT From hybrid cloud to AI, IT complexity and security risks are accelerating. Certified VMware pros bring clarity and resilience that keep teams ahead. See why CIOs are making certification a workforce strategy with VMUG. AI

BleepingComputer

24.8.25 AI website builder Lovable increasingly abused for malicious activity Cybercriminals are increasingly abusing the AI-powered Lovable website creation and hosting platform to generate phishing pages, malware-dropping portals, and various fraudulent websites. AI

BleepingComputer

24.8.25 Perplexity’s Comet AI browser tricked into buying fake items online A study looking into agentic AI browsers has found that these emerging tools are vulnerable to both new and old schemes that could make them interact with malicious pages and prompts. AI

BleepingComputer

20.8.25 Experts Find AI Browsers Can Be Tricked by PromptFix Exploit to Run Malicious Hidden Prompts Cybersecurity researchers have demonstrated a new prompt injection technique called PromptFix that tricks a generative artificial intelligence (GenAI) model into carrying out intended actions by embedding the malicious instruction inside a fake CAPTCHA check on a web page. AI The Hacker News
12.8.25 Researchers Uncover GPT-5 Jailbreak and Zero-Click AI Agent Attacks Exposing Cloud and IoT Systems Cybersecurity researchers have uncovered a jailbreak technique to bypass ethical guardrails erected by OpenAI in its latest large language model (LLM) GPT-5 and AI The Hacker News
12.8.25 AI Tools Fuel Brazilian Phishing Scam While Efimer Trojan Steals Crypto from 5,000 Victims Cybersecurity researchers are drawing attention to a new campaign that's using legitimate generative artificial intelligence (AI)-powered website building tools like AI The Hacker News
08.08.25 Microsoft Launches Project Ire to Autonomously Classify Malware Using AI Tools Microsoft on Tuesday announced an autonomous artificial intelligence (AI) agent that can analyze and classify software without assistance in an effort to advance AI The Hacker News
05.08.25 Cursor AI Code Editor Vulnerability Enables RCE via Malicious MCP File Swaps Post Approval Cybersecurity researchers have disclosed a high-severity security flaw in the artificial intelligence (AI)-powered code editor Cursor that could result in remote AI The Hacker News
01.08.25 AI-Generated Malicious npm Package Drains Solana Funds from 1,500+ Before Takedown Cybersecurity researchers have flagged a malicious npm package that was generated using artificial intelligence (AI) and concealed a cryptocurrency wallet AI The Hacker News
25.7.25 Watch This Webinar to Uncover Hidden Flaws in Login, AI, and Digital Trust — and Fix Them Is Managing Customer Logins and Data Giving You Headaches? You're Not Alone! Today, we all expect super-fast, secure, and personalized online experiences. But AI The Hacker News
22.7.25 EncryptHub Targets Web3 Developers Using Fake AI Platforms to Deploy Fickle Stealer Malware The financially motivated threat actor known as EncryptHub (aka LARVA-208 and Water Gamayun) has been attributed to a new campaign that's targeting Web3 AI The Hacker News
20.7.25 LameHug malware uses AI LLM to craft Windows data-theft commands in real-time A novel malware family named LameHug is using a large language model (LLM) to generate commands to be executed on compromised Windows systems. AI BleepingComputer
18.7.25 Google Gemini flaw hijacks email summaries for phishing Google Gemini for Workspace can be exploited to generate email summaries that appear legitimate but include malicious instructions or warnings that direct users to phishing sites without using attachments or direct links. AI BleepingComputer
17.7.25 Deepfakes. Fake Recruiters. Cloned CFOs — Learn How to Stop AI-Driven Attacks in Real Time Social engineering attacks have entered a new era—and they're coming fast, smart, and deeply personalized. It's no longer just suspicious emails in your spam folder. AI The Hacker News
17.7.25 Google AI "Big Sleep" Stops Exploitation of Critical SQLite Vulnerability Before Hackers Act Google on Tuesday revealed that its large language model (LLM)-assisted vulnerability discovery framework discovered a security flaw in the SQLite open- AI The Hacker News
16.7.25 Newly Emerged GLOBAL GROUP RaaS Expands Operations with AI-Driven Negotiation Tools Cybersecurity researchers have shed light on a new ransomware-as-a-service (RaaS) operation called GLOBAL GROUP that has targeted a wide range of sectors AI The Hacker News
13.7.25 Samsung announces major security enhancements coming to One UI 8 Samsung has announced multiple data security and privacy enhancements for its upcoming Galaxy smartphones running One UI 8, its custom user interface on top of Android. AI BleepingComputer
10.7.25 Fake Gaming and AI Firms Push Malware on Cryptocurrency Users via Telegram and Discord Cryptocurrency users are the target of an ongoing social engineering campaign that employs fake startup companies to trick users into downloading malware that can AI The Hacker News
3.7.25 Germany asks Google, Apple to remove DeepSeek AI from app stores The Berlin Commissioner for Data Protection has formally requested Google and Apple to remove the DeepSeek AI application from the application stores due to GDPR violations. AI

BleepingComputer

2.7.25 Vercel's v0 AI Tool Weaponized by Cybercriminals to Rapidly Create Fake Login Pages at Scale Unknown threat actors have been observed weaponizing v0 , a generative artificial intelligence (AI) tool from Vercel, to design fake sign-in pages that impersonate AI The Hacker News
28.6.25 Facebook's New AI Tool Asks to Upload Your Photos for Story Ideas, Sparking Privacy Concerns Facebook, the social network platform owned by Meta, is asking for users to upload pictures from their phones to suggest collages, recaps, and other ideas using AI The Hacker News
28.6.25 Google Cloud donates A2A AI protocol to the Linux Foundation Google Cloud has donated its Agent2Agent (A2A) protocol to the Linux Foundation, which has now announced a new community-driven project called the Agent2Agent Project. AI

BleepingComputer

26.6.25 WhatsApp Adds AI-Powered Message Summaries for Faster Chat Previews Popular messaging platform WhatsApp has added a new artificial intelligence (AI)-powered feature that leverages its in-house solution Meta AI to summarize unread AI The Hacker News
24.6.25 Echo Chamber Jailbreak Tricks LLMs Like OpenAI and Google into Generating Harmful Content Cybersecurity researchers are calling attention to a new jailbreaking method called Echo Chamber that could be leveraged to trick popular large language models AI The Hacker News
24.6.25 Google Adds Multi-Layered Defenses to Secure GenAI from Prompt Injection Attacks Google has revealed the various safety measures that are being incorporated into its generative artificial intelligence (AI) systems to mitigate emerging attack vectors AI The Hacker News
18.6.25 LangSmith Bug Could Expose OpenAI Keys and User Data via Malicious Agents Cybersecurity researchers have disclosed a now-patched security flaw in LangChain's LangSmith platform that could be exploited to capture sensitive data, AI The Hacker News
18.6.25 PyPI, npm, and AI Tools Exploited in Malware Surge Targeting DevOps and Cloud Environments Cybersecurity researchers from SafeDep and Veracode detailed a number of malware-laced npm packages that are designed to execute remote code and AI The Hacker News
14.6.25 AI is a data-breach time bomb, reveals new report AI acts like Pac-Man—devouring sensitive data across clouds, apps, and copilots. Varonis analyzed 1,000 orgs and found 99% have exposed data AI can access, exposing them to data risks. AI BleepingComputer
13.6.25 New TokenBreak Attack Bypasses AI Moderation with Single-Character Text Changes Cybersecurity researchers have discovered a novel attack technique called TokenBreak that can be used to bypass a large language model's (LLM) safety and AI The Hacker News
13.6.25 AI Agents Run on Secret Accounts — Learn How to Secure Them in This Webinar AI is changing everything — from how we code, to how we sell, to how we secure. But while most conversations focus on what AI can do, this one focuses on what AI AI The Hacker News
13.6.25 Zero-Click AI Vulnerability Exposes Microsoft 365 Copilot Data Without User Interaction A novel attack technique named EchoLeak has been characterized as a "zero-click" artificial intelligence (AI) vulnerability that allows bad actors to exfiltrate sensitive AI The Hacker News
10.6.25 OpenAI Bans ChatGPT Accounts Used by Russian, Iranian, and Chinese Hacker Groups OpenAI has revealed that it banned a set of ChatGPT accounts that were likely operated by Russian-speaking threat actors and two Chinese nation-state hacking AI The Hacker News
1.6.25 Cybercriminals exploit AI hype to spread ransomware, malware Threat actors linked to lesser-known ransomware and malware projects now use AI tools as lures to infect unsuspecting victims with malicious payloads. AI

BleepingComputer

30.5.24 Cybercriminals Target AI Users with Malware-Loaded Installers Posing as Popular Tools Fake installers for popular artificial intelligence (AI) tools like OpenAI ChatGPT and InVideo AI are being used as lures to propagate various threats, such as the AI The Hacker News
25.5.24 Claude 4 benchmarks show improvements, but context is still 200K Today, OpenAI rival Anthropic announced Claude 4 models, which are significantly better than Claude 3 in benchmarks, but we're left disappointed with the same 200,000 context window limit. AI

BleepingComputer

25.5.24 Anthropic web config hints at Claude Sonnet 4 and Opus 4 Anthropic is secretly working on two new models called Claude Sonnet 4 and Opus 4, which are believed to be the company's most advanced AI models. AI BleepingComputer
25.5.24 OpenAI hints at a big upgrade for ChatGPT Operator Agent ChatGPT's Operator, which is still in research preview, will soon become a "very useful tool," according to Jerry Tworek, VP of Research at OpenAI. AI

BleepingComputer

23.5.24 OpenAI plans to combine multiple models into GPT-5 OpenAI is planning to combine multiple products (features or models) into its next foundational model, which is called GPT-5. AI BleepingComputer
23.5.24 Remote Prompt Injection in GitLab Duo Leads to Source Code Theft GitLab Duo, the AI assistant integrated into GitLab and powered by Anthropic’s Claude, is designed to help developers with tasks like code suggestions, security reviews, and merge request analysis. But what if the same AI meant to secure your code could be manipulated into leaking it? AI LegitSecurity
23.5.24 Exploring PLeak: An Algorithmic Method for System Prompt Leakage What is PLeak, and what are the risks associated with it? We explored this algorithmic technique and how it can be used to jailbreak LLMs, which could be leveraged by threat actors to manipulate systems and steal sensitive data. AI Trend Micro
23.5.24 GitLab Duo Vulnerability Enabled Attackers to Hijack AI Responses with Hidden Prompts Cybersecurity researchers have discovered an indirect prompt injection flaw in GitLab's artificial intelligence (AI) assistant Duo that could have allowed attackers to AI The Hacker News
21.5.24 Fake Kling AI Facebook Ads Deliver RAT Malware to Over 22 Million Potential Victims Counterfeit Facebook pages and sponsored ads on the social media platform are being employed to direct users to fake websites masquerading as Kling AI with the AI The Hacker News
18.5.24 ChatGPT rolls out Codex, an AI tool for software programming OpenAI is rolling out 'Codex' for ChatGPT, which is an AI agent that automates and delegates programming tasks for software engineers. AI

BleepingComputer

18.5.24 Leak confirms OpenAI's ChatGPT will integrate MCP ChatGPT is testing support for Model Context Protocol (MCP), which will allow the AI to connect to third-party services and use them as context. AI

BleepingComputer

18.5.24 ChatGPT will soon record, transcribe, and summarize your meetings OpenAI may be planning to challenge Microsoft Teams Copilot integration with a new "Record" feature in ChatGPT. AI

BleepingComputer

18.5.24 FBI: US officials targeted in voice deepfake attacks since April The FBI warned that cybercriminals using AI-generated audio deepfakes to target U.S. officials in voice phishing attacks that started in April. AI BleepingComputer
16.5.24 ChatGPT is finally adding Download as PDF for Deep Research ChatGPT's Deep Research, which allows you to conduct multi-step research for complex tasks, is finally getting an option to save the report as a PDF. AI BleepingComputer
16.5.24 Fake AI video generators drop new Noodlophile infostealer malware Fake AI-powered video generation tools are being used to distribute a new information-stealing malware family called 'Noodlophile,' under the guise of generated media content. AI BleepingComputer
16.5.24 Google Chrome to use on-device AI to detect tech support scams Google is implementing a new Chrome security feature that uses the built-in 'Gemini Nano' large-language model (LLM) to detect and block tech support scams while browsing the web. AI BleepingComputer
13.5.24 Fake AI Tools Used to Spread Noodlophile Malware, Targeting 62,000+ via Facebook Lures Threat actors have been observed leveraging fake artificial intelligence (AI)-powered tools as a lure to entice users into downloading an information stealer malware AI The Hacker News
11.5.24 Critical Langflow RCE flaw exploited to hack AI app servers The U.S. Cybersecurity & Infrastructure Security Agency (CISA) has tagged a Langflow remote code execution vulnerability as actively exploited, urging organizations to apply security updates and mitigations as soon as possible. AI BleepingComputer
9.5.24 Google Rolls Out On-Device AI Protections to Detect Scams in Chrome and Android Google on Thursday announced it's rolling out new artificial intelligence (AI)-powered countermeasures to combat scams across Chrome, Search, and Android. AI The Hacker News
8.5.24 OpenAI document explains when to use each ChatGPT model OpenAI admitted that it can be confusing for users to choose between all the different models, but the company has quietly published a document that makes it easier to understand ChatGPT. AI

BleepingComputer

1.5.24 Claude AI Exploited to Operate 100+ Fake Political Personas in Global Influence Campaign Artificial intelligence (AI) company Anthropic has revealed that unknown threat actors leveraged its Claude chatbot for an "influence-as-a-service" operation to AI The Hacker News
1.5.24 Researchers Demonstrate How MCP Prompt Injection Can Be Used for Both Attack and Defense As the field of artificial intelligence (AI) continues to evolve at a rapid pace, new research has found how techniques that render the Model Context Protocol ( MCP ) AI The Hacker News
30.4.25 Brave's Cookiecrumbler tool taps community to help block cookie notices Brave has open-sourceed a new tool called "Cookiecrumbler," which uses large language models (LLMs) to detect cookie consent notices and then community-driven reviews to block those that won't break site functionality. AI BleepingComputer
30.4.25 Meta Launches LlamaFirewall Framework to Stop AI Jailbreaks, Injections, and Insecure Code Meta on Tuesday announced LlamaFirewall , an open-source framework designed to secure artificial intelligence (AI) systems against emerging cyber risks such as AI The Hacker News
30.4.25 Indian Court Orders Action to Block Proton Mail Over AI Deepfake Abuse Allegations A high court in the Indian state of Karnataka has ordered the blocking of end-to-end encrypted email provider Proton Mail across the country. The High Court of AI The Hacker News
30.4.25 WhatsApp Launches Private Processing to Enable AI Features While Protecting Message Privacy Popular messaging app WhatsApp on Tuesday unveiled a new technology called Private Processing to enable artificial intelligence (AI) capabilities in a privacy- AI The Hacker News
30.4.25 New Reports Uncover Jailbreaks, Unsafe Code, and Data Theft Risks in Leading AI Systems Various generative artificial intelligence (GenAI) services have been found vulnerable to two types of jailbreak attacks that make it possible to produce illicit or AI The Hacker News
26.4.25 Microsoft now pays up to $30,000 for some AI vulnerabilities Microsoft announced an increase in bug bounty payouts to $30,000 for AI vulnerabilities found in Dynamics 365 and Power Platform services and products. AI BleepingComputer
24.4.25 Darcula Adds GenAI to Phishing Toolkit, Lowering the Barrier for Cybercriminals The threat actors behind the Darcula phishing-as-a-service ( PhaaS ) platform have released new updates to their cybercrime suite with generative artificial intelligence AI The Hacker News
22.4.25 Majority of Browser Extensions Can Access Sensitive Enterprise Data, New Report Finds Everybody knows browser extensions are embedded into nearly every user's daily workflow, from spell checkers to GenAI tools. What most IT and security people AI The Hacker News
21.4.25 Google Gemini AI is getting ChatGPT-like Scheduled Actions feature Google Gemini is testing a ChatGPT-like scheduled tasks feature called "Scheduled Actions," which will allow you to create tasks that Gemini will execute later. AI

BleepingComputer

20.4.25 Meta to resume AI training on content shared by Europeans Meta announced today that it will soon start training its artificial intelligence models using content shared by European adult users on its Facebook and Instagram social media platforms. AI

BleepingComputer

20.4.25 OpenAI's GPT-4.1, 4.1 nano, and 4.1 mini models release imminent According to references spotted on OpenAI's website, the Microsoft-backed AI startup is planning to launch five new models this week, including GPT-4.1, 4.1 nano, and 4.1 mini. AI

BleepingComputer

16.4.25 Gamma AI Platform Abused in Phishing Chain to Spoof Microsoft SharePoint Logins Threat actors are leveraging an artificial intelligence (AI) powered presentation platform named Gamma in phishing attacks to direct unsuspecting users to AI The Hacker News
15.4.25 Meta Resumes E.U. AI Training Using Public User Data After Regulator Approval Meta has announced that it will begin to train its artificial intelligence (AI) models using public data shared by adults across its platforms in the European Union, AI The Hacker News
13.4.25 Leak confirms OpenAI's GPT 4.1 is coming before GPT 5.0 OpenAI is working on yet another AI model reportedly called GPT-4.1, a successor to GPT-4o, which is expected to come before GPT 5.0 AI

BleepingComputer

13.4.25 AI-hallucinated code dependencies become new supply chain risk A new class of supply chain attacks named 'slopsquatting' has emerged from the increased use of generative AI tools for coding and the model's tendency to "hallucinate" non-existent package names. AI BleepingComputer
13.4.25 Google's AI video generator Veo 2 is rolling out on AI Studio Google's AI video generator tool Veo 2, which is the company's take on OpenAI's Sora, is now rolling out to some users in the United States. AI BleepingComputer
13.4.25 OpenAI wants ChatGPT to 'know you over your life' with new Memory update OpenAI is giving ChatGPT's memory feature its biggest upgrade yet, allowing the AI to know you better by referencing all your past conversations. AI BleepingComputer
13.4.25 ChatGPT's o4-mini, o4-mini-high and o3 spotted ahead of release OpenAI is preparing to launch as many as three new AI models, possibly called "o4-mini", "o4-mini-high" and "o3". AI BleepingComputer
13.4.25 Google takes on Cursor with Firebase Studio, its AI builder for vibe coding Google has quietly launched Firebase Studio, which is a cloud-based AI-powered integrated development environment that lets you build full-fledged apps using prompts. AI BleepingComputer
12.4.25 Who's calling? The threat of AI-powered vishing attacks AI is making voice phishing (vishing) more dangerous than ever, with scammers cloning voices in seconds to trick employees into handing over their credentials. Learn how to defend your organization with Specops Secure Service Desk. AI

BleepingComputer

10.4.25 Six arrested for AI-powered investment scams that stole $20 million Spain's police arrested six individuals behind a large-scale cryptocurrency investment scam that used AI tools to generate deepfake ads featuring popular public figures to lure people. AI BleepingComputer
10.4.25 OpenAI tests watermarking for ChatGPT-4o Image Generation model OpenAI is reportedly testing a new "watermark" for the Image Generation model, which is a part of the ChatGPT 4o model. AI BleepingComputer
9.4.25 Lovable AI Found Most Vulnerable to VibeScamming — Enabling Anyone to Build Live Scam Pages Lovable , a generative artificial intelligence (AI) powered platform that allows for creating full-stack web applications using text-based prompts, has been found to AI The Hacker News
6.4.25 OpenAI's $20 ChatGPT Plus is now free for students until the end of May ChatGPT Plus subscription is now free, but only if you're a student based out of the United States of America and Canada. AI BleepingComputer
5.4.25 ChatGPT is down worldwide with something went wrong error ChatGPT, the famous artificial intelligence chatbot that allows users to converse with various personalities and topics, has connectivity issues worldwide. AI

BleepingComputer

5.4.25 OpenAI says Deep Research is coming to ChatGPT free "very soon" OpenAI has confirmed that its powerful AI agent "Deep Research" will begin rolling out to free users "very soon." At the moment, Deep Research is available only for Plus and Enterprise customers. AI BleepingComputer
4.4.25 Microsoft uses AI to find flaws in GRUB2, U-Boot, Barebox bootloaders Microsoft used its AI-powered Security Copilot to discover 20 previously unknown vulnerabilities in the GRUB2, U-Boot, and Barebox open-source bootloaders. AI

BleepingComputer

30.3.25

OpenAI now pays researchers $100,000 for critical vulnerabilities Artificial intelligence company OpenAI has announced a fivefold increase in the maximum bug bounty rewards for "exceptional and differentiated" critical security vulnerabilities from $20,000 to $100,000. AI

BleepingComputer

29.3.25

Claude is testing ChatGPT-like Deep Research feature Compass Claude could be getting a ChatGPT-like Deep Research feature called Compass. You can tell Claude's Compass what you need, and the AI agent will take care of everything. AI

BleepingComputer

25.3.25

Microsoft Adds Inline Data Protection to Edge for Business to Block GenAI Data Leaks Microsoft on Monday announced a new feature called inline data protection for its enterprise-focused Edge for Business web browser. The native data security AI The Hacker News
8.3.25 YouTube warns of AI-generated video of its CEO used in phishing attacks YouTube warns of AI-generated video of its CEO used in phishing attacks AI BleepingComputer
8.3.25 Google expands Android AI scam detection to more Pixel devices Google has announced an increased rollout of new AI-powered scam detection features on Android to help protect users from increasingly sophisticated phone and text social engineering scams. AI BleepingComputer
8.3.25 Nearly 12,000 API keys and passwords found in AI training dataset Close to 12,000 valid secrets that include API keys and passwords have been found in the Common Crawl dataset used for training multiple artificial intelligence models. AI BleepingComputer
6.3.25 Google Rolls Out AI Scam Detection for Android to Combat Conversational Fraud Google has announced the rollout of artificial intelligence (AI)-powered scam detection features to secure Android device users and their personal information. AI The Hacker News
1.3.25 Police arrests suspects tied to AI-generated CSAM distribution ring Law enforcement agencies from 19 countries have arrested 25 suspects linked to a criminal ring that was distributing child sexual abuse material (CSAM) generated using artificial intelligence (AI). AI BleepingComputer
28.2.25 Microsoft Exposes LLMjacking Cybercriminals Behind Azure AI Abuse Scheme Microsoft on Thursday unmasked four of the individuals that it said were behind an Azure Abuse Enterprise scheme that involves leveraging unauthorized access AI The Hacker News
28.2.25 12,000+ API Keys and Passwords Found in Public Datasets Used for LLM Training A dataset used to train large language models (LLMs) has been found to contain nearly 12,000 live secrets, which allow for successful authentication. The findings AI The Hacker News
27.2.25 89% of Enterprise GenAI Usage Is Invisible to Organizations Exposing Critical Security Risks, New Report Reveals Organizations are either already adopting GenAI solutions, evaluating strategies for integrating these tools into their business plans, or both. To drive informed AI The Hacker News
22.2.25 OpenAI Bans Accounts Misusing ChatGPT for Surveillance and Influence Campaigns OpenAI on Friday revealed that it banned a set of accounts that used its ChatGPT tool to develop a suspected artificial intelligence (AI)-powered surveillance tool. AI The Hacker News

11.1.25

Microsoft Sues Hacking Group Exploiting Azure AI for Harmful Content Creation Microsoft has revealed that it's pursuing legal action against a "foreign-based threat–actor group" for operating a hacking-as-a-service infrastructure to AI The Hacker News

10.1.25

AI-Driven Ransomware FunkSec Targets 85 Victims Using Double Extortion Tactics Cybersecurity researchers have shed light on a nascent artificial intelligence (AI) assisted ransomware family called FunkSec that sprang forth in late 2024, and has AI The Hacker News

29.10.24

Researchers Uncover Vulnerabilities in Open-Source AI and ML Models A little over three dozen security vulnerabilities have been disclosed in various open-source artificial intelligence (AI) and machine learning (ML) models, some of which could lead to remote code AI

The Hacker News

27.10.24

Apple Opens PCC Source Code for Researchers to Identify Bugs in Cloud AI Security Apple has publicly made available its Private Cloud Compute (PCC) Virtual Research Environment (VRE), allowing the research AI

The Hacker News

27.10.24

Eliminating AI Deepfake Threats: Is Your Identity Security AI-Proof? Artificial Intelligence (AI) has rapidly evolved from a futuristic concept to a potent weapon in the hands of bad actors. Today, AI- AI

The Hacker News

27.10.24

Researchers Reveal 'Deceptive Delight' Method to Jailbreak AI Models Cybersecurity researchers have shed light on a new adversarial technique that could be used to jailbreak large language models AI

The Hacker News

29.9.24

Microsoft: Windows Recall now can be removed, is more secureMicrosoft has announced security and privacy upgrades to its AI-powered Windows Recall feature, which now can be removed and has stronger default protection for user data and tighter access controls.AI

BleepingComputer

26.9.24

Hackers deploy AI-written malware in targeted attacksWhile cybercriminals have used generative AI technology to create convincing emails, government agencies have warned about the potential abuse of AI tools to creating malicious software, despite the safeguards and restrictions that vendors implemented.AI

BleepingComputer

26.9.24

Generative AI Security: Getting ready for Salesforce Einstein CopilotSalesforce's Einstein Copilot can provide insights and perform tasks help streamline daily processes. However, it also comes with risks that you should takes steps to mitigate. Learn more from Varonis on how to prepare for Salesforce Einstein Copilot,AI

BleepingComputer

25.9.24

ChatGPT macOS Flaw Could've Enabled Long-Term Spyware via Memory FunctionA now-patched security vulnerability in OpenAI's ChatGPT app for macOS could have made it possible for attackers to plant long-termAIThe Hacker News

12.9.24

Ireland's Watchdog Launches Inquiry into Google's AI Data Practices in EuropeThe Irish Data Protection Commission (DPC) has announced that it has commenced a "Cross-Border statutory inquiry" into Google'sAIThe Hacker News

8.9.24

Musician charged with $10M streaming royalties fraud using AI and botsNorth Carolina musician Michael Smith was indicted for collecting over $10 million in royalty payments from Spotify, Amazon Music, Apple Music, and YouTube Music using AI-generated songs streamed by thousands of bots in a massive streaming fraud scheme.AI

BleepingComputer

7.9.24

Clearview AI fined €30.5 million for unlawful data collectionThe Dutch Data Protection Authority (Dutch DPA) has imposed a fine of €30.5 million ($33.7 million) on Clearview AI for unlawful data collection using facial recognition, including photos of Dutch citizens.AI

BleepingComputer

4.9.24

Clearview AI Faces €30.5M Fine for Building Illegal Facial Recognition DatabaseThe Dutch Data Protection Authority (Dutch DPA) has imposed a fine of €30.5 million ($33.7 million) against facial recognition firmAIThe Hacker News

17.8.24

Google says it's focusing on privacy with Gemini AI on AndroidGoogle says it is taking a privacy-minded approach to the integration of AI features like the Gemini assistant on Android devices, implementing end-to-end protection to secure data in transit while keeping the most sensitive data locally on the device.AI

BleepingComputer

17.8.24

OpenAI Blocks Iranian Influence Operation Using ChatGPT for U.S. Election PropagandaOpenAI on Friday said it banned a set of accounts linked to what it said was an Iranian covert influence operation that leveragedAIThe Hacker News

13.8.24

Researchers Uncover Vulnerabilities in AI-Powered Azure Health Bot ServiceCybersecurity researchers have discovered two security flaws in Microsoft's Azure Health Bot Service that, if exploited, could permit aAIThe Hacker News

9.8.24

Fake AI editor ads on Facebook push password-stealing malware​A Facebook malvertising campaign targets users searching for AI image editing tools and steals their credentials by tricking them into installing fake apps that mimic legitimate software.AI

BleepingComputer

27.7.24

This AI-Powered Cybercrime Service Bundles Phishing Kits with Malicious Android AppsA Spanish-speaking cybercrime group named GXC Team has been observed bundling phishing kits with malicious Android applications,AIThe Hacker News

18.7.24

SAP AI Core Vulnerabilities Expose Customer Data to Cyber AttacksCybersecurity researchers have uncovered security shortcomings in SAP AI Core cloud-based platform for creating and deployingAIThe Hacker News

18.7.24

Meta Halts AI Use in Brazil Following Data Protection Authority's BanMeta has suspended the use of generative artificial intelligence (GenAI) in Brazil after the country's data protection authority issued aAIThe Hacker News

13.7.24

US disrupts AI-powered bot farm pushing Russian propaganda on XAlmost a thousand Twitter accounts controlled by a large bot farm pushing Russian propaganda and domains used to register the bots were taken down in a joint international law enforcement operation led by the U.S. Justice Department.AI

BleepingComputer

12.7.24

U.S. Seizes Domains Used by AI-Powered Russian Bot Farm for Disinformation

The U.S. Department of Justice (DoJ) said it seized two internet domains and searched nearly 1,000 social media accounts that

AI

The Hacker News

4.7.24

Brazil Halts Meta's AI Data Processing Amid Privacy ConcernsBrazil's data protection authority, Autoridade Nacional de Proteção de Dados (ANPD), has temporarily banned Meta from processingAIThe Hacker News
25.6.24Google Introduces Project Naptime for AI-Powered Vulnerability ResearchGoogle has developed a new framework called Project Naptime that it says enables a large language model (LLM) to carry outAIThe Hacker News
16.6.24Microsoft removes Copilot app ‘incorrectly’ added on Windows PCsMicrosoft says it removed a Copilot app that was "incorrectly" added to Windows 10 and Windows 11 systems in April due to buggy Microsoft Edge updates.AI

BleepingComputer

16.6.24Microsoft delays Windows Recall amid privacy and security concernsMicrosoft is delaying the release of its AI-powered Windows Recall feature to test and secure it further before releasing it in a public preview on Copilot+ PCs.AI

BleepingComputer

14.6.24Microsoft Delays AI-Powered Recall Feature for Copilot+ PCs Amid Security ConcernsMicrosoft on Thursday revealed that it's delaying the rollout of the controversial artificial intelligence (AI)-powered Recall feature forAIThe Hacker News
13.6.24New Attack Technique 'Sleepy Pickle' Targets Machine Learning ModelsThe security risks posed by the Pickle format have once again come to the fore with the discovery of a new "hybrid machine learning (ML) model exploitation technique" dubbed Sleepy Pickle. The attackAIThe Hacker News
13.6.24Apple enters AI arms race with new Apple Intelligence featureApple unveiled its new 'Apple Intelligence' feature today at its 2024 Worldwide Developer Conference, finally unveiling its generative AI strategy that will power new personalized experiences on Apple devices.AI

BleepingComputer

12.6.24Apple Launches Private Cloud Compute for Privacy-Centric AI ProcessingApple has announced the launch of a "groundbreaking cloud intelligence system" called Private Cloud Compute (PCC) that'sAIThe Hacker News

3.6.24

AI platform Hugging Face says hackers stole auth tokens from SpacesAI platform Hugging Face says that its Spaces platform was breached, allowing hackers to access authentication secrets for its members.AI

BleepingComputer

3.6.24AI Company Hugging Face Detects Unauthorized Access to Its Spaces PlatformArtificial Intelligence (AI) company Hugging Face on Friday disclosed that it detected unauthorized access to its Spaces platform earlierAIThe Hacker News

31.5.24

OpenAI, Meta, and TikTok Crack Down on Covert Influence Campaigns, Some AI-PoweredOpenAI on Thursday disclosed that it took steps to cut off five covert influence operations (IO) originating from China, Iran, Israel,AIThe Hacker News

26.5.24

Experts Find Flaw in Replicate AI Service Exposing Customers' Models and DataCybersecurity researchers have discovered a critical security flaw in an artificial intelligence (AI)-as-a-service provider Replicate thatAIThe Hacker News

23.5.24

Frustration grows over Google's AI Overviews feature, how to disableSince Google enabled its AI-powered search feature, many people have tried and failed to disable the often incorrect AI Overviews feature in regular search results. However, there are ways to turn it off using a new "Web" search mode, which we explain in this article..AI

BleepingComputer

16.5.24

Google Launches AI-Powered Theft and Data Protection Features for Android DevicesGoogle has announced a slew of privacy and security features in Android, including a suite of advanced protection features to helpAIThe Hacker News
30.4.24U.S. Government Releases New AI Security Guidelines for Critical InfrastructureThe U.S. government has unveiled new security guidelines aimed at bolstering critical infrastructure against artificial intelligenceAIThe Hacker News
22.4.24Microsoft Warns: North Korean Hackers Turn to AI-Fueled Cyber EspionageMicrosoft has revealed that North Korea-linked state-sponsored cyber actors has begun to use artificial intelligence (AI) to make itsAIThe Hacker News
13.4.24Malicious PowerShell script pushing malware looks AI-writtenA threat actor is using a PowerShell script that was likely created with the help of an artificial intelligence system such as OpenAI's ChatGPT, Google's Gemini, or Microsoft's CoPilot.AI

BleepingComputer

7.4.24Fake Facebook MidJourney AI page promoted malware to 1.2 million peopleHackers are using Facebook advertisements and hijacked pages to promote fake Artificial Intelligence services, such as MidJourney, OpenAI's SORA and ChatGPT-5, and DALL-E, to infect unsuspecting users with password-stealing malware.AI

BleepingComputer

7.4.24AI-as-a-Service Providers Vulnerable to PrivEsc and Cross-Tenant AttacksNew research has found that artificial intelligence (AI)-as-a-service providers such as Hugging Face are susceptible to two critical risksAIThe Hacker News
27.3.24Google's new AI search results promotes sites pushing malware, scamsGoogle's new AI-powered 'Search Generative Experience' algorithms recommend scam sites that redirect visitors to unwanted Chrome extensions, fake iPhone giveaways, browser spam subscriptions, and tech support scams.AIBleepingComputer
23.3.24GitHub’s new AI-powered tool auto-fixes vulnerabilities in your codeGitHub introduced a new AI-powered feature capable of speeding up vulnerability fixes while coding. This feature is in public beta and automatically enabled on all private repositories for GitHub Advanced Security (GHAS) customersAI

BleepingComputer

21.3.24GitHub Launches AI-Powered Autofix Tool to Assist Devs in Patching Security FlawsGitHub on Wednesday announced that it's making available a feature called code scanning autofix in public beta for all Advanced Security customers toAIThe Hacker News
15.3.24Third-Party ChatGPT Plugins Could Lead to Account TakeoversCybersecurity researchers have found that third-party plugins available for OpenAI ChatGPT could act as a new attack surface for threat actors lookingAIThe Hacker News
13.3.24Researchers Highlight Google's Gemini AI Susceptibility to LLM ThreatsGoogle's Gemini large language model (LLM) is susceptible to security threats that could cause it to divulge system prompts, generate harmfulAIThe Hacker News
10.3.24Google engineer caught stealing AI tech secrets for Chinese firmsThe U.S. Department of Justice (DoJ) has announced the unsealing of an indictment against Linwei (Leon) Ding, 38, a former software engineer at Google, suspected of stealing Google AI trade secrets for Chinese companies.AI

BleepingComputer

7.3.24Ex-Google Engineer Arrested for Stealing AI Technology Secrets for ChinaThe U.S. Department of Justice (DoJ) announced the indictment of a 38-year-old Chinese national and a California resident of allegedly stealingAI

The Hacker News

5.3.24Over 225,000 Compromised ChatGPT Credentials Up for Sale on Dark Web MarketsMore than 225,000 logs containing compromised OpenAI ChatGPT credentials were made available for sale on underground markets betweenAIThe Hacker News
4.3.24Over 100 Malicious AI/ML Models Found on Hugging Face PlatformAs many as 100 malicious artificial intelligence (AI)/machine learning (ML) models have been discovered in the Hugging Face platform. These includeAIThe Hacker News
3.3.24Brave browser launches privacy-focused AI assistant on AndroidBrave Software is the next company to jump into AI, announcing a new privacy-preserving AI assistant called "Leo" is rolling out on the Android version of its browser through the latest release, version 1.63.AI

BleepingComputer

3.3.24Malicious AI models on Hugging Face backdoor users’ machinesAt least 100 instances of malicious AI ML models were found on the Hugging Face platform, some of which can execute code on the victim's machine, giving attackers a persistent backdoor.AI

BleepingComputer

28.2.24New Hugging Face Vulnerability Exposes AI Models to Supply Chain AttacksCybersecurity researchers have found that it's possible to compromise the Hugging Face Safetensors conversion service to ultimately hijack theAIThe Hacker News
18.2.24OpenAI blocks state-sponsored hackers from using ChatGPTOpenAI has removed accounts used by state-sponsored threat groups from Iran, North Korea, China, and Russia, that were abusing its artificial intelligence chatbot, ChatGPT.AI

BleepingComputer

17.2.24Google Open Sources Magika: AI-Powered File Identification ToolEfficient communication is a cornerstone of business success. Internally, making sure your team communicates seamlessly helps you avoid frictionAIThe Hacker News
15.2.24Microsoft, OpenAI Warn of Nation-State Hackers Weaponizing AI for Cyber AttacksNation-state actors associated with Russia, North Korea, Iran, and China are experimenting with artificial intelligence (AI) and large language modelsAIThe Hacker News
1.2.24UK says AI will empower ransomware over the next two yearsThe United Kingdom's National Cyber Security Centre (NCSC) warns that artificial intelligence (AI) tools will have an adverse near-term impact on cybersecurity, helping escalate the threat of ransomware.AI

BleepingComputer

31.1.24

Italian Data Protection Watchdog Accuses ChatGPT of Privacy ViolationsItaly's data protection authority (DPA) has notified ChatGPT-maker OpenAI of supposedly violating privacy laws in the region. "The available evidence pointedAIThe Hacker News

7.1.24

NIST Warns of Security and Privacy Risks from Rapid AI System DeploymentThe U.S. National Institute of Standards and Technology (NIST) is calling attention to the privacy and security challenges that arise as a result ofAIThe Hacker News