Skip to content
Intelligibberish
  • News
  • Articles
  • Guides
  • Tools
  • About

Category

Privacy

← All articles

Privacy Apr 6, 2026

AI Security Roundup: Azure AI Foundry Scores a Perfect 10, Langflow Hijacked in 20 Hours, LiteLLM's Backdoor Cleanup

Microsoft's Azure AI Foundry hit with a maximum-severity privilege escalation, Langflow exploited within hours of disclosure, and LiteLLM discloses three vulnerabilities after surviving a supply chain attack.

Privacy Apr 6, 2026

OpenClaw's Security Meltdown: 9 CVEs in 4 Days, 135K Exposed Instances, and a Poisoned Marketplace

The fastest-growing GitHub project ever just became the biggest AI agent security disaster of 2026. Here's what happened and why it matters.

Privacy Apr 4, 2026

AI Security Roundup: Claude Code Leak Weaponized for Malware, CrewAI's Four Unpatched Flaws

Threat actors turned Anthropic's accidental source code leak into a malware delivery pipeline within hours. Meanwhile, four unpatched CrewAI vulnerabilities let attackers chain prompt injection into full remote code execution.

Privacy Apr 2, 2026

AI Chatbots Are Collecting More Data Than Ever — and the Government Wants to Buy It

ChatGPT now tracks 70% more data types than last year. Meta AI harvests 95% of possible categories. And with FISA Section 702 expiring April 20, the data broker loophole that lets agencies buy your AI conversations without a warrant hangs in the balance.

Privacy Apr 2, 2026

Perplexity AI Sued for Secretly Sharing Your Private Chats With Meta and Google

A class-action lawsuit alleges Perplexity embedded hidden trackers that sent full conversation transcripts to Meta and Google—even in Incognito mode.

Privacy Apr 1, 2026

9 CVEs in 4 Days: OpenClaw's Security Crisis Deepens

OpenClaw went from one CVE to nine in four days, with 12% of its marketplace confirmed malicious. Plus: ChatGPT's patched DNS exfiltration flaw.

Privacy Mar 31, 2026

Google Live Translate Arrives on iPhone—With Your Conversations Flowing Through Google's Servers

Google's real-time translation feature now works with any headphones on iOS, supporting 70+ languages. The catch: unlike Apple's on-device approach, everything goes to the cloud.

Privacy Mar 31, 2026

OpenClaw: The AI Agent That Broke Every Record and Then Broke Security

The fastest-growing open source project in GitHub history has become 2026's first major AI security disaster, with 135,000+ exposed instances, 9 CVEs in 4 days, and malware-laced skills.

Privacy Mar 31, 2026

Reddit's Bot Crackdown Starts Today: 100K Daily Removals, World ID, and the End of Anonymous Automation

Reddit begins requiring human verification for suspicious accounts using passkeys, biometrics, and Sam Altman's controversial World ID. Here's what it means for privacy.

Privacy Mar 30, 2026

OpenClaw's March Meltdown: 9 CVEs in 4 Days, 12% of Marketplace Skills Are Malware

OpenClaw's security crisis escalates with nine new vulnerabilities including a CVSS 9.9 admin bypass, plus researchers confirm nearly 1 in 8 marketplace skills steal user data.

Privacy Mar 29, 2026

TeamPCP Goes Nuclear: Iran-Targeted Kubernetes Wiper, WAV File Steganography, LAPSUS$ Partnership

The supply chain attackers behind Trivy are now wiping Iranian infrastructure, hiding malware in audio files, and extorting enterprises with help from LAPSUS$.

Privacy Mar 29, 2026

AI Security Roundup: TeamPCP Strikes Telnyx, LangChain/LangGraph Vulnerabilities Expose Enterprise Data

TeamPCP's supply chain campaign continues with a WAV file steganography attack on Telnyx. Meanwhile, three vulnerabilities in LangChain and LangGraph can leak files, secrets, and conversation histories.

Privacy Mar 28, 2026

Anthropic Accidentally Leaks 'Claude Mythos': A Step-Change AI Model With 'Unprecedented Cybersecurity Risks'

A misconfigured CMS exposed 3,000 internal documents revealing Anthropic's most powerful model yet—one the company says could 'exploit vulnerabilities in ways that far outpace defenders.'

Privacy Mar 28, 2026

Cal AI Breach Exposes 3 Million Users' Health Data - Child Records Included

A calorie tracking app trusted with your weight, meals, and fitness goals was wide open. The Firebase misconfiguration let anyone read the entire database without credentials.

Privacy Mar 28, 2026

Indie Musicians Sue Google Over Lyria 3: 'You Have 50 Million Reference Files. Why Didn't You Ask?'

Nine independent artists accuse Google of training its AI music generator on YouTube uploads without permission—and extracting voiceprints without consent under Illinois biometric privacy law.

Privacy Mar 28, 2026

OpenClaw Security Crisis: Industry Rallies as Cisco and OpenClawd Ship Emergency Defenses

After 12% of ClawHub skills turned out to be malware and 135,000 instances were exposed, Cisco releases DefenseClaw and OpenClawd adds verified skill screening. The AI agent ecosystem is racing to catch up.

Privacy Mar 28, 2026

AI Coding Tools Are Flooding Open Source With Security Holes

Georgia Tech researchers tracking real CVEs find 35 vulnerabilities from AI-generated code in March alone—and estimate the actual number is 10x higher.

Privacy Mar 27, 2026

GitHub Copilot Will Train on Your Code Starting April 24 - Here's How to Opt Out

GitHub's new data policy uses Free, Pro, and Pro+ user interactions to train AI models by default. Your private repo code while using Copilot is fair game unless you disable it.

Privacy Mar 27, 2026

OpenClaw: How the Hottest AI Agent Became a Security Nightmare in Three Weeks

135,000+ GitHub stars. Four critical CVEs. 12% of its marketplace poisoned with malware. OpenClaw's rise to fame came with a security crisis that every AI agent user needs to understand.

Privacy Mar 25, 2026

AI Security Roundup: TeamPCP's Supply Chain Rampage, LiteLLM Poisoned, Langflow Exploited in 20 Hours

A coordinated supply chain campaign has compromised Trivy, LiteLLM, and dozens of npm packages. Meanwhile, Langflow attackers built working exploits within hours of disclosure.

Privacy Mar 25, 2026

AI Security Roundup: Trivy Supply Chain Attack Spawns Self-Spreading Worm, Langflow Exploited in 20 Hours

Security scanners become attack vectors, AI agent platforms get RCE'd before patches exist, and 400+ GitHub repos fall to GlassWorm. Plus: a new secrets scanner built for AI coding agents.

Privacy Mar 25, 2026

Trivy Supply Chain Attack: Security Scanner Turned Credential Stealer in GitHub Actions Compromise

TeamPCP hijacked 75 of 76 version tags in Trivy's GitHub Actions, turning the popular vulnerability scanner into a sophisticated credential harvesting operation.

Privacy Mar 24, 2026

Your AI Chats Are Being Sold: Browser Extensions, Data Brokers, and the March 2026 Privacy Audit

Browser extensions are harvesting ChatGPT and Claude conversations for sale. Here's what's happening and how to protect yourself.

Privacy Mar 23, 2026

Images That Hijack AI: Visual Prompt Injection Achieves 90% Attack Success

New research reveals multimodal LLMs are vulnerable to hidden instructions embedded in images. Mind maps, steganography, and physical signage all bypass text-based safety filters.

← Newer2 / 7Older →
Intelligibberish

Independent analysis and commentary on artificial intelligence.

News Articles Guides Tools About Disclosure Privacy RSS

© 2026 Intelligibberish. Signal, not noise.