Skip to content
Intelligibberish
  • News
  • Articles
  • Guides
  • Tools
  • About

Tag

#security

← All articles

Privacy Mar 17, 2026

PleaseFix: The Vulnerability That Lets Attackers Hijack Your AI Agent Through a Calendar Invite

Zenity Labs discloses critical flaws in agentic browsers like Perplexity Comet. A zero-click attack can steal local files and passwords without user interaction.

Analysis Mar 15, 2026

OpenAI Buys Promptfoo to Lock Down Enterprise AI Agents

The acquisition brings 25% Fortune 500 penetration and security testing that enterprises demand before deploying AI agents in production

Privacy Mar 15, 2026

OpenClaw's Supply Chain Collapse: How 1,184 Malicious Skills Poisoned the AI Agent Ecosystem

One in five packages in OpenClaw's ClawHub registry contain malicious code. The first coordinated attack on AI agent infrastructure reveals systemic vulnerabilities that enterprises are only beginning to understand.

Privacy Mar 14, 2026

AI Security Roundup: Critical Flaws in vLLM, AnythingLLM, and MS-Agent, Plus Rogue Agents Gone Wild

A busy week for AI vulnerabilities: video-based RCE, chat injection leading to full system compromise, and research showing AI agents autonomously bypass security controls.

Privacy Mar 14, 2026

Perplexity's Personal Computer Wants 24/7 Access to Your Files

A $200/month Mac mini running an always-on AI agent with full file system access raises serious privacy questions - especially after Perplexity's recent security track record.

Analysis Mar 9, 2026

Claude AI Found 22 Firefox Vulnerabilities in Two Weeks That Decades of Fuzzing Missed

Anthropic's Claude Opus 4.6 discovered 14 high-severity bugs in Firefox including a CVSS 9.8 JIT flaw, demonstrating that AI security research can find logic errors traditional tools overlook.

Analysis Mar 8, 2026

Clinejection: How a GitHub Issue Title Compromised 4,000 Developer Machines

A prompt injection attack against Cline's AI triage bot escalated into a supply chain compromise - installing unauthorized software on thousands of developer systems.

Privacy Mar 8, 2026

Critical MS-Agent Vulnerability Lets Attackers Hijack AI Agents for Full System Control

CVE-2026-2256 in ModelScope's MS-Agent framework enables command injection through prompt manipulation, with no vendor patch available.

Analysis Mar 7, 2026

Agents of Chaos: 38 Researchers Red-Teamed AI Agents With Real System Access. Here's What Broke.

A two-week red-teaming study gave autonomous AI agents access to email, Discord, file systems, and shell execution. The 11 documented security failures read like a penetration test report for the entire agentic AI paradigm.

Analysis Mar 7, 2026

The Accountability Gap: AI Agents Are Acting Without Permission - and No One Knows Who's Responsible

88% of organizations report AI agent security incidents. Only 14% deploy agents with full security approval. When autonomous systems cause harm, traditional accountability breaks down.

Analysis Mar 6, 2026

JetStream Raises $34M to Fix Enterprise AI's Visibility Problem

Most companies have no idea what their AI systems are actually doing. A CrowdStrike-backed startup thinks it can change that.

Privacy Mar 6, 2026

Your AI Browser Can Steal Your Passwords via a Calendar Invite

Zenity Labs reveals how a malicious calendar event could let attackers hijack Perplexity's Comet browser to exfiltrate local files and take over your 1Password account.

Privacy Mar 5, 2026

AI Security This Week: Cursor RCE, 8,000 Exposed MCP Servers, and LLMs Jailbreaking LLMs

Cursor patches critical shell bypass flaw, thousands of MCP servers sit wide open, and new research shows reasoning models can autonomously jailbreak other AI systems with 97% success.

Privacy Mar 5, 2026

Chrome's AI Panel Had a Hole Big Enough to Hijack Your Camera and Microphone

A patched Chrome vulnerability let malicious extensions hijack Gemini's access to your camera, microphone, and files. Here's what happened.

Local AI Mar 3, 2026

Lobster Trap: The Open-Source Tool That Watches What Your AI Agents Say

Veea releases a sub-millisecond security proxy for AI agents under MIT license as new research shows 88% of organizations have experienced agent security incidents.

Privacy Mar 2, 2026

Google's Quantum-Safe HTTPS: How Merkle Trees Will Keep the Web Secure

Google and Cloudflare are deploying Merkle Tree Certificates to protect HTTPS against quantum computer attacks without breaking the internet

Local AI Mar 2, 2026

IronCurtain: The Open-Source 'Firewall' for AI Agents That Might Actually Work

A veteran Google security engineer built a sandbox system that treats AI agents as fundamentally untrusted - and it could be the model for safe agent deployment.

Privacy Mar 1, 2026

Ni8mare: Critical n8n Vulnerability Exposes 100,000 AI Workflow Servers to Takeover

A perfect 10.0 CVSS vulnerability in the popular workflow automation platform lets attackers hijack self-hosted instances used for AI agent automation without authentication.

Privacy Feb 28, 2026

AI Security This Week: RoguePilot, Memory Poisoning, and 2,800 Leaked API Keys

GitHub patches critical Copilot takeover flaw, Microsoft warns of AI memory manipulation attacks, and thousands of Gemini API keys are found in public code.

Privacy Feb 27, 2026

IronCurtain: The Security Framework That Treats AI Agents as Hostile by Default

Former Google and Stripe security head Niels Provos built an open source sandbox that assumes AI agents will go rogue. Here's how it works.

Privacy Feb 26, 2026

The Agentic AI Security Crisis: 88% of Companies Report Incidents, Only 29% Are Ready

Cisco's 2026 State of AI Security report reveals a dangerous gap: enterprises are deploying AI agents faster than they can secure them, with MCP vulnerabilities and prompt injection attacks proliferating.

Privacy Feb 26, 2026

Clone a Repo, Lose Your API Keys: Claude Code's Trojan Horse Vulnerabilities

Security researchers found that simply opening an untrusted repository in Claude Code could execute arbitrary commands and steal your Anthropic API keys - all before you saw a warning.

Privacy Feb 25, 2026

IBM X-Force 2026: AI-Driven Attacks Surge 44%, 300,000 ChatGPT Credentials Stolen

IBM's annual threat intelligence report reveals attackers are using AI to accelerate vulnerability discovery while infostealer malware harvests hundreds of thousands of AI chatbot credentials from the dark web.

Analysis Feb 24, 2026

Your AI's Safety Tests Are a Joke (and Researchers Just Proved It)

New paper shows 'intent laundering' bypasses Gemini, Claude, and other models with 90-98% success by removing obvious attack cues

← Newer3 / 5Older →
Intelligibberish

Independent analysis and commentary on artificial intelligence.

News Articles Guides Tools About Disclosure Privacy RSS

© 2026 Intelligibberish. Signal, not noise.