Skip to content
Intelligibberish
  • News
  • Articles
  • Guides
  • Tools
  • About

Tag

#security

← All articles

Privacy Feb 24, 2026

AI Security Week: Malware Uses Gemini, Hackers Use Claude, and NIST Scrambles to Catch Up

Android malware using Gemini for real-time evasion. A low-skill attacker using Claude and DeepSeek to compromise 600 networks. NIST launches an emergency standards initiative. Welcome to February 2026.

Privacy Feb 23, 2026

A Low-Skill Hacker Used AI to Breach 600 Firewalls in 5 Weeks - Amazon Watched the Whole Thing

Amazon threat researchers tracked a Russian-speaking attacker who used commercial AI tools to compensate for limited hacking skills. The result: 600+ FortiGate devices compromised across 55 countries.

Analysis Feb 23, 2026

Claude Opus 4.6 Jailbroken in 30 Minutes, Produced Bioweapon Instructions

Anthropic's flagship model bypassed by security researchers who extracted detailed sarin gas and smallpox synthesis instructions

Privacy Feb 23, 2026

Microsoft Copilot Was Reading 'Confidential' Emails for a Month - Despite Your DLP Policies

A bug allowed Microsoft 365 Copilot to summarize emails marked with confidentiality labels, bypassing DLP protections. Microsoft says no one saw data they weren't authorized to see. That misses the point.

Privacy Feb 23, 2026

AI Security Roundup: 300 Million Messages Leaked, Microsoft Copilot Bug, and the Vibe-Coding Crisis

This week in AI security: Chat & Ask AI exposes 300 million messages, Microsoft patches Copilot email vulnerability, and vibe-coded apps prove trivially hackable.

Privacy Feb 22, 2026

88% of AI-Generated Passwords Can Be Cracked Within an Hour

Kaspersky research reveals that passwords from ChatGPT, DeepSeek, and Llama lack true randomness. The same prediction capability that makes LLMs useful makes them terrible at generating secure passwords.

Privacy Feb 22, 2026

Two Critical Flaws in Microsoft's AI SDK Could Let Attackers Hijack Enterprise AI Agents

Microsoft Semantic Kernel has back-to-back CVSS 10.0 vulnerabilities enabling remote code execution and arbitrary file writes through AI agent function calls

Privacy Feb 22, 2026

Critical vLLM Vulnerability Lets Attackers Take Over AI Servers With a Video Link

A CVSS 9.8 flaw in the popular AI inference engine allows unauthenticated remote code execution through malicious video URLs. Patch now if you're running multimodal models.

Analysis Feb 21, 2026

88% of Organizations Report AI Agent Security Incidents

A new report finds most enterprises deploying AI agents have already experienced security breaches, but executives remain overconfident.

Privacy Feb 21, 2026

That 'Summarize with AI' Button Is Brainwashing Your Chatbot

Microsoft found 31 companies embedding hidden instructions in AI share buttons. One click poisons your assistant's memory, shaping every future recommendation without your knowledge.

Privacy Feb 21, 2026

ChainLeak: Critical Chainlit AI Framework Flaws Enable Cloud Environment Takeover

Two vulnerabilities in the popular Chainlit AI framework allow attackers to steal cloud credentials, API keys, and user data from enterprise chatbots.

Tools Feb 21, 2026

Anthropic's Claude Code Security Just Wiped Billions Off Cybersecurity Stocks

Anthropic launched an AI-powered vulnerability scanner that reasons like a human security researcher. CrowdStrike, Okta, and Cloudflare dropped 8% on the news.

Privacy Feb 21, 2026

The Feature That Makes AI Models 'Think' Also Makes Them Easy to Hack

Researchers discovered that displaying an AI model's reasoning process creates a roadmap for attackers. OpenAI's o1 rejection rate dropped from 98% to under 2%.

Privacy Feb 21, 2026

PromptSpy: First Android Malware to Weaponize Generative AI at Runtime

ESET discovers Android malware that queries Google's Gemini AI in real-time to navigate infected devices and maintain persistence across any Android version.

Privacy Feb 20, 2026

Android AI Apps Leaked 730TB of User Data - Researchers Found 72% Had Hardcoded Secrets

A Cybernews analysis of 1.8 million Android apps found most AI applications leak credentials directly in their code. Over 200 million files were exposed through misconfigured databases.

Privacy Feb 20, 2026

Researchers Turn Copilot and Grok Into Secret Malware Command Channels - No Account Needed

Check Point demonstrated how AI assistants with web browsing can relay malware commands through legitimate AI traffic. Microsoft patched Copilot; xAI hasn't commented on Grok.

Privacy Feb 20, 2026

Google Translate Can Be Hijacked to Output Drug Recipes and Malware Instructions

Google's switch to Gemini for translation turned one of the world's most-used apps into a jailbreakable chatbot. Researchers tricked it into providing meth instructions instead of translations.

Analysis Feb 20, 2026

700 Million Weekly Users, 30 Countries, and a Warning: The International AI Safety Report 2026

The largest global collaboration on AI safety just published its findings. An AI agent found 77% of vulnerabilities in real software, models can now assist with bioweapon development, and deepfakes are weaponized at scale. Here's what 100 experts want you to know.

Analysis Feb 20, 2026

Your AI Says No, Then Does It Anyway

New research proves AI models will refuse harmful requests verbally while executing them through tool calls

Privacy Feb 20, 2026

OpenClaw's Month From Hell: 40,000 Exposed Instances, Poisoned Marketplace, and Corporate Bans

The viral AI agent went from 135K GitHub stars to enterprise blacklists in three weeks. Here's what went wrong and why it matters for every AI agent.

Privacy Feb 20, 2026

Reasoning Models Have Become Autonomous Jailbreak Agents With 97% Success Rates

New research shows AI reasoning models can autonomously plan and execute attacks that bypass safety guardrails in nearly all other AI systems.

Privacy Feb 18, 2026

77% of Employees Are Pasting Company Data Into AI Tools - And Your Security Team Can't See It

The LayerX Enterprise AI Security Report reveals that AI has become the #1 data exfiltration channel in the enterprise. 82% of those leaking data use personal accounts. Traditional DLP can't stop copy-paste.

Privacy Feb 18, 2026

Infostealers Are Now Stealing AI Agent 'Souls' and Identities

Malware caught harvesting OpenClaw configuration files, gateway tokens, and private keys - marking a shift toward AI agent identity theft.

Privacy Feb 17, 2026

BodySnatcher: The Most Severe AI Vulnerability Yet Let Attackers Hijack Fortune 500 AI Agents

A hardcoded credential and broken authentication in ServiceNow let attackers impersonate any user and weaponize AI agents to create admin backdoors.

← Newer4 / 5Older →
Intelligibberish

Independent analysis and commentary on artificial intelligence.

News Articles Guides Tools About Disclosure Privacy RSS

© 2026 Intelligibberish. Signal, not noise.