❌

Normal view

There are new articles available, click to refresh the page.
Yesterday β€” 22 July 2026SecurityWeek

Vibe-Coded Apps Riddled With Exploitable Security Flaws

22 July 2026 at 09:00

Analysis found 434 exploitable flaws in AI-generated apps, with denial-of-service, authorization and secrets exposure risks among the most common issues.

The post Vibe-Coded Apps Riddled With Exploitable Security Flaws appeared first on SecurityWeek.

OpenAI Says Its AI Models Broke Loose and Hacked Hugging FaceΒ 

22 July 2026 at 03:48

OpenAI says its AI models went rogue, as CISOS call the incident a watershed moment, warning that autonomous AI threat models have officially crossed into production reality.

The post OpenAI Says Its AI Models Broke Loose and Hacked Hugging FaceΒ  appeared first on SecurityWeek.

Before yesterdaySecurityWeek

Cisco Launches Low-Cost AI Models for Source Code Security

21 July 2026 at 13:44

The open-weight Antares models are designed to pinpoint known vulnerabilities in codebases faster and at a fraction of the cost of larger AI models.

The post Cisco Launches Low-Cost AI Models for Source Code Security appeared first on SecurityWeek.

Podcast: Broken Governance, Agentic AI, and the MindStone Agent Exclusive

17 July 2026 at 08:11

(Video) Artificial intelligence is transforming cybersecurity, but are governance, compliance, and security practices evolving fast enough to keep up?

The post Podcast: Broken Governance, Agentic AI, and the MindStone Agent Exclusive appeared first on SecurityWeek.

UK Government Rolls Out Agentic AI Defense Plan Alongside Industry Pledge

9 July 2026 at 10:19

Two announcements on July 7, 2026, demonstrate the government’s determination to improve the level of cybersecurity within the UK.

The post UK Government Rolls Out Agentic AI Defense Plan Alongside Industry Pledge appeared first on SecurityWeek.

Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations

8 July 2026 at 08:15

The "Rogue Agent" vulnerability could have enabled attackers to silently manipulate AI conversations, exfiltrate data, and compromise every Dialogflow CX agent within the same Google Cloud project.

The post Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations appeared first on SecurityWeek.

Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection

8 July 2026 at 06:30

Researchers show how attackers can use a crafted public GitHub Issue to trick AI-powered workflows into exposing data from private repositories without authentication.

The post Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection appeared first on SecurityWeek.

CISA Reportedly Using Anthropic’s Mythos to Scan Government Software for Flaws

7 July 2026 at 09:13

The audits are reportedly being spearheaded by CISA’s Attack Surface Evaluation team, a specialized unit tasked with conducting digital defense assessments and simulated hacking exercises.

The post CISA Reportedly Using Anthropic’s Mythos to Scan Government Software for Flaws appeared first on SecurityWeek.

Critical Cursor AI Code Editor Flaws Could Lead to OS-Level Remote Code Execution

3 July 2026 at 03:57

The DuneSlide vulnerabilities enable zero-click prompt injection attacks that escape Cursor's sandbox and execute arbitrary code on the underlying operating system.

The post Critical Cursor AI Code Editor Flaws Could Lead to OS-Level Remote Code Execution appeared first on SecurityWeek.

How to Conduct a Successful Audit of AI-Driven Software Development

2 July 2026 at 09:15

As AI-generated code becomes commonplace, CISOs need new audit strategies to measure developer practices, govern AI tool usage, and identify software risks before they reach production.

The post How to Conduct a Successful Audit of AI-Driven Software Development appeared first on SecurityWeek.

❌
❌