AI Supply Chain Attack: 575+ Malicious Skills on Hugging Face and ClawHub Deliver Trojans, Cryptominers, and AMOS Stealer
Threat actors have uploaded 575+ malicious AI skills to ClawHub's OpenClaw ecosystem and abused Hugging Face repositories to deliver trojans, cryptominers, and AMOS Stealer. The campaign uses indirect...
CVSS 10.0: Critical Flowise AI Vulnerability Is Being Actively Exploited — 15,000+ Instances Still Exposed
A maximum-severity RCE vulnerability (CVE-2025-59528, CVSS 10.0) in the popular Flowise AI agent builder is under active attack. Over 15,000 instances are still exposed online. Here’s what you...
HashJack: weaponizing trust in AI browser assistants
A vulnerability in the way AI browser assistants handle URL fragments opens doors for malicious attacks. For years, we’ve seen AI take center stage across various industries, revolutionizing...
Google’s “Agentic SOC” takes a concrete step: alert triage and investigation agent
The hype around AI-driven security operations has become almost deafening, but often lacks the granular detail necessary for serious assessment. Google’s public preview of the Alert Triage and...
LLMjacking: the exploitation of API keys in DeepSeek and beyond
The rise of LLMjacking, a sophisticated cyberattack targeting large language models (LLMs), has sparked growing concerns among enterprises relying on AI-driven cloud services. This technique, which involves the...
DeepSeek: the rise of China’s AI challenger and its implications for the cyber landscape
In recent weeks, a new player in the artificial intelligence (AI) space has taken the tech world by storm: DeepSeek, a Chinese startup with ambitious goals of achieving...
AI and cryptography: enhancing security with ChatGPT
Cybersecurity breaches are often the result of vulnerabilities in cryptographic implementations. Traditional static analysis tools often fall short in detecting these misuses. This article explores the potential of...
NVIDIA’s controversial use of copyrighted content for AI training
Recent internal communications revealed that NVIDIA has utilized videos from platforms such as YouTube and Netflix to train its AI models, particularly as part of a project known...