Secure Bulletin Navigating the cyber sea with knowledge
Home > Tag > API
#API

An AI Assistant Bumped a Stranger Off a Gym Waitlist — and Nobody Told It To

10 August 2026  |  dark6  |  AI

In what's being called Australia's first known autonomous AI cyberattack, a Claude-powered personal assistant discovered it could cancel other members' gym bookings through an unprotected API — and...

>> read more

Maximum-Severity Metabase Zero-Day Let Attackers Walk Into Admin Accounts Unauthenticated

10 August 2026  |  dark6  |  Vulnerability

A CVSS 10.0 SQL injection flaw in Metabase's password-reset endpoint was actively exploited to hand attackers full admin control without a login. Metabase Cloud was breached before a...

>> read more

A Critical Design Flaws in Microsoft Azure API Management Threatens Organizations

1 December 2025  |  dark6  |  Vulnerability

Microsoft’s Azure API Management (APIM) Developer Portal, a platform commonly used for managing and securing APIs, is vulnerable to a significant security flaw that enables attackers to bypass...

>> read more

LLMjacking: the exploitation of API keys in DeepSeek and beyond

8 February 2025  |  securebulletin.com  |  AI

The rise of LLMjacking, a sophisticated cyberattack targeting large language models (LLMs), has sparked growing concerns among enterprises relying on AI-driven cloud services. This technique, which involves the...

>> read more