Tag: AI security

Malicious NPM Package Targets Claude AI User Directory To Steal Files Via GitHub

Researchers uncover a malicious npm package targeting Claude AI user directories to steal files and upload them to attacker controlled GitHub repositories.

Enterprise AI Risks Concentrated Among Small Group Of Power Users, LayerX Report Finds

LayerX State of AI Usage Report 2026 reveals enterprise AI risks are concentrated among a small group of power users, personal accounts, and unmanaged AI platforms.

The New Security Priorities in an AI-Driven Risk Environment

Explore how AI-driven cyber risks are reshaping security priorities, resilience, governance, and digital trust in Pakistan’s rapidly evolving digital economy.

Data Security Posture Management and the Move Toward Risk-Led Security

An in-depth analysis of Data Security Posture Management (DSPM), risk-led cyber security, access governance, AI-driven data exposure, and evolving cyber resilience strategies in Pakistan’s growing digital economy.

Google Turns Agentic AI Governance Into A Native Product As Enterprises Face Control Gap Challenges

Google has introduced native agentic AI governance in its Gemini Enterprise Agent Platform, embedding identity, audit, and control features as enterprises struggle with governance gaps in AI adoption.

PwC And Google Cloud Launch AI Driven Managed Security Service For Enterprises

PwC partners with Google Cloud to introduce an AI powered managed security service using agentic workflows, targeting mid sized and smaller enterprises with unified detection and response capabilities.

LiteLLM CVE 2026 42208 Exploited Within 36 Hours Targeting AI Gateway Databases

A critical SQL injection flaw in LiteLLM tracked as CVE 2026 42208 was exploited within 36 hours of disclosure, exposing AI gateway credentials and database access risks.

Google Patches Antigravity IDE Flaw As Researchers Expose Expanding Prompt Injection Attack Surface In AI Tools

Google fixes Antigravity IDE vulnerability enabling prompt injection based code execution as researchers uncover wider AI tool security flaws across coding agents and platforms.

Flowise AI Agent Builder Faces Active CVSS 10.0 Remote Code Execution Exploitation With 12,000 Instances Exposed

Flowise AI platform suffers a critical CVSS 10.0 code injection vulnerability, exposing over 12,000 instances to remote code execution and full system compromise.

LangChain And LangGraph Vulnerabilities Expose Sensitive Data In Widely Used AI Frameworks

Security researchers reveal critical vulnerabilities in LangChain and LangGraph that could expose files, secrets, and databases, raising concerns for enterprise AI deployments.

AI Security Flaws Discovered In Amazon Bedrock LangSmith And SGLang Raise Data Protection Concerns

Researchers have identified security vulnerabilities in Amazon Bedrock, LangSmith, and SGLang that could enable data exfiltration, account takeover, and remote code execution in AI environments.

OpenClaw AI Agent Security Flaws Raise Prompt Injection And Data Exfiltration Concerns

China’s CNCERT warns that OpenClaw AI agent security weaknesses could enable prompt injection attacks, endpoint compromise, and sensitive data exfiltration.

Recent articles

spot_img