Keywords: Vulnerability


Lovable denies breach after api flaw exposed user project data

Lovable is facing scrutiny after a security researcher revealed that a simple API vulnerability allowed unauthorized access to sensitive data across thousands of user projects. The company has denied that a data breach occurred, even as details of the flaw raised concerns about access controls and platform......

EU probes Anthropic over cybersecurity risks tied to mythos ai model

European regulators have stepped up scrutiny of artificial intelligence risks after the release of Anthropic’s Claude Mythos Preview, with authorities seeking clarity on its potential to expose critical vulnerabilities in digital infrastructure. The European Commission confirmed it has opened direct......

Anthropic AI protocol flaw exposes thousands of servers to attacks

A critical vulnerability in an artificial intelligence protocol developed by Anthropic could expose more than 200,000 instances and thousands of publicly accessible servers to cyberattacks, according to findings from security firm OX Security. The flaw affects the Model Context Protocol, an open standard......

Researchers hijack ai agents via github prompt injection attacks

Security researchers have demonstrated how artificial intelligence agents from Anthropic, Google and Microsoft can be compromised through prompt injection attacks hidden in GitHub workflows. The technique allowed attackers to extract API keys, GitHub tokens and other sensitive data without direct system......

Rockstar confirms data breach as hackers set ransom deadline

Rockstar Games has confirmed a data breach linked to the hacking group ShinyHunters, which is threatening to release stolen information unless a ransom is paid by April 14. The studio behind Grand Theft Auto VI said that a “limited amount of internal non sensitive information” was accessed......

US agencies ordered to patch iPhone flaws linked to DarkSword spyware

US cybersecurity authorities have ordered federal agencies to urgently patch critical iPhone vulnerabilities exploited by a sophisticated hacking tool known as DarkSword, as Apple warned users to update their devices. The Cybersecurity and Infrastructure Security Agency instructed agencies to fix the......

French DGSSI warns of critical vulnerabilities in popular WordPress plugins

France's DGSSI (Direction générale de la sécurité des systèmes d’information), part of the national defense administration, has issued a warning regarding serious security flaws in several widely used WordPress plugins. In its security bulletin 62021303/26,......

DJI Romo vacuum hack reveals global security risks

Spanish software engineer Sammy Azdoufal modified his DJI Romo robot vacuum to respond to a PlayStation 5 controller. He used AI tool Claude to reverse-engineer the DJI app's MQTT communication protocol with company servers. A backend authentication flaw let his device token access roughly 7000 vacuums......

Ps5 security keys leaked in unfixable hardware flaw

Critical security keys for the PlayStation 5 have surfaced online, leaving the console vulnerable to hardware-level hacking that Sony cannot patch through software updates. This breach echoes the PlayStation 3 security crisis from over a decade ago, when similar flaws enabled widespread modifications. The......