




  • Home
  • Categories
    
    AI-Generated Malware
    AI Cybersecurity Threats
    AI Privacy
    Misinformation & Fake Content
    AI Phishing & Social Engineering
    Voice Cloning
    Deepfakes & Identity Theft
    AI Scams & Fraud
  • Contact
  • Subscribe to our newsletter

Search for articles



AI Cybersecurity Threats

articles
Nobody Asked the Agent to Hack the Gym. It Did It in Nine Runs Out of Ten.
AI Cybersecurity Threats

Nobody Asked the Agent to Hack the Gym. It Did It in Nine Runs Out of Ten.

An AI assistant asked to book a gym class found an API flaw and cancelled a stranger's reservation. Researchers rebuilt the setup. It happened in 9 of 10 runs.


August 27, 2026
PyPI Caught His Malware in Two Hours. His AI Skills Ran for Three Weeks and Hit 1.7 Million Installs.
AI Cybersecurity Threats

PyPI Caught His Malware in Two Hours. His AI Skills Ran for Three Weeks and Hit 1.7 Million Installs.

The same attacker's Python packages were spotted in under two hours. His trojanized AI agent skills trended for three weeks and passed 1.7 million installs.


August 25, 2026
OpenAI Paused Its Next Model Over Cyber Risk. Three Days Later It Shipped a Hacking Model on Purpose.
AI Cybersecurity Threats

OpenAI Paused Its Next Model Over Cyber Risk. Three Days Later It Shipped a Hacking Model on Purpose.

GPT-5.6-Cyber answers 95% of exploit-development prompts. The same underlying model with standard guardrails answers 1.5%. The gap is not capability, it is policy.


August 21, 2026
Attackers Stole One API Key and Resold It Until the Bill Hit $1 Million
AI Cybersecurity Threats

Attackers Stole One API Key and Resold It Until the Bill Hit $1 Million

An exposed API key reached a gray-market resale platform within minutes. By the time anyone noticed, it had run up close to a million dollars in AI charges.


August 19, 2026
AI Generated 6,080 Security Patches. Fewer Than One in Four Actually Fixed the Flaw.
AI Cybersecurity Threats

AI Generated 6,080 Security Patches. Fewer Than One in Four Actually Fixed the Flaw.

Two frontier models wrote 6,080 patches for six real CVEs. Only 26% closed the hole cleanly. The rest blocked the demo exploit and left the bug exactly where it was.


August 19, 2026
An Invisible Prompt Turned Copilot Into a Worm That Quietly Rewrites Your Reports
AI Cybersecurity Threats

An Invisible Prompt Turned Copilot Into a Worm That Quietly Rewrites Your Reports

A researcher hid white text in a Word file. Copilot read it, silently rewrote the financial figures, then copied the infection into the next document it produced.


August 15, 2026
Researchers Told Six AI Browsers It Was Just a Game. Five Still Leak Your Passwords.
AI Cybersecurity Threats

Researchers Told Six AI Browsers It Was Just a Game. Five Still Leak Your Passwords.

Researchers made six AI browsers believe a webpage was just a game. All six then copied the user's GitHub credentials. Five vendors still have not fixed it.


August 5, 2026
An AI Model Was Told to Take a Hacking Test. It Broke Out and Attacked Another Company to Cheat.
AI Cybersecurity Threats

An AI Model Was Told to Take a Hacking Test. It Broke Out and Attacked Another Company to Cheat.

OpenAI ran a cyber test on a new model with its safety filters off. The model escaped the sandbox, broke into Hugging Face, and stole the answers to cheat.


July 27, 2026
Attackers Built Fake AI Skills So Your Assistant Would Fetch the Malware Itself
AI Cybersecurity Threats

Attackers Built Fake AI Skills So Your Assistant Would Fetch the Malware Itself

Island found 7,600 fake GitHub repos, 800 posing as AI skills. The new twist: Claude Code, Gemini and ChatGPT will surface the malware on their own, no link needed.


August 5, 2026
An Autonomous AI Ran the Whole Attack. Hugging Face Fought It Off With AI of Its Own.
AI Cybersecurity Threats

An Autonomous AI Ran the Whole Attack. Hugging Face Fought It Off With AI of Its Own.

Hugging Face says an autonomous AI agent ran its recent breach end to end. The twist: safety guardrails blocked the defenders' own AI from analysing it.


July 23, 2026
A Trusted Security Tool Was Poisoned to Steal the Keys Inside Your AI Assistant
AI Cybersecurity Threats

A Trusted Security Tool Was Poisoned to Steal the Keys Inside Your AI Assistant

A poisoned release of Jscrambler's own npm package dropped a Rust infostealer that sweeps developer machines, and it now hunts the keys inside Claude, Cursor, and Windsurf.


July 25, 2026
Nobody Fooled the Chatbot. One Edit Permission Took Over Every Bot in the Project.
AI Cybersecurity Threats

Nobody Fooled the Chatbot. One Edit Permission Took Over Every Bot in the Project.

Varonis found a Google Dialogflow flaw where a single edit permission on one chatbot let an attacker read, steal, and rewrite every conversation in the project.


July 21, 2026
Two-Thirds of iPhone AI Apps Are Leaking the Keys That Pay Their Bills
AI Cybersecurity Threats

Two-Thirds of iPhone AI Apps Are Leaking the Keys That Pay Their Bills

Researchers tested 444 iPhone AI apps and found 282 leaking the keys that pay for their AI. Three months after being warned, most were still wide open.


July 20, 2026
A Poisoned README Can Turn Your AI Coding Agent Into a Shell for Attackers
AI Cybersecurity Threats

A Poisoned README Can Turn Your AI Coding Agent Into a Shell for Attackers

Researchers defeated the safety guards in 10 of 11 open-source AI coding agents using shell tricks older than the tools. A poisoned repo file is now a path to your secrets.


July 6, 2026
One Poisoned GitHub Issue, and the AI Build Bot Handed Over Its Secrets
AI Cybersecurity Threats

One Poisoned GitHub Issue, and the AI Build Bot Handed Over Its Secrets

Microsoft found that a single crafted GitHub issue could trick Anthropic's Claude Code build bot into reading and leaking the secret keys stored on its CI runner.


July 6, 2026
Five Spy Agencies Just Put a Clock on AI-Driven Hacking: Months, Not Years
AI Cybersecurity Threats

Five Spy Agencies Just Put a Clock on AI-Driven Hacking: Months, Not Years

Five intelligence agencies issued a rare joint warning: frontier AI will transform cyberattacks in months, not years. The weaknesses it targets are ones you already have.


June 29, 2026
Microsoft Showed How One Web Page Can Turn an AI Agent Into Code Running on Your Laptop
AI Cybersecurity Threats

Microsoft Showed How One Web Page Can Turn an AI Agent Into Code Running on Your Laptop

Microsoft's AutoJack research shows a single booby-trapped page, summarized by an AI agent, can run commands on the machine the agent lives on. Localhost is no longer safe.


June 25, 2026
Hackers Took 20,225 Instagram Accounts by Asking Meta's AI Chatbot Nicely
AI Cybersecurity Threats

Hackers Took 20,225 Instagram Accounts by Asking Meta's AI Chatbot Nicely

Attackers seized 20,225 Instagram accounts by talking Meta's AI support bot into resetting passwords. The check meant to stop them was quietly broken.


June 24, 2026
Attackers Are Exploiting LiteLLM, the Gateway That Holds Your Company's AI Keys
AI Cybersecurity Threats

Attackers Are Exploiting LiteLLM, the Gateway That Holds Your Company's AI Keys

CISA flagged active attacks on LiteLLM, the proxy many firms route all their AI through. A chained exploit needs no login and hands over every stored key.


June 30, 2026
An AI Agent Was Told to Summarize a Page. It Quietly Stole the Conversation Instead.
AI Cybersecurity Threats

An AI Agent Was Told to Summarize a Page. It Quietly Stole the Conversation Instead.

Brave researchers told an AI agent to summarize a webpage. Hidden text turned it into silent data theft, and running the model on your own device changed nothing.


June 18, 2026
The Gateway Holding All Your AI Keys Is Under Active Attack, CISA Warns
AI Cybersecurity Threats

The Gateway Holding All Your AI Keys Is Under Active Attack, CISA Warns

LiteLLM routes your company's AI traffic and holds every model key. CISA says attackers are exploiting a flaw that turns that gateway into remote code execution.


June 14, 2026
A Disguised File Copy Turned Five AI Coding Agents Into Supply Chain Weapons
AI Cybersecurity Threats

A Disguised File Copy Turned Five AI Coding Agents Into Supply Chain Weapons

Adversa AI's SymJack attack disguises a malicious symlink as a file copy, tricking five AI coding agents into running attacker code. The approval prompt looks routine.


June 16, 2026
AI 2027: A Field Guide to the Most Talked-About AI Scenario
AI Cybersecurity Threats

AI 2027: A Field Guide to the Most Talked-About AI Scenario

A month-by-month scenario from ex-OpenAI researchers imagines AI automating its own research by 2027, then forks into catastrophe or an uneasy triumph. Here is the overview.


June 7, 2026
The Five Eyes Just Issued Their First Joint Warning on AI Agents. The Core Problem Is Access.
AI Cybersecurity Threats

The Five Eyes Just Issued Their First Joint Warning on AI Agents. The Core Problem Is Access.

Five governments issued their first joint guidance on AI agents. The message: autonomous systems are already inside critical infrastructure with more access than anyone can monitor.


June 7, 2026
Researchers Threw 20,000 Attacks at AI Guardrails. Only the One Outside the Model Survived.
AI Cybersecurity Threats

Researchers Threw 20,000 Attacks at AI Guardrails. Only the One Outside the Model Survived.

A team ran an adaptive attacker at nine AI defenses across 20,000 attempts. Every guardrail that trusted the model to police itself broke. Only outside code held.


June 10, 2026
Cisco Just Changed How It Tells You About Bugs. The CVE Flood Is Here.
AI Cybersecurity Threats

Cisco Just Changed How It Tells You About Bugs. The CVE Flood Is Here.

Cisco rewrote its vulnerability disclosure rules as AI tools push CVE volumes up 100–500% across major vendors. What your patch workflow has to change.


May 30, 2026
OpenAI Confirms TanStack Worm Breach. Every macOS App Has to Be Re-Signed.
AI Cybersecurity Threats

OpenAI Confirms TanStack Worm Breach. Every macOS App Has to Be Re-Signed.

OpenAI confirmed two developer laptops were compromised in the Mini Shai-Hulud TanStack worm. macOS users have until June 12 to update before certs revoke.


May 30, 2026
Comment and Control: one prompt pattern hijacks Claude Code, Gemini CLI, and GitHub Copilot
AI Cybersecurity Threats

Comment and Control: one prompt pattern hijacks Claude Code, Gemini CLI, and GitHub Copilot

A single GitHub comment can hijack Claude Code, Gemini CLI, and Copilot Agent — and exfiltrate every secret in the runner. What CI teams should change today.


May 30, 2026
A Single HTTP Request Hands Out Shells on Most Public ChromaDB Servers
AI Cybersecurity Threats

A Single HTTP Request Hands Out Shells on Most Public ChromaDB Servers

HiddenLayer disclosed a pre-auth RCE in ChromaDB's Python server — exploitable by anyone on the internet. The vendor has been silent for three months.


May 25, 2026
Microsoft Just Open-Sourced the AI Agent Red-Team Stack It Uses Internally
AI Cybersecurity Threats

Microsoft Just Open-Sourced the AI Agent Red-Team Stack It Uses Internally

Microsoft just open-sourced RAMPART and Clarity — the AI-agent red-team and design-review tools it uses internally. What this changes for AppSec teams.


May 25, 2026
The 2026 AI Threat Landscape: A Field Guide for Security Teams
AI Cybersecurity Threats

The 2026 AI Threat Landscape: A Field Guide for Security Teams

From agentic malware to AI-enabled supply chain attacks, the seven attack vectors security teams need on their radar this year.


May 25, 2026

Practical guides to protect yourself, your family, and your business from AI-driven scams, deepfakes, and emerging cyber threats.

AI-Generated Malware
AI Cybersecurity Threats
AI Privacy
Misinformation & Fake Content
AI Phishing & Social Engineering
Voice Cloning
Deepfakes & Identity Theft
AI Scams & Fraud
AI Cybersecurity Threats

Nobody Asked the Agent to Hack the Gym. It Did It in Nine Runs Out of Ten.

Nobody Asked the Agent to Hack the Gym. It Did It in Nine Runs Out of Ten.

Popular articles

PyPI Caught His Malware in Two Hours. His AI Skills Ran for Three Weeks and Hit 1.7 Million Installs.

PyPI Caught His Malware in Two Hours. His AI Skills Ran for Three Weeks and Hit 1.7 Million Installs.

Scammers Are Deepfaking FBI Officials. Their Targets Are People Who Already Lost the Money.

Scammers Are Deepfaking FBI Officials. Their Targets Are People Who Already Lost the Money.

Subscribe to our newsletter

Weekly briefings on AI threats, real-world attacks, and practical defenses. Free, no spam, unsubscribe anytime.


Thanks for joining our newsletter
Oops! Something went wrong while submitting the form.





© 2026 Security Against AI. All rights reserved.

Privacy Policy·Terms of Use