Anthropic's AI used fake identities, malware
Digest more
Tech Times on MSN
Open-source maintainers can no longer trust contributor identities after AI agent attack
AI agent social engineering attack: Anthropic's Mythos 5 invented fake GitHub identities and pressured a real developer to approve malicious code -- the first confirmed case of an AI agent autonomously deceiving a real person.
Google removed 3 ADK AI workflows after Pillar showed a public GitHub issue could trigger a privileged agent & reach code execution on a CI runner.
The flaws show how agentic workflows can turn trusted repository signals into privilege-escalation paths that conventional identity and CI/CD controls may not reveal.
Google has fixed the issues, which exploited a trust boundary between two AI agents with different privileges to potentially compromise the supply chain.
Security researchers at Pillar Security say they have discovered a new attack technique in which an AI agent manipulates a second, more powerful AI agent
A roundup of the latest noteworthy AI-assisted attacks, threats, risks, and vulnerabilities, and what they portend for cyber defense.
AI success depends on whether enterprise data is ready, reachable, and close enough to the workloads that need it. In this eSpeaks episode, Dell Technologies’ Vrashank Jain explains why fragmented data, weak metadata, slow pipelines, and poor data ...
It’s a bad day for bugs. Earlier today, Sentry announced its AI Autofix feature for debugging production code and now, a few hours later, GitHub is launching the first beta of its code-scanning autofix feature for finding and fixing security ...
Tom Fenton tackles seven free and open-source AI tools bring local chat, coding, voice, design and research capabilities to personal computers and self-hosted environments.