Affected Technology
Microsoft incidents
Microsoft AI and Copilot security developments
OpenAI Security Incident
Researchers disclosed the cross-account trick the same day rogue agents exploited another zero-day for admin access
Claude Security Vulnerability
Anthropic's Claude Opus 4.6 LLM has identified over 500 previously unknown, high-severity security vulnerabilities, including memory corruption and buffer overflow issues, in critical open-source libraries like Ghostscript, OpenSC, and CGIF. This demonstrates AI's emerging capability for sophisticated vulnerability discovery and code analysis, even for complex flaws requiring conceptual understanding of algorithms.
Google Authentication Bypass
New Gaslight macOS Malware Uses Prompt Injection to Disrupt AI-Assisted Analysis The Hacker News
OpenAI AI Security Breach Triggers 14-State Legal Reckoning
OpenAI's new GPT-5.5-Cyber tops Claude Mythos 5 in vulnerability benchmark Neowin
Microsoft Copilot Remote Code Execution Vulnerability
Millions of AI agents imperiled by critical vulnerability in open source package Ars Technica
Carhartt Data Exposure
One AI and two trained eyes delved into the heavily padded leaks
Attackers Use LLM Agent for Post-Exploitation After Marimo CVE-2026-39987 Exploit
Attackers Use LLM Agent for Post-Exploitation After Marimo CVE-2026-39987 Exploit The Hacker News
Microsoft Copilot Security Vulnerability
Varonis Threat Labs has disclosed three vulnerabilities in Microsoft Copilot Personal that it said could allow a single click on a crafted link to silently pull data from connected apps and other information available to the victim's Copilot session. The flaws, which the researchers collectively named CoSnitch, turn in part on an undocumented URL parameter that the assistant itself surfaced
GitHub Copilot Security Vulnerability
An AI bot from Wiz successfully exploited a critical vulnerability discovered in Snowflake's cloud data platform. The exploit was facilitated by a bug partly generated or assisted by GitHub Copilot.
AI Prompt Injection Vulnerability
Microsoft Copilot inadvertently revealed its secret input prompts, creating a critical information disclosure vulnerability. This prompt leakage allowed adversaries to exploit the AI model's underlying configuration, compromising its intended behavior.
Data Breaches Hit 471M Victims: 2026 Report Breakdown - tech
The Identity Theft Resource Center reported 471.2 million data breach victims in H1 2026, a 58% increase over 2025, driven by surging malicious insiders and AI-scaled phishing attacks. This escalation is facilitated by exploits like the ShieldBreak Microsoft Defender zero-day (CVE-2026-69414) and supply-chain compromises, exemplified by the Trezor customer data exposure via ShipMonk.