Malware Lures LLMs Toward Forbidden Prompts
Russia-aligned UAC-0099 embeds nuclear-weapon-style prompts in a VBS script to misdirect AI-assisted malware analysis, ESET says.
30 results for “injection”
Russia-aligned UAC-0099 embeds nuclear-weapon-style prompts in a VBS script to misdirect AI-assisted malware analysis, ESET says.
Patches cover three critical code injection bugs and a sandbox escape in the Now Platform.
Researchers show Anthropic's Claude Code can be tricked into running malicious code by summarizing a website.
What to do when an autonomous agent acts beyond its bounds, hour by hour.
Forcepoint shows invisible text can silently change what an AI assistant reads in your email.
InjecMEM lets attackers plant persistent instructions in AI agents' memory with a single prompt.
GitLab's CVE-2026-19478 is under active exploitation, days after disclosure, urging immediate patching.
A researcher found that encrypting malicious instructions lets Grok exfiltrate user chats and personal details.
A GitHub Actions workflow flaw in Snowflake's connector repo allowed crafted issues to execute commands with exposed Jira credentials.
Model Context Protocol servers can expose enterprise secrets via plaintext configs, over-permissioning, and prompt injection, often undetected.
OpenAI's Computer History feature records clicks and typing, storing them unencrypted and expanding prompt injection risks.
SAP's August 2026 patch batch addresses 28 flaws, including a 10/10 severity bug in Commerce Cloud that could allow attackers to bypass authentication and execute code.
Malicious MCP servers can split instructions to make AI coding agents exfiltrate secrets, ASSET reports.
CISA warns of active exploitation of critical command injection flaw in Progress Kemp LoadMaster; urges patching.
Critical SQL injection flaw in Metabase allowed zero-day attacks; urgent patches released for self-hosted users.
A one-click prompt injection attack on Atlassian's Rovo could expose enterprise data across connected apps.
A critical command injection vulnerability in the MSI RadiX AXE6600 router allows remote attackers to execute arbitrary code and gain root access.
A critical vulnerability in the MSI Radix AXE6600 router allows remote attackers to gain root access via the wps.cgi interface.
Researchers identified a new technique dubbed INTERRUPT INJECTION that exploits timing gaps to bypass existing CPU branch protections.
A critical command injection vulnerability in Progress LoadMaster is under active exploitation, prompting urgent CISA remediation requirements.
Researchers reveal that vulnerabilities in AI agent foundations allow prompt injection to bypass critical trust boundaries.
Researchers identified a post-exploitation toolkit concealed within Oracle database schema objects to bypass endpoint security tools.
A critical SQL injection vulnerability in Loca Software CMS allows unauthorized attackers to gain full control over affected database systems.
A critical remote code execution vulnerability in Flowise allows low-privileged attackers to gain root access on vulnerable servers via CSV Agent code injection.
A critical PHP object injection vulnerability in MaxSite CMS allows unauthenticated attackers to execute arbitrary code via a malicious cookie.
A code injection vulnerability in IBM Langflow has been added to CISA's catalog, requiring rapid remediation for federal agencies.
Puwell IP cameras running firmware versions 2.x through 4.x are vulnerable to unauthenticated remote code execution via a flaw in the DebugShell interface.
A critical remote command injection vulnerability in GL.iNet GL-MT3000 routers allows unauthenticated attackers to execute arbitrary code on affected devices.
A critical SQL injection vulnerability in Adobe Campaign Classic allows low-privileged attackers to execute arbitrary code without user interaction.
A critical vulnerability in Adobe Campaign Classic allows low-privileged attackers to execute arbitrary code without requiring user interaction.