Researchers escaped the sandboxes in Cursor, Codex, Gemini CLI and Antigravity by having the AI agent write files that trusted host tools later run. Multiple CVEs, patches, and Google downgrading two ...
A Russian-speaking threat actor known as "bandcampro" used Google's open-source Gemini CLI AI tool as a hacking agent and to ...
A solo Russian-speaking threat actor known as "bandcampro" outsourced a chunk of their operations to Google's open-source ...
CodeMender actively builds and runs exploits in customer-managed sandboxes to verify if vulnerabilities are truly exploitable ...
Grok Build open source release arrives hours after xAI's covert upload scandal, but security researchers confirm the code ...
AWS Kiro prompt injection flaw let hidden web page text rewrite the IDE’s MCP configuration file and silently execute ...
Grok CLI unauthorized data uploads expose SSH keys and Git repositories. Researchers used an MITM proxy to catch xAI ...
One advantage Google has enjoyed in the AI race is the freedom to experiment at a scale few others can match. Its advertising ...
The hacker told the AI he was an authorized pentester - and the AI believed him.
Researchers escaped the sandboxes of Cursor, Codex, Gemini CLI and Antigravity without breaking them. Three vendors patched; Google downgraded its two.
New executive hires deepen Ory’s ability to serve open-source community as demand accelerates for identity and access ...