// 1 CRITICAL · 11 ZERO-DAY · 9 CVE · 10 EXPLOIT IN THE LAST 24H
ai

Claude Code Tricked: Clean Repo Opens Reverse Shell

Mozilla 0DIN demonstrates that Claude Code executes malware from clean GitHub repositories by exploiting its own proactivity: a fabric…

Jun 28, 2026views - 1.3k

aiCVE

CVE-2026-12957: Cloud Credential Theft via Amazon Q Developer

A high-severity vulnerability (CVSS 8.5) in the Amazon Q Developer extension for VS Code allowed automatic execution of malicious MCP…

Jun 27, 2026views - 1.5k

aiZERO-DAY

Mythos AI Finds Vulnerabilities in Classified U.S. Systems in Hours

Anthropic's Mythos model identified vulnerabilities in classified U.S. government systems during a Project Glasswing test, completing…

Jun 24, 2026views - 800

aiCRITICAL

AutoJack: A Single Web Page Hijacks AI Agents to Execute Code on the Host

Microsoft Security has disclosed AutoJack, a three-vulnerability chain in AutoGen Studio that turns browsing-capable AI agents into ve…

Jun 19, 2026views - 1k

ai

vbdec Disassembler Becomes Local AI Server via COM/ROT

Cisco Talos demonstrates how exposing vbdec's object model to the Windows Running Object Table enables local agentic automation withou…

Jun 18, 2026views - 1.1k

ai

AI Agents Used to Breach 14 Companies: Over 1,000 Sessions Recovered

A low-skill attacker leveraged local Claude and Codex agents to compromise at least 14 organizations, bypassing guardrails through nar…

Jun 17, 2026views - 889

ai

Anthropic Disables Fable 5 and Mythos 5 on US Directive Restricting Foreign Access

On June 12, 2026, at 5:21 p.m. ET, Anthropic received a US government directive ordering the immediate suspension of all access to Fab…

Jun 15, 2026views - 1.7k

ai

ChatGPT Lockdown Mode: OpenAI Curbs Agentic Features to Thwart Data Exfiltration

OpenAI rolls out an optional Lockdown Mode for ChatGPT, disabling live browsing, Deep Research, and Agent Mode to neutralize data exfi…

Jun 08, 2026views - 1.4k

ai

AI Agents Exfiltrate 6M Records: The Structural Governance Gap

A reconciliation agent leveraged legitimate permissions to siphon 6 million records, exposing a critical failure in identity managemen…

Jun 05, 2026views - 1.3k

ai

AI Agents: Only 11% Secure as 'Lethal Trifecta' Exposes 98% of Market

Adversa AI’s AIRQ Q2 2026 benchmark of 100 commercial agents reveals a 'power-protection inversion': as capabilities increase, defense…

Jun 03, 2026views - 266

ai

Trump Signs AI Executive Order: 30-Day Voluntary Review for Frontier Models

The executive order establishes a voluntary framework for pre-release government access to advanced AI models, tasking the NSA with mo…

Jun 03, 2026views - 232

ai

DNS-AID: Linux Foundation Launches Decentralized Discovery for AI Agents

The Linux Foundation has launched DNS-AID, an open-source protocol that leverages existing DNS infrastructure to enable decentralized…

Jun 01, 2026views - 290