CISA added CVE-2026-42271, a high-severity LiteLLM command injection flaw, to its KEV catalog after evidence of active ...
AI agent exploited Salesforce sites; 263 objects, 55 Apex methods exposed at one portal, leading to PII and file leaks.
CISA has given U.S. government agencies until Wednesday evening to secure their servers against an SQL injection vulnerability in the Drupal content management system (CMS) that it flagged as actively ...
Ghost CMS SQL injection campaign has compromised 700+ websites — including Harvard University, Oxford University, and DuckDuckGo — using a CVSS 9.4 flaw to inject ClickFix malware lures that trick ...
Hackers can hijack ChatGPT, Claude, and Gemini with nothing but a sentence. OpenAI says the problem may never be fully solved.
Fortinet’s FortiClient endpoint management software, meant to harden corporate and government machines, instead exposed them ...
AI systems inherit decades-old security flaws many organizations still fail to address consistently.
University of Toronto researchers demonstrate how open-weight local LLMs can be used to autonomously exploit flaws and ...
The cybersecurity certificates submitted to CBSE for its OSM platform were outdated and covered a different client's deployment, raising questions on the platform's actual security.
CISA warns attackers are targeting internet-exposed Automatic Tank Gauge systems used in fuel storage. Here’s what operators ...
Use these official MCP servers to interact with the leading database platforms via natural language through your LLM-assisted ...
India's software supply chain security challenge is deepening as AI expands the attack surface while many enterprises lack detection and protection tools.