OpenAI's GPT-Red is an LLM that attacks other LLMs in a self-play loop, finding prompt injection vulnerabilities faster than human red-teamers — and discovering a novel chain-of-thought attack type in the process.
The latest AI security developments, threats, and industry updates.
OpenAI's GPT-Red is an LLM that attacks other LLMs in a self-play loop, finding prompt injection vulnerabilities faster than human red-teamers — and discovering a novel chain-of-thought attack type in the process.
Microsoft's July 2026 Patch Tuesday dropped patches for 570+ vulnerabilities, with two actively exploited. The bigger story: AI is making Microsoft's own exploitability ratings meaningless.
Check Point Research's annual AI security report documents a fundamental shift: AI is now executing attack chains autonomously, not just planning them. The numbers are stark.
On August 2, 2026, the European Commission's enforcement powers over general-purpose AI model providers under Chapter V of the EU AI Act become fully active. Systemic-risk GPAI providers face mandatory cybersecurity frameworks, adversarial testing obligations, and fines up to €15M or 3% of global revenue.
A Huntress incident response investigation uncovered a PowerShell Active Directory recon script built by iteratively prompting an AI — the first documented case of 'vibe-coded' malware recovered from a live attack.