The encrypted-prompt attack that let researchers pull chat history out of Grok has also been demonstrated against Google Gemini, producing restricted content and leaking its system prompt.
The encrypted-prompt attack that let researchers pull chat history out of Grok has also been demonstrated against Google Gemini, producing restricted content and leaking its system prompt.
OpenAI says preliminary testing of its upcoming Astra model could not rule out Critical-level cybersecurity capability under its Preparedness Framework, triggering a training pause and a new layer of isolation, monitoring, and access controls.
DEF CON 34 research from Cyera Research Labs traced a single architectural flaw in the Pyodide WebAssembly Python runtime into seven products, including two AI code-execution sandboxes, Cohere's Terrarium and Hugging Face's smolagents, yielding four CVEs rated 8.3 to 9.9.
A critical flaw in ComfyUI's LoadTrainingDataset node lets unauthenticated attackers upload a malicious pickle shard and trigger arbitrary code execution through torch.load, exposing the most widely used Stable Diffusion interface.
ThreatDown researchers found that Kriminal.ai, a clearnet cybercrime storefront selling 'uncensored' AI access, isn't running its own model at all: it's a jailbreak prompt layered over rented Grok and Claude capacity.