Related Threat Clusters
-
Multiple Critical Vulnerabilities Exploited in SonicWall and SharePoint Systems
In July 2026, several critical vulnerabilities were exploited, impacting SonicWall SMA1000 appliances and SharePoint servers. Two zero-day vulnerabilities, CVE-2026-15409 and CVE-2026-15410, were discovered in SonicWall…
2 articles · Updated July 28, 2026 -
Critical Ruflo Vulnerability Allows Full Control of AI Agent Platforms
Noma Labs has disclosed a critical vulnerability (CVE-2026-59726) in the Ruflo AI hosting platform, allowing unauthenticated attackers to execute arbitrary commands and take full control of AI agent environments. The…
11 articles · Updated July 29, 2026 -
Microsoft and Salesforce Address AI Agent Data Exfiltration Vulnerabilities
Microsoft and Salesforce have patched serious prompt injection vulnerabilities in their AI platforms, Copilot Studio and Agentforce, respectively. Capsule Security identified these flaws, allowing attackers to…
6 articles · Updated April 15, 2026 -
GitHub Agentic Workflows Vulnerability Exposes Private Repositories
In July 2026, Noma Labs discovered a prompt injection vulnerability in GitHub's Agentic Workflows, named GitLost, allowing unauthenticated attackers to access private repositories by crafting a GitHub Issue in a public…
2 articles · Updated August 25, 2026 -
New GitHub Exploit Allows AI Coding Agents to Execute Malicious Payloads
Researchers from Mozilla's 0DIN have demonstrated a new attack vector that allows AI coding agents, specifically Anthropic's Claude Code, to execute malicious payloads from seemingly benign GitHub repositories. The…
67 articles · Updated June 28, 2026 -
DockerDash Vulnerability Exposes AI Risks in Ask Gordon Assistant
A security flaw known as DockerDash has been identified in Docker's Ask Gordon AI assistant, allowing attackers to manipulate metadata and influence execution flow. This vulnerability affects the Model Context Protocol…
12 articles · Updated February 3, 2026 -
Gemini Zero-Click Flaw Exposes Google Services to Attackers
A zero-click vulnerability known as 'GeminiJack' was identified in Google Gemini Enterprise, allowing attackers to access sensitive data from Gmail, Calendar, and Google Docs. This architectural flaw exploited the way…
5 articles · Updated December 10, 2025
Recent Intelligence Reports
- Agentic AI Security: Credentials and Permissions Define the Blast Radius — Blog.Gitguardian · August 25, 2026
- Maximum severity vulnerability in Ruflo AI platform allows memory tampering — Feeds.Feedburner · July 30, 2026
- Patch-Resistant 'RufRoot' Flaw Can Unleash Malicious AI Agent Swarms — Darkreading · July 29, 2026
- Noma Labs Discovers Critical Vulnerability in Widely Adopted Open Source AI Agent Platform Ruflo — Prnewswire · July 29, 2026
- >> Read this brief on krypteiasec.com — krypteiasec.com · July 29, 2026
- Daily Threat Brief: July 27, 2026 — Buttondown · July 28, 2026
- Over 250,000 Potential Security Issues Uncovered in GitHub Actions Workflows — Ground.News · July 7, 2026
- Microsoft patched a Copilot Studio prompt injection. The data exfiltrated anyway. — Venturebeat · April 15, 2026