Related Threat Clusters
-
Critical Vulnerabilities in Exposed MCP Servers Threaten Sensitive Data
Recent research revealed that a significant number of Model Context Protocol (MCP) servers are exposed to the Internet without proper authentication, affecting many organizations, including Fortune 500 companies. Wiz…
2 articles · Updated July 29, 2026 -
Critical Vulnerabilities Found in Thousands of MCP Servers
A large-scale analysis revealed that 5,832 out of 9,695 Model Context Protocol (MCP) servers are vulnerable to critical security flaws, including arbitrary file access, command injection, and SQL injection. These…
14 articles · Updated July 7, 2026 -
Zenity Labs Reveals PleaseFix Vulnerabilities in Perplexity Comet and Other Browsers
Zenity Labs disclosed a family of critical vulnerabilities known as PleaseFix, affecting agentic browsers including Perplexity Comet. These vulnerabilities enable zero-click agent hijacking, local file exfiltration, and…
18 articles · Updated March 3, 2026 -
Zero-Click RCE Vulnerability Discovered in Claude Desktop Extensions
A zero-click remote code execution (RCE) vulnerability has been identified in Claude Desktop Extensions, allowing attackers to compromise systems through a single Google Calendar event. This flaw affects over 10,000…
23 articles · Updated February 9, 2026
Recent Intelligence Reports
- Adversa AI — adversa.ai · July 30, 2026
- Until last month, attackers could've stolen info from Perplexity Comet users just by sending a calendar invite — Theregister · March 3, 2026
- Claude Desktop Extensions Zero-Click RCE Flaw Exposes Over 10,000 Users to Silent Attacks — Cyberpress · February 10, 2026
- 0-Click RCE Found in Claude Desktop Extensions, Putting 10,000+ Users at Risk — Gbhackers · February 10, 2026
- Claude Desktop Extensions Exposes Over 10,000 Users to Remote Code Execution Vulnerability — X · February 10, 2026
- New Zero-Click Flaw in Claude Desktop Extensions, Anthropic Declines Fix — Infosecurity-Magazine · February 9, 2026
- Claude Desktop Extensions Exposes Over 10000 Users to Remote Code Execution Vulnerability — Layerxsecurity · February 9, 2026