Qwen — Cyber Threats, Attacks & Incidents

Threat entity extracted from intelligence sources

Frequency
9
occurrences
First Seen
November 17, 2025
Last Seen
August 2, 2026

Qwen is a technology platform referenced in cybersecurity context related to AI-enabled systems.

Overview

Qwen is a technology platform referenced in cybersecurity context related to AI-enabled systems. The latest reporting centers on a critical vulnerability in NOFX's AI Automated Trading System, illustrating how AI-powered financial tools can become high-value attack surfaces and underscoring the need for rapid remediation and ongoing monitoring of AI-driven platforms.

Related Threat Clusters

  • State-Linked Cyber Threats Intensify Amid AI Advancements

    Recent reports indicate that state-linked hackers are leveraging artificial intelligence to enhance their cyber capabilities, posing significant risks to national utilities and intellectual property. Additionally, a US…

    2 articles · Updated March 11, 2026
  • Anthropic's Claude Code Faces Backlash Over Covert User Tracking of Chinese Users

    Anthropic's AI tool, Claude Code, was found to contain hidden tracking mechanisms targeting Chinese users, raising significant privacy concerns. The covert detection logic, embedded since April 2, 2026, identified users…

    41 articles · Updated July 3, 2026
  • Critical RCE Vulnerability Discovered in SGLang Framework via GGUF Models

    A remote code execution vulnerability has been identified in the SGLang framework, specifically affecting the reranking endpoint (/v1/rerank) and tracked as CVE-2026-5760. This flaw allows attackers to exploit…

    7 articles · Updated April 21, 2026
  • DeepSeek AI Used in Autonomous Cyberattack Campaign by Chinese Threat Actor

    A Chinese-speaking threat actor, identified as knaithe/KnYuan, executed an autonomous cyberattack campaign using DeepSeek AI and the Hermes Agent framework. The campaign targeted over 460 servers, attempting to exploit…

    12 articles · Updated August 2, 2026
  • NOFX AI Vulnerability Exposes User API and Private Keys

    SlowMist identified a critical vulnerability in the NOFX AI automated trading system, which shipped with an 'admin mode' enabled by default, allowing unauthorized access to sensitive API and private wallet keys. Users…

    3 articles · Updated November 17, 2025
  • NOFX AI Vulnerability Exposes API Keys and Private Wallets

    SlowMist identified a critical vulnerability in the NOFX AI trading system, which shipped with an 'admin mode' enabled by default and lacked proper authentication. This flaw allows unauthorized access to sensitive API…

    3 articles · Updated November 17, 2025
  • Rise of AI-Enhanced Romance Scams Targeting Victims Worldwide

    Romance scams are evolving as criminals utilize AI tools to enhance their operations, leading to more organized and scalable fraud. The FBI and cybersecurity experts warn that these scams exploit emotional connections…

    3 articles · Updated February 12, 2026
  • Single Prompt Disables Safety in 15 Language Models

    Microsoft researchers revealed that a benign prompt can disable safety features in 15 major language models. The technique, known as GRP-Obliteration, exploits a training method called Group Relative Policy…

    2 articles · Updated February 10, 2026

Recent Intelligence Reports

  • BleepingComputer summarised the finding — www.bleepingcomputer.com · August 2, 2026
  • DeepSeek Became the Attack Engine Because It Had the Fewest Guardrails — Forkast.News · August 1, 2026
  • Chinese — Oodaloop · July 30, 2026
  • Alibaba bans employees from using Anthropic's Claude Code over security risks — Cryptobriefing · July 3, 2026
  • VU#915947: SGLang is vulnerable to remote code execution when rendering chat templates from a model file — Kb.Cert · April 20, 2026
  • AI is Giving State-linked Hackers a New Edge — Globalpolicyjournal · March 10, 2026
  • AI turns romance scams into industrial-scale fraud — Itbrief · February 11, 2026
  • Single prompt breaks AI safety in 15 major language models — Csoonline · February 10, 2026

CVSS v3.1 Breakdown