AI safety controls become transparent
Anthropic has revised its approach to communicating safety restrictions in its new language model Claude Fable 5, following mounting criticism from developers and AI researchers. The move comes after concerns that the company had been applying hidden model downgrades when users triggered certain types of requests.
Oracle PeopleSoft Under Attack
The cybercriminal group ShinyHunters has exploited a critical zero-day vulnerability in Oracle PeopleSoft, compromising more than 100 organizations worldwide.
Tightened Deadlines
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has significantly shortened the deadline for remediating critical security vulnerabilities, citing the growing use of artificial intelligence by cybercriminals.
Unknown Cloud Resources
A source code analysis suggests that Euro-Office, despite its formal split from OnlyOffice earlier this year, remains heavily dependent on software originally developed by programmers working in Russia.
Exposed API Endpoint
A misconfigured API endpoint allowed unauthorized users to access data stored in ServiceNow instances. The company did not release a fix until several weeks after receiving a bug bounty report.
Susceptible to phishing attacks
A security evaluation by Varonis shows that the open-source AI agent framework OpenClaw can be tricked by classic phishing techniques and may expose highly sensitive credentials.
Error Code 1076
Hundreds of users reported issues with Google’s AI assistant Gemini around midday on Wednesday. Both the mobile app and web version appear to be affected.
Attack on Global Exchange
A major global stock exchange operator has fallen victim to a cyber-espionage campaign after attackers maintained covert access to a senior executive’s email account for five months.
Plans ahead of IPO
OpenAI is preparing its most ambitious overhaul of ChatGPT to date. The company aims to transform its flagship chatbot into a full-scale “super app” featuring autonomous AI agents, developer tools, and integrated third-party services — all ahead of a planned IPO.