Varonis chained three bugs in Microsoft 365 Copilot Enterprise Search into a one-click data theft path that bypassed phishing filters and CSP protections.
A new benchmark study found AI agents remain vulnerable to prompt injection attacks as companies increasingly roll out the ...
Chrome's WebMCP guidance warns that AI agents can be manipulated through the tools they are built to trust.
AI agent exploited Salesforce sites; 263 objects, 55 Apex methods exposed at one portal, leading to PII and file leaks.