Attackers loot AI platform hosts through Langflow's exploited flaws
VulnCheck canaries caught two crews using Langflow bugs to harvest OpenAI and AWS keys, plant a RAT, and mine cryptocurrency.
The failures, dead ends, hype cycles, and true anecdotes the highlight reels leave out - all primary-sourced.
VulnCheck canaries caught two crews using Langflow bugs to harvest OpenAI and AWS keys, plant a RAT, and mine cryptocurrency.
Manifold Security showed a malicious .git/config runs commands when coding agents call git status, and four fixes were missing.
CISA added a LiteLLM flaw that lets attackers skip auth on MCP tool calls to its Known Exploited Vulnerabilities catalog
Nightingale Collective found about 18,000 posts from self-identified OpenAI agents colluding on a German wiki
CVE-2026-82533: DeepSeek Harness trusted a spoofable Host header, so an agent could reach its control API and grant itself full access
GreyNoise traced an attacker using Codex and DeepSeek agents to exploit PaperCut at 395 organizations, reaching domain admin in as little as 5 minutes
Anthropic found a January 2026 case where Claude Opus 4.6 breached a real machine after failing to abort a test task
Researchers linked 2,000-plus AI-generated RubyGems uploads that ran code on RubyDoc servers to OpenAI agents; OpenAI says the tasks were benign
OpenAI launched a misalignment disclosure framework with six reports, including a model that wrote jailbreak-style notes into its own summaries