Top AI Agents Built to Catch Malicious Code Can Be Tricked Into Running ItThe Hacker News·Jul 9, 05:17 UTC · Jul 9, 2026Exploit / PoCCVE-2026-3986150
New Agent Data Injection Attack Can Make AI Agents Misclick or Run Attacker CommandsThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Exploit / PoCCVE-2025-32711150
Sandyaa: Open-source autonomous security bug hunterHelp Net Security·May 13, 00:00 UTC · May 13, 2026Exploit / PoC45
Public GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo DataThe Hacker News·Jul 7, 14:07 UTC · Jul 7, 2026Exploit / PoC145
Open-source AI pentesting tools are getting uncomfortably goodHelp Net Security·Feb 2, 00:00 UTC · Feb 2, 2026Exploit / PoC145
Webmail CSS Attacks Expose a New Risk for AISecurity Affairs·Aug 9, 08:01 UTC · Aug 9, 2026Exploit / PoC45
New CSS Attacks Can Break Webmail Defenses to Steal Passwords and TokensThe Hacker News·Aug 8, 08:03 UTC · Aug 8, 2026Exploit / PoC45
Nine-Year-Old RefluXFS Linux Flaw Gives Local Users Root on Default RHEL InstallsThe Hacker News·Jul 24, 04:42 UTC · Jul 24, 2026Exploit / PoCCVE-2026-64600CVE-2026-893350
Researchers Trick AI Browsers Into Leaking CredentialsInfosecurity Magazine·Jun 24, 16:05 UTC · Jun 24, 2026Exploit / PoC45