Microsoft Azure DevOps MCP Flaw Lets Hidden PR Comments Hijack AI Review AgentsThe Hacker News·Jul 22, 14:13 UTC · Jul 22, 2026Exploit / PoC145
Webmail CSS Attacks Expose a New Risk for AISecurity Affairs·Aug 9, 08:01 UTC · Aug 9, 2026Exploit / PoC45
Atlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to AttackersThe Hacker News·Aug 8, 08:54 UTC · Aug 8, 2026Exploit / PoC in the wild60
New CSS Attacks Can Break Webmail Defenses to Steal Passwords and TokensThe Hacker News·Aug 8, 08:03 UTC · Aug 8, 2026Exploit / PoC45
Google Deletes 3 ADK AI Workflows After Malicious GitHub Issue Could Trigger Privileged AgentThe Hacker News·Aug 4, 11:16 UTC · Aug 4, 2026Exploit / PoC in the wild60
AWS Kiro Flaw Let a Poisoned Web Page Rewrite Its Config and Run CodeThe Hacker News·Jul 24, 04:46 UTC · Jul 24, 2026Exploit / PoC in the wildCVE-2026-1059160
New Agent Data Injection Attack Can Make AI Agents Misclick or Run Attacker CommandsThe Hacker News·Jul 15, 00:00 UTC · Jul 15, 2026Exploit / PoCCVE-2025-32711150
Cursor’s AI coding agent morphed ‘into local shell’ with oneCyberScoop·Aug 1, 19:51 UTC · Aug 1, 2025Exploit / PoC in the wildCVE-2025-5413560
Invisible text that AI chatbots understand and humans can’t? Yep, it’s a thing.Ars Technica · Security·Oct 15, 00:00 UTC · Oct 15, 2024Exploit / PoC145