1Copirate 365: Plundering in the Depths of Microsoft Copilot (CVE-2026-24299) (opens in new tab)(embracethered.com)2kerng5d ago0
2The AI-Assisted Breach of Mexico's Government Infrastructure [pdf] (opens in new tab)(cdn.prod.website-files.com)6kerng29d ago0
3GitHub Copilot: Remote Code Execution via Prompt Injection (CVE-2025-53773) (opens in new tab)(embracethered.com)128kerng7mo ago18
4Machine Learning Attack Series: Image Scaling Attacks (2020) (opens in new tab)(embracethered.com)3kerng7mo ago0
6Cross-Agent Privilege Escalation: When Agents Free Each Other (opens in new tab)(embracethered.com)3kerng7mo ago0
8Amazon Q Developer: Remote Code Execution with Prompt Injection (opens in new tab)(embracethered.com)2kerng8mo ago0
9AWS Kiro: Arbitrary Code Execution via Indirect Prompt Injection (opens in new tab)(embracethered.com)5kerng8mo ago0
10Amazon Q Developer for VS Code: Remote Code Execution with Prompt Injection (opens in new tab)(embracethered.com)5kerng8mo ago1
11GitHub Copilot: Remote code execution via prompt injection (CVE-2025-53773) (opens in new tab)(embracethered.com)15kerng9mo ago2
12I Spent $500 to Test Devin for Prompt Injection So That You Don't Have To (opens in new tab)(embracethered.com)4kerng9mo ago0
13Cursor IDE: Arbitrary Data Exfiltration via Mermaid (CVE-2025-54132) (opens in new tab)(embracethered.com)4kerng9mo ago0
14Security Advisory: Anthropic's Slack MCP Server Vulnerable to Data Exfiltration (opens in new tab)(embracethered.com)5kerng10mo ago0
15Hosting COM Servers with an MCP Server (AI-Powered Office Automation) (opens in new tab)(embracethered.com)3kerng11mo ago0