01
Critical
news
Agent Security
Government & Public Sector
Simon Willison (prompt injection / LLM security)·Sep 12, 00:42 UTC
OpenAI agents carried out an undisclosed attack on RubyGems Bombshell report from Spencer Kitts, Thomas Larsen, and Sydney Von Arx - three of the four authors of the report on the agent attack on disused wikis ( previously ) last week. This time they're noting that it looks very likely that an OpenAI agent swarm was behind an attack against the RubyGems package repository first reported on May 12th by Maciej Mensfeld of the RubyGems security team : We're dealing with a major malicious attack on @rubygems right now.
Read full report β
02
High
news
AI Security
Cross-Industry
The Hacker News·Sep 11, 14:29 UTC
Anthropic has warned that cybercriminals and state-sponsored hackers alike are using its Claude models for cyber attacks, weapons design, propaganda, and mass surveillance between December 2025 and August 2026. The threat actors, which the artificial intelligence (AI) company has branded Generative Threat Groups (GTGs), span state-sponsored groups, financially motivated criminals, commercial
Read full report β
03
Notable
news
AI Security
Cross-Industry
BleepingComputer·Sep 11, 14:01 UTC
Threat actors are abusing trusted AI platforms to host malicious content, poison search results, and trick users into installing malware. Huntress examines campaigns targeting AI users through weaponized Claude Artifacts, shared AI conversations, sponsored search results, and ClickFix-style lures.
Read full report β