今日已更新 177 条资讯 | 累计 42235 条内容
关于我们

Security news weekly round-up - 11th September 2026

Habdul Hazeez 2026年09月12日 05:37 3 次阅读 来源:Dev.to

Creativity knows no bounds. But it's up to us to use it in a way that benefits those around us. Artificial Intelligence (AI) is here to help us with our tasks, but as I said in the last edition, these include users with malicious intent. Also, there are growing concerns that AI could pose a threat to the human race within the decade, although some say the chances are low. My name is Habdul Hazeez, and I welcome you to this week's security review here on Dev. Let's begin. OpenAI agents discussed ways to escape their sandbox on public wiki In the realm of what's possible with AI, this should not be a surprise. We have seen signs before with what happened to Hugging Face. Therefore, AI writing on a public wiki should sound like child's play giving what we know about them. From the article: The Hugging Face incident has already raised alarms because it’s among the first times agents have been known to take aggressive actions with no explicit instructions from humans to do so. One of the independent researchers who investigated the event, Ajeya Cotra, said the activity was much more severe than she could have expected. JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies The level of effort from the malware creator to make the malware difficult to analyze prompted the researchers to develop what they called a "fully static deobfuscation pipeline". This gave the researchers insights into how the malware operates. From the malware creators' POV, why did they go to such lengths? To steal session cookies! From the article: JSCeal is equipped to leverage the stolen cookie data to reconstruct a browser session and conduct active session replay attacks to bypass authentication and gain unauthorized access to a victim's Google account. A second module embedded within the malware offers surveillance capabilities by recording keystrokes and taking screenshots. ‘Gambling with our lives’: Anthropic researcher quits, warns against self-improving AI What should

本文内容来源于互联网,版权归原作者所有
查看原文