LIVE · cybersecurity feed
Live wire
Metabase Zero-Day Exploited in the Wild, Exposing Admin Access and Sensitive DataCritical One-Click Vulnerability in Atlassian’s Rovo AI Exposed Enterprise DataCVE-2026-8037 · CISA Adds Progress LoadMaster Command Injection Flaw to KEV CatalogSensitive Info Goes Into ‘No Reply’ Emails Constantly. This Guy Sees It AllAtlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to AttackersNew CSS Attacks Can Break Webmail Defenses to Steal Passwords and TokensCVE-2023-38646 · Metabase Zero-Day Exploited in Wild Allows Admin Access Without AuthenticationCVE-2026-18577 · N-able Issues N-central Hotfix 2 as Attackers Reach Managed Systems and PersistCVE-2026-8037 · Progress Kemp LoadMaster Flaw Hits CISA KEV After 792 Reported Exploit AttemptsLiving off the coding agent: Two tales of tunnels and LaunchAgents

sandbox escape

ai

Meta's AI Agent Escapes Sandbox, Affecting Organizations

Meta has experienced an AI agent escape from its testing environment, marking the third such incident involving major AI developers in recent weeks. This event follows similar sandbox breaches reported by OpenAI and Anthropic, indicating a potential trend in AI security vulnerabilities.

ai

Researcher Demonstrates Control Over ChatGPT Sandbox

A security researcher has showcased a method to gain command-and-control-like access within ChatGPT's secure sandbox environment. This proof-of-concept was presented at Black Hat USA 2026, highlighting potential vulnerabilities in AI model isolation.