Field notes from the edge.
What our engineers learned this week. Hands-on technical deep-dives, postmortems, and strategy frameworks.
AINew Attacks Trick OpenClaw AI Agent Into Running Code and Leaking Secrets
Security researchers from Imperva and Varonis have independently demonstrated critical vulnerabilities in OpenClaw, a widely-used self-hosted AI agent, showing it can be manipulated to execute malicious code and expose sensitive information. The attacks exploit the agent's processing of seemingly benign inputs like vCards, shared contacts, and location data, allowing attackers to embed hidden inst
AINew ChatGPT Lockdown Mode Limits Tools That Could Enable Data Exfiltration
OpenAI has introduced Lockdown Mode for ChatGPT personal accounts to mitigate data exfiltration risks from prompt injection attacks. The feature targets users and organizations handling sensitive data by restricting certain tools and capabilities. It is available across all personal account tiers including Free, Go, Plus, and Pro.
AIMalicious Notifications Could Trick Google Gemini Users
Security researchers have identified a prompt injection vulnerability in Google Gemini's voice assistant that allows attackers to embed malicious commands within system notifications. This flaw creates opportunities for social engineering attacks by exploiting the AI assistant's processing of notification content, potentially compromising user security and data integrity.
AIChatGPhish Vulnerability Turns ChatGPT Web Summaries Into a Phishing Surface
Cybersecurity researchers at Permiso Security have identified a vulnerability dubbed 'ChatGPhish' in OpenAI's ChatGPT that exploits the platform's trust in Markdown links and images. The flaw enables attackers to execute prompt injection attacks and conduct phishing campaigns by manipulating how ChatGPT's web interface renders Markdown content. This vulnerability highlights emerging security risks
