Field notes from the edge.
What our engineers learned this week. Hands-on technical deep-dives, postmortems, and strategy frameworks.
AIServiceNow Flaw Exploited to Gain Unauthorized Access to Customer Instances
ServiceNow disclosed a security incident where threat actors exploited a vulnerability to gain unauthorized access to customer instances. The company deployed a security update on June 5, 2026, to address the flaw that allowed unauthenticated users to access susceptible instances. Details of the incident are available in a customer-only advisory.
AIWhatsApp, Slack Notifications Could Hijack Google Gemini on Android
Security researchers discovered a critical vulnerability in Google Gemini's Android voice assistant that could be exploited through malicious notifications from popular messaging apps like WhatsApp, Slack, SMS, Signal, Instagram, or Messenger. The flaw would allow attackers to hijack the assistant without requiring any malicious app installation, potentially enabling unauthorized access to connect
