CybersecurityAgents3 min reading time

I found an SSRF in Google's official AI tooling, and how Google reacted

Hacker News
Read full post
A security researcher discovered a server-side request forgery (SSRF) vulnerability in Google's MCP Toolbox, which allows outbound requests to be manipulated via redirects. Google promptly fixed the issue within eight days, credited the researcher, and assigned CVE-2026-14540. The flaw was particularly risky due to the nature of agent tooling, where input URLs are often model-generated and untrusted.

More in Cybersecurity

Cybersecurity10 min read

Anthropic Details Disrupted Claude Misuse Across Seven Harm Areas

Covered by 4 sources
Cybersecurity4 min read

Sam Altman met with top power utilities about securing the electrical grid. He offered one possible solution: OpenAI's cyber services.

Covered by 2 sources
Cybersecurity6 min read

Anthropic reveals rogue AI agents hate CAPTCHAs, just like you

TechCrunch