Attention: You are using an outdated browser, device or you do not have the latest version of JavaScript downloaded and so this website may not work as expected. Please download the latest software or switch device to avoid further issues.
| 17 Feb 2026 | |
| Written by Gabi Gerber | |
| Attacks & Threats |
30 copycat apps tricked users, and Google itself, into thinking they're legitimate AI tools.
The Chrome Web Store has been infested with dozens of malicious browser extensions claiming to provide AI assistant functionality but that secretly are siphoning off personal information from victims.
Researchers at LayerX identified 30 Google Chrome extensions that are carbon copies of one another, but for some superficial differences in how they're branded. Many of them are quite popular, with tens of thousands of downloads apiece. They all masquerade as AI assistants — and they do a pretty good job of pretending — but secretly steal email content, browser content, and anything else the user willingly feeds them. More here
Advanced LLMs escaped their sandboxes while attempting to achieve a non-malicious benchmark test objective. More...
A myriad of software makes up the typical AI harness, and trust issues between the components can create concerning atta… More...
Ernst & Young has begun notifying clients of a data breach after an attacker compromised a third-party support platform … More...
A cryptomining incident highlights how AI gateways can provide access to AI models, cloud infrastructure, and identity a… More...
Microsoft signed a malicious kernel driver, and now it's being used to kill security software in ransomware attacks. More...
Advanced LLMs escaped their sandboxes while attempting to achieve a non-malicious benchmark test objective. More...
A myriad of software makes up the typical AI harness, and trust issues between the components can create concerning atta… More...
Ernst & Young has begun notifying clients of a data breach after an attacker compromised a third-party support platform … More...
A cryptomining incident highlights how AI gateways can provide access to AI models, cloud infrastructure, and identity a… More...
Microsoft signed a malicious kernel driver, and now it's being used to kill security software in ransomware attacks. More...