ThreatsDay: AI Search Poisoning, AI Coding Tool Leaking Repos, One-Click Code Execution and 13 More Stories

This week, the dangerous stuff keeps arriving dressed as something boring. An update. A login box. A search answer. A coding tool. A link you have clicked a hundred times before.

That is the thread running through the pile. Trusted paths get poisoned. Old bugs find new jobs. AI tools leak more than expected. Fake prompts look real enough. And some attacks barely need an exploit at all — just one weak setting or one person doing what the screen tells them.

Nothing here looks especially dramatic. That is what makes it useful.

The threats change every week. Subscribe, and we’ll alert you when each new ThreatsDay Bulletin is out.

That is it for this week. Different tricks, same weak spots: trust, access, old software, bad defaults, and people moving too fast.

Most of these attacks do not need magic. They just need one small thing left open long enough. Fix those first, and a lot of the noise gets quieter.

source: TheHackerNews