AI Security Roundup

Daily feed of AI security, malware, and defensive research updates.

ai-security EN

Want More XWorm?, (Wed, Mar 4th)

And another XWorm[ 1 ] wave in the wild! This malware family is not new and heavily spread but delivery techniques always evolve and deserve to be described to show you how threat actors can be …

ai-security EN

Manipulating AI Summarization Features

Manipulating AI Summarization Features Microsoft is reporting : Companies are embedding hidden instructions in “Summarize with AI” buttons that, when clicked, attempt to inject persistence commands …

ai-security EN

New RFP Template for AI Usage Control and AI Governance

** The Hacker News ** Mar 04, 2026 Artificial Intelligence / SaaS Security As AI becomes the central engine for enterprise productivity, security leaders are finally getting the green light — and the …

ai-security EN

Bruteforce Scans for CrushFTP , (Tue, Mar 3rd)

CrushFTP is a Java-based open source file transfer system. It is offered for multiple operating systems. If you run a CrushFTP instance, you may remember that the software has had some serious …

ai-security EN

On Moltbook

On Moltbook The MIT Technology Review has a good article on Moltbook, the supposed AI-only social network: Many people have pointed out that a lot of the viral comments were in fact posted by people …

ai-security EN

Wireshark 4.6.4 Released, (Mon, Mar 2nd)

Wireshark 4.6.4 Released Published 2026-03-02. Last Updated 2026-03-02 11:11:45 UTC by Didier Stevens (Version: 1) 0 comment(s) Wireshark release 4.6.4 fixes 3 vulnerabilities and 15 bugs. Didier …

ai-security EN

Quick Howto: ZIP Files Inside RTF, (Mon, Mar 2nd)

In diary entry " Quick Howto: Extract URLs from RTF files " I mentioned ZIP files. There are OLE objects inside this RTF file: They can be analyzed with oledump.py like this:

ai-security EN

LLM-Assisted Deanonymization

LLM-Assisted Deanonymization Turns out that LLMs are good at de-anonymization: We show that LLM agents can figure out who you are from your anonymous online posts. Across Hacker News, Reddit, …