AI Security — week of 2026-06-08

June 8, 2026 · 9 developments

Meta AI support tool vulnerability

Krebs on Security · 2026-06-01 · corroborated · reporting

A vulnerability in Meta AI’s support tool has been exploited for account takeovers, highlighting the risks of AI-powered support systems.

Also: Simon Willison · BleepingComputer · Schneier

AI-assisted attacks and vulnerabilities

Schneier · 2026-06-01 · corroborated · analysis

AI-powered tools are being used to discover and exploit vulnerabilities at an unprecedented rate, changing the dynamics of vulnerability disclosure.

Also: The Hacker News · The Hacker News · The Hacker News · The Register Sec · Schneier · Schneier

OpenAI Lockdown Mode and sandboxing

Simon Willison · 2026-06-05 · single-source · research

OpenAI’s Lockdown Mode and sandboxing techniques aim to prevent data exfiltration and ensure secure execution of Python code.

Also: Simon Willison · Simon Willison · The Hacker News

GitHub Action flaw and repository hijacking

The Hacker News · 2026-06-04 · single-source · reporting

A flaw in GitHub Actions allows attackers to hijack repositories, highlighting the need for secure repository management practices.

AI-powered web scraping and security risks

The Hacker News · 2026-06-06 · single-source · reporting

AI-powered web scraping poses significant security risks, including the potential for data exfiltration and unauthorized access.

Ladybird bans public pull requests

Simon Willison · 2026-06-05 · single-source · research

Ladybird’s ban on public pull requests aims to mitigate supply-chain risks associated with untrusted code contributions.

Gemini hijacked and poisoned notifications

The Hacker News · 2026-06-03 · single-source · reporting

Gemini’s voice assistant can be controlled by poisoned notifications, highlighting the need for secure notification management practices.

AI Agents Gone Wrong and new security risks

The Hacker News · 2026-06-04 · single-source · reporting

AI agents pose new security risks, including the potential for unintended consequences and uncontrolled behavior.

OpenAI’s agent crashes

The Register Sec · 2026-06-04 · single-source · reporting

AI-assisted offense uses old vulns