Glossary
AI Agent
An AI system, typically built on a large language model, that can autonomously plan and execute multi-step tasks — such as browsing the web, calling APIs, or running code — with limited human oversight. Their ability to take real-world actions raises distinct security concerns around prompt injection, excessive permissions, and unpredictable behavior.
// Recent coverage mentioning AI Agent
AI Agent Espionage Against Thai Ministry of Finance: Hermes YOLO Mode
Attackers leveraged the Hermes AI agent in 'YOLO mode' to perform an espionage operation targeting Thailand's Ministry of Finance. Learn TTPs and defense.
AI Agents Vulnerable to Data Leak via Poisoned MCP Tools
Microsoft warns that malicious tool descriptions for AI agents can lead to stealthy data exfiltration, bypassing security controls by mimicking routine actions.
Microsoft AutoGen Studio RCE via AutoJack Flaw — Patch Now
Microsoft patched the AutoJack vulnerability chain in AutoGen Studio, enabling remote code execution through malicious AI agent manipulation.
OpenClaw AI Agent Vulnerabilities: Code Execution & Data Leakage
New research reveals OpenClaw AI agents can be tricked into executing malicious code or exfiltrating sensitive data via seemingly benign inputs like vCards and location…
Critical OpenClaw Flaw in AI Agents: Risks and Remediation Guide
A critical OpenClaw vulnerability in widely adopted AI agents could lead to severe security risks. Understand the impact and crucial remediation steps.