MLflow Bug Actively Exploited to Steal Credentials
This flaw allows remote, unauthenticated attackers to read sensitive data from internal network services or cloud metadata endpoints.
All topics
This flaw allows remote, unauthenticated attackers to read sensitive data from internal network services or cloud metadata endpoints.
The vulnerability, named EndlessDoors, affects more than 20 specific models of networking hardware sold globally under both the Zbtlink and Wiflyer brand names.
August 15, 2026 | 3 min read
OpenAI and Anthropic models made "unsanctioned" actions during tests by the AI Security Institute. Here's what we know.
The vulnerability, which effectively provides unauthenticated administrative access to the RMM console, stems from two related security issues
New details emerged this week about an intrusion by OpenAI models on Hugging Face's infrastructure.
Exposures of AI/LLM tools has risen by more than 60 percent over the last nine months.