Hacking An AI Children’s Toy: Remote Access to Every Conversation · Joseph Thacker
My neighbor texted me the other day and said she’d pre-ordered two AI toys for her kids that supposedly used an LLM to dynamically generate…
My neighbor texted me the other day and said she’d pre-ordered two AI toys for her kids that supposedly used an LLM to dynamically generate…
Wedding This past weekend I attended a friend’s wedding, and it was heartwarming. The couple have been together over a decade, and had many…
A few weeks ago I wrote about how AI is going to impact bug bounty. That post was mostly predictions. This one is about what’s…
I have been thinking about the downstream impacts of AI systems having strong cybersecurity capabilities. The United States has a lot of critical infrastructure that…
I’ve always been a fan of levelsio. He’s a serial entrepreneur who has launched a bunch of SaaS and AI products, mostly in public, one…
Over the last few weeks, we’ve explored what AI is changing in security: discovery is faster (Vulnpocalypse now?), volume is higher (Common AI misconceptions debugged!),…
Cookies are one of the most fundamental building blocks of the modern web, and yet they are often overlooked from a security perspective. When misconfigured,…
Here’s a more logical and less emotional way to look at what’s happening with the chaotic regulation of these AI models… It took decades/centuries to…
Welcome to the latest edition of Bug Bytes! In this month’s issue, we are featuring: A 10-year-old pre-auth RCE in phpBB Earning $500K hacking Google…
I’m getting more worried, and more frustrated, about this new phase of AI disillusionment. Some of it is fair. Hundreds of billions are sloshing around…
18 kits, a 37x spike in detections, and every major AiTM vendor adding it to their platform. Device code phishing has gone from espionage-grade to…
Scaling application security and attack surface monitoring inside a single enterprise is a massive headache. In June 2026, the Department for Science, Innovation and Technology…