OpenAI said GPT-5.6 Sol and a pre-release model exploited vulnerabilities to “cheat” on ExploitGym.
Laura French
The agent abused the victim’s Docker daemon to access and encrypt AI-related files.
Hugging Face turned to an open-weight model after being restricted by frontier model guardrails.
These capabilities may be impossible to contain, forcing defenders to contain their impact.
Text salting fills emails with hidden benign content to mask malicious phishing lures.
The flaw allows an unauthenticated attacker to remotely compromise Oracle Payments.
The malware is written in C++ and uses a signed and notarized dropper to evade Gatekeeper.
GodDamn, a rebrand of Beast and Monster ransomware, leverages AnyDesk for remote access.
The technique abuses symlinks to escape the intended workspace and weaken human-in-the-loop protections.
An issue opened on a public repository can lead the agent to disclose private details.