Fast injection flaw in Vanna AI exposes databases to RCE attacks

Prompt Injection Flaw

Cybersecurity researchers have discovered a high-severity vulnerability in the Vanna.AI library that could be exploited to create remote code execution vulnerabilities via prompt injection techniques. The vulnerability, tracked as CVE-2024-5565 (CVSS score: 8.1), involves a case of fast injection in the “ask” function that can be abused to trick the library into executing arbitrary commands, … Read more

Google fixed a critical security flaw for Pixels, but other Android phones were left hanging

Android 15 logo on Pixel 8

What you need to know Google fixed a serious security issue for Pixel devices last week with the release of the June Pixel Feature Drop. While the bug affects more Android devices, non-Pixel devices will have to wait for Android 15. This decision leaves Android devices vulnerable to an actively exploited vulnerability for months. Last … Read more

A major security flaw in Windows allows hackers to infect your PC over Wi-Fi. Update right now

LG Gram 17 Pro (2023) review unit on table outdoors running Windows 11

Hackers often take advantage of this malicious documents or illegal software as a way to get their malware onto vulnerable devices, but a new Windows bug could let them do this over Wi-Fi. As reported by Forbesthis new Wi-Fi vulnerability (tracked as CVE-2024-30078) affects all versions of Windows and, if exploited, could be used by … Read more