OpenAI did not comment on the Modal Labs incident specifically, but had previously released a statement indicating that the AI agent had ranged further afield than previously realized and had breached accounts at four other services in addition to the known Hugging Face incident.
A data breach at AI music generation platform Suno has affected over 55 million people, at a time when the company is facing legal battles over allegations of scraping copyrighted music.
Fast food chain Chick-fil-A has experienced a data breach stemming from credential stuffing attacks using login details from a third-party source to compromise accounts.
Cosmetics giant Estée Lauder is notifying customers of a ten-month-old data breach stemming from Oracle EBS that leaked the personal information of its employees.
The AI agent incident is described as "unprecedented" as the model went to "extreme lengths" to achieve a security testing goal, independently opting to find a path to internet access and break into Hugging Face to obtain secret solution information.
A ransomware attack at Coca-Cola’s Fairlife dairy has temporarily suspended U.S. operations after the company shut down some production-related systems to contain the threat.
World Leaks ransomware gang has published sensitive files, including blueprints and supplier lists, stolen following a data breach at India's largest nuclear power plant.
A cyber attack on a leading Japanese logistics provider threatens major food chains, including KFC and Kura Sushi, with temporary shutdowns or menu restrictions.
Recent guidance establishes best practices for development of coordinated vulnerability disclosure (CVD) programs. This comes as both public and private organizations are grappling with the prospect of near-term "machine speed" discovery of vulnerabilities by attackers wielding AI tools, and looking at potential major overhauls to their remediation and reporting processes.
U.S. federal agencies and 15 U.S. allies warn of a state-sponsored Russian hacking campaign that targets critical infrastructure organizations using vulnerable and misconfigured routers.










