TeamViewer users on macOS must expect that attackers may be able to bypass their 2FA protection measures under certain conditions and gain remote access.
Anthropic Claude session contents were indexed by Google and became publicly accessible, highlighting a fundamental data leakage risk when using public AI platforms.
A missing prompt injection protection measure in the Azure DevOps MCP server allows hidden comments to redirect control flow of AI agents and trigger data leaks.
A targeted gesture combination on the lock screen bypasses authentication and access restrictions of Google Gemini, enabling message sending and data access without device unlock.
GPT-5.6 incorrectly deletes the $HOME environment variable instead of a temporary directory when operating in full-access mode without sandbox protection, prompting OpenAI to announce technical safeguards.