Tiga kerentanan AI berisiko tinggi yang ditemukan di Claude.ai

Para peneliti telah mengidentifikasi tiga kerentanan berisiko tinggi di Claude.ai. Hal ini memungkinkan rantai serangan ujung ke ujung yang mengeksfiltrasi informasi sensitif tanpa sepengetahuan pengguna. Iklan Google yang sah dapat memicu eksfiltrasi data.

TechRadar melaporkan pada 19 Maret 2026, penemuan tiga kerentanan AI berisiko tinggi di Claude.ai. Cacat tersebut membentuk rantai serangan ujung ke ujung yang mampu menyusupkan informasi sensitif tanpa sepengetahuan pengguna. Khususnya, iklan Google yang sah dapat menyebabkan eksfiltrasi data tersebut. Masalah keamanan ini menyoroti risiko dalam sistem AI di mana elemen eksternal seperti iklan dapat membahayakan data pengguna.

Artikel Terkait

Illustration of Anthropic restricting Claude Mythos AI and launching Project Glasswing consortium with tech giants to address cybersecurity vulnerabilities.
Gambar dihasilkan oleh AI

Anthropic restricts Claude Mythos AI release and launches Project Glasswing over cybersecurity risks

Dilaporkan oleh AI Gambar dihasilkan oleh AI

Anthropic has limited access to its Claude Mythos Preview AI model due to its superior ability to detect and exploit software vulnerabilities, while launching Project Glasswing—a consortium with over 45 tech firms including Apple, Google, and Microsoft—to collaboratively patch flaws and bolster defenses. The announcement follows recent data leaks at the firm.

Cybersecurity researchers have identified a fraudulent website mimicking the popular AI tool Claude that delivers backdoor malware to visitors. The discovery highlights how cybercriminals are capitalizing on growing interest in artificial intelligence platforms.

Dilaporkan oleh AI

Anthropic's latest AI model Claude Mythos has leaked despite being deemed too dangerous for public release. Financial institutions now face advanced AI-powered attacks capable of exploiting unknown vulnerabilities.

Anthropic has restricted unlimited access to its Claude AI models through third-party agents like OpenClaw, requiring heavy users to pay extra via API keys or usage bundles starting April 4, 2026. The policy shift, announced over the weekend, addresses severe system strain from high-volume agent tools previously covered under $20 monthly subscriptions.

Dilaporkan oleh AI

A new Google research report indicates that the cloud security threat landscape is rapidly evolving. Hackers are increasingly targeting third parties and software vulnerabilities to breach systems. The report also notes a decline in cloud misconfigurations.

Germany's financial regulator BaFin has warned banks about risks from Anthropic's Claude Mythos AI model, following US Treasury alerts. The model autonomously detects IT vulnerabilities at scale, potentially accelerating cyberattacks. US banks are testing it amid restrictions.

Dilaporkan oleh AI

Artificial intelligence can now extract full personal profiles from Facebook advertisements more quickly and affordably than expected. Harmless ads appear to carry enough data for detailed identity mapping.

 

 

 

Situs web ini menggunakan cookie

Kami menggunakan cookie untuk analisis guna meningkatkan situs kami. Baca kebijakan privasi kami untuk informasi lebih lanjut.
Tolak