Mistral AI s’est fait hacker. Environ 5 Go de données internes seraient actuellement en vente pour 25 000 $. Mistral a confirmé un incident de sécurité. Tout serait parti d’une attaque « supply chain » via un service tiers, notamment une compromission liée à TanStack, un
SECURITY
-

Perplexity is building a secure agent runtime sandbox
By
–
Perplexity is building one of the most secure scalable agent runtime sandboxes in the market right now. A blog post on how we: 1. Handle proxy API keys for agents securely 2. Run safety detection for all content accessed by agents 3. Encrypt data passed via connectors to
-
Mythos AI model solves UK AISI cyber range benchmarks
By
–
The UK AISI found Mythos Preview is the first model to solve both their cyber ranges end-to-end. No model had ever solved the AISI’s “Cooling Tower” cyber range before. We're getting it to defenders as fast as we responsibly can. More to come on our Glasswing work soon.
-
Privacy Concerns Regarding Data Retention in AI Chatbot Conversations
By
–
The promise was a private brain to think out loud with. The reality is a logged conversation on someone else's server. Whatever you typed last year, someone, somewhere can probably still read. Send this to anyone who tells a chatbot things they would not tell a friend.
-
Security Risks of Employee AI Tool Usage
By
–
Here is what most people do not realize. A LayerX survey found 77% of employees paste company info into AI tools. 82% use personal accounts, not enterprise versions. Personal accounts get subpoenaed. Personal accounts get breached. Personal accounts get indexed.
-
Major Data Leak Affects 25 Million Users of AI Chat App
By
–
A separate AI app called Chat & Ask AI leaked 300 million messages from 25 million users in February. Entire chat histories. Sitting on a misconfigured server. Open to anyone with the URL. Whatever you typed. Whatever you uploaded. All of it.
-
Security flaw allowed data exfiltration via hidden ChatGPT prompts
By
–
It is not one feature. In February, Check Point Research found a flaw where a single hidden prompt could silently send your ChatGPT conversation and uploaded files to an attacker's server. ChatGPT itself would tell you nothing was shared. OpenAI patched it after.
-
Perplexity search data leak incident leads to feature removal
By
–
It happened because of the Share button. People clicked it thinking the link was private. It was not. Google crawled the pages. Perplexity researchers found thousands. OpenAI killed the feature after the story broke. The old conversations are still online.
-
Privacy Risks: Google Indexing of ChatGPT Conversations
By
–
You think your ChatGPT chats are private. Google indexed thousands of them last year. "How do I manage depression without medication"
"How to leave my husband"
"Severance terms for my employees" You are not talking to a chatbot. You are typing on the internet. -
Outils déterministes pour plus de sécurité des agents
By
–
there are many agent use cases locked behind "what if" fears because after we give a tool to an agent, we're relying on the prompt to limit behavior tools like @denieddotdev allow teams to manage capability as a separate deterministic layer more safety enables more
