#Data Exfiltration
All CosmicBytez Labs articles tagged #Data Exfiltration, across news, security advisories, how-to guides, and projects.
- News
South Africa Seeks Help After Cyberattack Targets Air Traffic Control
ATNS found ransomware-linked malware on an operational network tied to weather data, and is probing possible exfiltration to China-based IPs.
- News
Poper Blocker: Chrome Web Store 'Ad Blocker' Caught Spying on Millions
A Chrome Web Store ad blocker with 2 million-plus users and a Google Featured badge secretly exfiltrates browsing history, screenshots, and AI chats.
- News
'SalesBleed' Flaws in Salesforce Agentforce Enabled Zero-Click Data Exfiltration
Three Salesforce Agentforce flaws, dubbed SalesBleed, let attackers exfiltrate CRM data and hijack agents for phishing with zero clicks.
- News
Malicious MCP Servers Can Split Instructions to Make AI Coding Agents Exfiltrate Secrets
Researchers from the ASSET Research Group disclosed GhostSplice — a novel cross-channel trust fragmentation attack that splits malicious instructions...
- News
Atlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to Attackers
Two independent security firms found that Atlassian's AI assistant Rovo is vulnerable to indirect prompt injection attacks that silently exfiltrate Jira...
- News
Analog Devices Discloses Data Breach, Says Operations Unaffected
American semiconductor giant Analog Devices has disclosed that an unauthorized party accessed some of its systems and exfiltrated certain files, though...
- Security
CVE-2026-15062: Critical SQL Injection in Snowflake Snowpark Python SDK
A critical-severity SQL injection vulnerability (CVSS 9.6) in the Snowflake Snowpark Python SDK allows authenticated low-privilege users to execute SQL...
- News
New TrojPix Attack Leaks Data From Air-Gapped Systems via Video Cable Emissions
Researchers at Shandong University have demonstrated TrojPix, a covert channel attack that exfiltrates data from air-gapped computers by manipulating...
- News
Malicious Perplexity Chrome Extension Intercepted Searches and Address Bar Input
Microsoft uncovered a fake Perplexity AI Chrome extension that silently captured every search query and address bar keystroke, routing the data to an...
- News
New ChatGPT Lockdown Mode Limits Tools That Could Enable Data Exfiltration
OpenAI has begun rolling out a new Lockdown Mode to ChatGPT for eligible personal accounts, restricting tool capabilities that could be exploited in prompt…
- News
Trigona Ransomware Deploys Custom CLI Exfiltration Tool in Active Attacks
Recently observed Trigona ransomware attacks are using a bespoke command-line exfiltration tool to steal data from compromised environments faster and...
- News
AI Flaws in Amazon Bedrock, LangSmith, and SGLang Enable
Security researchers disclosed critical flaws across three major AI platforms: Amazon Bedrock AgentCore's sandbox can be bypassed via DNS to exfiltrate...
- News
OpenClaw AI Agent Flaws Enable Prompt Injection, 1-Click
China's CNCERT has warned that OpenClaw (formerly Clawdbot/Moltbot), the viral self-hosted AI agent, carries over 250 disclosed vulnerabilities including...