LIVE FEED
CRITICAL AI-Generated Scripts Exploit Siemens S7 PLCs in US Infrastructure // FIRST LOOK CUSTODY Framework Ships to Constrain AI Agents in Enterprise Networks // FIRST LOOK OpenAI Launches Private Safety Processing for Zero-Data Monitoring // FIRST LOOK smolvm Brings Hardware-Isolated Sandboxing for AI Code Execution // FIRST LOOK OpenAI Adds Mandatory RL Training Safeguards for Frontier Models // HIGH AI Mind Viruses Spread Between Agents via Prompt Files // FIRST LOOK Fortinet Acquires Virtue AI to Secure AI Models and Agents // HIGH CVE-2026-24301: Microsoft Copilot One-Click Data Exfiltration // CRITICAL CVE-2026-64849: MLflow SSRF Exploited to Steal Cloud Credentials // HIGH CoSnitch Attack Forces Copilot to Expose Its Own Architecture //
NVIDIA and Hugging Face Launch GR00T 1.7 Robot Model

NVIDIA and Hugging Face Launch GR00T 1.7 Robot Model

FIRST LOOK ATLAS OWASP HIGH Significant risk · Prioritise patching ▲ 7.8 NVIDIA AI Blog

NVIDIA and Hugging Face have integrated the Isaac GR00T 1.7 vision-language-action model, Isaac Teleop framework, and a 350,000-trajectory open dataset into the LeRobot open-source robotics library, creating an end-to-end open pipeline for training and deploying physical AI systems. This dramatically lowers the barrier to fine-tuning and deploying robot foundation models, expanding the attack surface across the full ML supply chain — from poisoned community datasets to adversarially crafted demonstrations used in teleop data collection. Defenders responsible for robotics deployments must now contend with a large, loosely governed open-source ecosystem where compromised models or datasets can directly translate to unsafe physical-world behaviour.

◉ AI THREAT BRIEFING

Stay ahead of the threat.

Twice-weekly digest of critical AI security developments — every story mapped to MITRE ATLAS and OWASP LLM Top 10. Free.

No spam. Unsubscribe anytime.