Vulnerability

Microsoft launches agentic security platform designed to combat AI-based attacks
Microsoft announced on Monday the launch of Project Perception, an agentic security system designed to help defenders counter new types of attacks where malicious actors leverage AI. The company also released the AI model MAI-Cyber-1-Flash, integrated with the MDASH code scanning tool to identify and fix vulnerabilities. This move is part of an industry push to advance AI security technologies to protect enterprise IT and critical infrastructure.

Check Point SmartConsole Zero-Day Vulnerability Exploited in the Wild, Official Emergency Fix Released
Check Point Software issued a security advisory on Wednesday, disclosing a critical authentication bypass vulnerability (CVE-2026-16232) in its SmartConsole login process that is being actively exploited, affecting a small number of customers. The vulnerability allows attackers to gain full administrative access after obtaining an application login token, enabling them to modify security policies and configurations, with a severity score of 9.1/10. The official jumbo hotfix has been released to address this vulnerability and two other security issues, and the U.S. CISA has also added it to its Known Exploited Vulnerabilities catalog, requiring federal agencies to complete mitigation within a specified timeframe.

The Most Vulnerable AI Products Are Among the Most Frequently Exposed on the Internet
According to a preview of the annual internet exposure report released by internet monitoring company Censys, as of early 2026, North America hosts approximately 38% of the world's internet-exposed industrial control systems (ICS), ranking first. Meanwhile, the number of publicly accessible AI services has grown rapidly, increasing from 183,000 IP addresses in October 2025 to 294,000 by early 2026. Notably, AI products with the most severe vulnerabilities (such as Langflow and LiteLLM) saw the largest increases in internet-exposed instances, with Langflow growing by 169% over nine months, accumulating 18 vulnerabilities, of which 14 are high-severity and 4 have been exploited; LiteLLM's exposed instances nearly doubled, and it has a pre-authentication SQL injection vulnerability that is being actively exploited. The total number of ICS devices increased from 129,000 in 2024 to 138,000 by early 2026, with Asia's share rising and Europe's declining.