The AI Platform Was the Door. The Cloud Identity Was the Prize.

Attackers are exploiting MLflow CVE-2026-64849 to turn exposed AI engineering services into a route to cloud metadata, internal systems and workload identity.

Attackers are exploiting MLflow CVE-2026-64849 to turn exposed AI engineering services into a route to cloud metadata, internal systems and workload identity.

Sakura Internet's investigation expanded from 583 rented-server accounts to a separate sales system holding 1.36 million customer accounts. Access was possible, but data exfiltration was not confirmed.

ExfilSquad’s leaked data points to exposed Dataverse records, not a confirmed Dynamics exploit. Anonymous low-code permissions can be the entire breach path.

Business intelligence platforms are rarely treated like privileged infrastructure. They sit behind dashboards, charts and reports. They are used by analysts, managers and finance teams. They do not look like identity systems, hypervisors or database servers, so they are often…

Google found an agentic attack framework managing more than 23,800 harvested secrets. In a separate operation, another framework built and launched a credential campaign in under six hours.

Apple extended Private Cloud Compute onto Google Cloud and NVIDIA hardware, turning attestation, independent roots of trust and public verification into the privacy boundary.