DAILY WORKFLOW ARCHIVE

2026-09-10 AI 与数据工作流雷达

候选线索仅供信息发现,请在引用或实践前回到原始来源核验。

2026-09-10 AI 与数据工作流雷达

来源:The Hacker News。这里只保留与 AI 编程、数据/研究工作流、安全边界或可信工程直接相关的高信号线索;不抓取全文,也不代表事实核验或产品推荐。

Infostealer Logs Expose Replayable AI Tokens That Can Bypass MFA

主题:数据工作流与自动化 / AI 与数据安全
来源日期:2026-09-09
相关性分数:8
候选状态:待评估
为什么值得看:命中与临床统计、研究工程或可信 AI 工作流直接相关的高信号主题;仍需阅读全文并回到官方文档、原始研究或供应商公告交叉核验。

Cybercriminals are hijacking artificial intelligence (AI) user accounts via information stealer logs to create “stolen keys” that grant illicit access to tools from model providers like Google, Anthropic, and others.  Information stealers like Lumma Stealer or Vidar are equipped to harvest a wide range of data from compromised systems. This can include credential, session tokens, and API keys. Once the data is stolen, threat actors who have purchased access to these off-the-shelf offerings put them up for sale on underground forums in the form of stealer logs to enable follow-on attacks. “Session tokens and API keys are sought specifically by threat actors because it is often possible to replay those secrets and bypass credential-based authentication,” Jeremy Kirk, director of threat intelligence at Okta, said in a report shared with The Hacker News. “Once successfully replayed, a threat actor is effectively logged in to an LLM service without actua…

可转化方向:评估对可复现分析、依赖管理、数据质量或研究工程流程的启发;评估 AI 辅助研究和编程中的隐私、凭据、供应链与安全边界

前往 The Hacker News 阅读原文


DeepSeek Harness Flaw Let AI Agents Disable Their Own File Sandbox Without Approval

主题:AI 编程与开发工具
来源日期:2026-09-09
相关性分数:4
候选状态:待评估
为什么值得看:命中与临床统计、研究工程或可信 AI 工作流直接相关的高信号主题;仍需阅读全文并回到官方文档、原始研究或供应商公告交叉核验。

A flaw in DeepSeek Harness , DeepSeek’s open-source tool for running AI coding agents on a developer’s machine, let a sandboxed agent turn off its own sandbox with a single command. The tool runs an agent’s commands inside an operating-system sandbox, so that an agent working on untrusted files cannot write outside its workspace. The agent could remove that limit by calling the tool’s own web interface on the same machine, and its commands would then run outside the sandbox without an approval prompt. It worked on a default installation until DeepSeek fixed the tool on August 27, and it required attacker-supplied text that the agent read to prompt it to make the call. The flaw is tracked as CVE-2026-82533 . VulnCheck, which assigned the identifier,  published the record  on September 8 and rated the flaw 9.4 out of 10. OX Research , the security firm that reported the flaw, said one shell command was enough. The command invoked the tool’s local interface an…

可转化方向:评估是否能转化为临床编程、代码审查、测试或自动化实践

前往 The Hacker News 阅读原文


U.S. Agencies Accuse China AI Firms of Distilling Claude, GPT, Gemini, and Grok

主题:AI 工程与可信性
来源日期:2026-09-09
相关性分数:2
候选状态:待评估
为什么值得看:命中与临床统计、研究工程或可信 AI 工作流直接相关的高信号主题;仍需阅读全文并回到官方文档、原始研究或供应商公告交叉核验。

U.S. cybersecurity and intelligence agencies have accused China-based artificial intelligence (AI) companies of conducting “systematic extraction” of proprietary functionalities and capabilities of American frontier models through distillation attacks. The activity has been described as occurring at an industrial-scale and one that forms the “core” of their AI development strategy, according to a bulletin released by the National Security Agency (NSA), the Cybersecurity and Infrastructure Security Agency (CISA), and the Federal Bureau of Investigation (FBI). “While ‘distillation’ is recognized as a legitimate and useful technique in AI research, China-based AI companies are engaging in aggressive, malicious, and targeted distillation activities at an industrial scale that extract restricted proprietary functionalities and capabilities of U.S. frontier AI models,” the authoring agencies said . The joint advisory noted that Chinese AI firms l…

可转化方向:关注模型评估、可信 AI、监控与工程治理对实际 AI 工作流的启发

前往 The Hacker News 阅读原文