MacMusic  |  PcMusic  |  440 Software  |  440 Forums  |  440TV  |  Zicos
lena
Recherche

Lenovo's Lena AI chatbot had weakness that let attackers hijack sessions

lundi 18 août 2025, 19:48 , par BetaNews
Lenovo’s customer service AI chatbot Lena was recently found to contain a critical vulnerability that could allow attackers to steal session cookies and run malicious code. Cybernews researchers discovered that with just one maliciously crafted prompt, the AI could be manipulated into exposing sensitive data. Lenovo has since fixed the issue, but the case shows how chatbots can create fresh risks when not properly secured. SEE ALSO: New AI-powered Operator X streamlines offline defensive cyber missions The flaw involved cross-site scripting, an attack method that has existed for decades. Researchers showed that Lena could be tricked into producing output containing… [Continue Reading]
https://betanews.com/2025/08/18/lenovos-lena-ai-chatbot-had-weakness-that-let-attackers-hijack-sessi...

Voir aussi

News copyright owned by their original publishers | Copyright © 2004 - 2025 Zicos / 440Network
Date Actuelle
jeu. 21 août - 21:38 CEST