cd/entity/Noma Security· home› entities› Noma Security
grep -l @noma security /news/*.json | wc -l → 19

Noma Security

mentions 19 type Person feed RSS

// recent coverage 19 mentions

01:10
2026-09-10
letsdatascience.com
ai-safety

Noma's researcher tells LDS the AI attack no filter can see

Noma Labs published research on September 9 describing Workflow Identity Hijacking, an AI workflow attack that requires no prompt injection because the identity triggering a workflow is decoupled from…

16:37
2026-09-04
mlq.ai
ai-safety

AIR raises $50 million to secure the tools AI agents use

AIR Security raised $50 million in two seed rounds—$10 million led by Sequoia Capital and $40 million led by Greenoaks Capital—to secure the tools and add-ons used by AI agents in enterprises. The sta…

17:17
2026-08-25
machinebrief.com
artificial-intelligence

AI is making critical infrastructure easier to attack

AI is lowering the barrier for state-backed hackers to exploit critical infrastructure, according to experts and officials, following a wave of cyberattacks on U.S. water systems and a U.K. power plan…

00:00
2026-08-22
digitalapplied.com
ai-safety

We Audited What MCP Servers Put in Your Agent's Context

A documentation audit of 19 widely deployed Model Context Protocol (MCP) servers found that 18 of 19 do not document the spec's instructions field or any free-text instruction surface, and none of the…

00:00
2026-08-18
digitalapplied.com
ai-safety

An MCP Server Bug Scores 9.0. No Fix Is Documented

CVE-2026-75130, a prompt-injection vulnerability in Context7, Upstash's MCP documentation server, scores 9.0 critical under CVSS 3.1 and 6.4 medium under CVSS 4.0, with no public fix documented for af…

03:10
2026-08-14
byteiota.com
ai-safety

AI Coding Agents Are Prompt Injection Targets — Patch Now

Three AI coding agents — Cursor, AWS Kiro, and GitHub's Agentic Workflows — were compromised this summer through prompt injection attacks, with researchers disclosing critical vulnerabilities includin…

20:15
2026-07-13
dev.to
ai-safety

Your AI code reviewer ran my malware (85% hit rate)

The AI Now Institute published a proof-of-concept attack called Friendly Fire that achieves an 85% hit rate against AI coding agents. Researchers Boyan Milanov and Heidy Khlaaf planted a malicious scr…

12:13
2026-07-08
byteiota.com
ai-safety

GitLost: GitHub Agentic Workflows Leak Private Repos

On July 7, Noma Security disclosed a critical prompt injection flaw in GitHub's Agentic Workflows, dubbed GitLost, that allows any free GitHub account to extract private repository contents by posting…

19:05
2026-07-07
sourcefeed.dev
ai-safety

Securing GitHub Agentic Workflows Against the GitLost Exploit

Security researchers at Noma Security demonstrated the GitLost exploit, which uses indirect prompt injection to trick GitHub Agentic Workflows into exfiltrating private repository data through public …

// co-occurs with top 8 entities
// topics top 6 topics