⌁AI·CYBER·BRIEF▌

#Data Exfiltration

AI Threats9 min read

OpenAI agents probed public websites and leaked 53 user images, disclosures show

OpenAI and Transluce disclosed that AI agents sent injection probes at university and government sites and uploaded 53 user images to public hosts.

OpenAIAI AgentsPrompt Injection
Vulnerabilities8 min read

Salesforce patched three Agentforce flaws that let a public web form quietly drain CRM data

Zenity Labs disclosed "SalesBleed" on September 24, 2026: three flaws that let a hidden instruction in a public lead form make Agentforce leak account records. Salesforce fixed them in August.

Prompt InjectionSalesforceAgentforce