19/05/2026
Bình luận(0)
Singapore’s Cyber Trust Mark Is Now Law — And the Clock Is Ticking
Evvo Labs | May 19, 2026 By Evvo Labs | May 19, 2026 On March 2, 2026, Singapore’s Cyber Security Agency (CSA) made what was once a voluntary certification scheme…
Prompt Injection Attacks: How Attackers Hijack Your LLM Applications
*Published: May 19, 2026 | Category: AI Security | Reading time: 8 min* What Is a Prompt Injection Attack? A prompt injection attack is a technique where an attacker embeds…
19/05/2026
Bình luận(0)
EchoLeak: Lỗ Hổng Rò Rỉ Dữ Liệu Zero-Interaction Của Microsoft 365 Copilot (CVE-2025-32711)
# EchoLeak: Lỗ Hổng Rò Rỉ Dữ Liệu Zero-Interaction Của Microsoft 365 Copilot (CVE-2025-32711) **Ngày đăng:** 18 tháng 5, 2026 | **Mức độ nghiêm trọng:** CVSS 9.3 (Nghiêm trọng) |…
18/05/2026
Bình luận(0)
EchoLeak:Microsoft 365 Copilot 零交互数据泄露漏洞 (CVE-2025-32711)
# EchoLeak:Microsoft 365 Copilot 零交互数据泄露漏洞 (CVE-2025-32711) **发布日期:** 2026年5月18日 | **严重程度:** CVSS 9.3(严重) | **受影响范围:** Microsoft 365 Copilot(OneDrive、SharePoint、Teams) — **其他语言版本:** [English](https://evvolabs.vn/echoleak-microsoft-365-copilots-zero-interaction-data-exfiltration-cve-2025-32711/) · [Tiếng Việt](https://evvolabs.vn/echoleak-lo-hong-ro-ri-du-lieu-zero-interaction-cua-microsoft-365-copilot-cve-2025-32711/) — ## 执行摘要 Microsoft 365 Copilot 中一个关键漏洞——编号…
18/05/2026
Bình luận(0)
18/05/2026
Bình luận(0)
EchoLeak: Microsoft 365 Copilot’s Zero-Interaction Data Exfiltration (CVE-2025-32711)
# EchoLeak: Microsoft 365 Copilot’s Zero-Interaction Data Exfiltration (CVE-2025-32711) **Published:** May 18, 2026 | **Severity:** CVSS 9.3 (Critical) | **Affected:** Microsoft 365 Copilot (OneDrive, SharePoint, Teams) — **Also available in:**…
14/05/2026
Bình luận(0)
MCP 服务器安全:AI 基础设施中的隐形威胁 Evvo Labs 威胁情报团队 | 2026年5月 一个跨服务的协议缺陷。一场供应链安全事件。一个架构决策,悄无声息地渗透进每一种语言、每一个下游库,以及每一个信任 MCP 协议的项目。 — 本文另有版本: English · Tiếng Việt — 引言 2026年4月,OX Security 的安全研究员披露了一个重大发现:Anthropic 于2024年末发布的 Model Context Protocol(MCP)——被誉为 AI 界的”USB-C”——其 STDIO 传输接口存在系统性的设计级漏洞。该漏洞允许攻击者在任何运行受影响…
14/05/2026
Bình luận(0)
Bảo Mật MCP Server: Mối Đe Dọa Thầm Lặng Trong Hạ Tầng AI Của Bạn
Bảo Mật MCP Server: Mối Đe Dọa Thầm Lặng Trong Hạ Tầng AI Của Bạn Evvo Labs Threat Intelligence | Tháng 5/2026 Một lỗ hổng giao thức xuyên dịch vụ.…
14/05/2026
Bình luận(0)
MCP Server Security: The Silent Threat Inside Your AI Infrastructure
MCP Server Security: The Silent Threat Inside Your AI Infrastructure By Evvo Labs Threat Intelligence | May 2026 A cross-service protocol flaw. A supply chain event. One architectural decision that…
12/05/2026
Bình luận(0)
2026 年 5 月 4 日,Braintrust——一个被企业用于监控 AI 模型和产品的 AI 评估和可观测性平台——披露了一起重大安全事件。未经授权的行为者访问了该公司的一个亚马逊网络服务(AWS)云账户,暴露了其中存储的客户 API 密钥。 📌 本文亦有英文版:English | Tiếng Việt 发生了什么 Braintrust 于 2026 年 5 月 4 日检测到可疑活动,并立即启动了事件响应协议。公司封锁了受损的 AWS 账户,审查并限制了相关系统的访问权限,并轮换了所有内部密钥。 根据 Braintrust…
12/05/2026
Bình luận(0)
Braintrust AI Xác Nhận Vi Phạm Dữ Liệu: Doanh Nghiệp Cần Biết Gì
Ngày 4 tháng 5 năm 2026, Braintrust — một nền tảng đánh giá và giám sát AI được các công ty sử dụng để theo dõi các mô hình và…