أخطاء أجهزة الوسائط من AWS، جوجل وورترال تسمح للعدو بالتحفيز على أدوات الوسائط دون تنظيم النموذج
عندما تم الكشف عن ثغرات في البنية التحتية لمساعدات الوسائط من Amazon Web Services (AWS)، Google، و Vercel، يمكن للعدو الوصول إلى أدوات الوسائط دون تحقق إذا كان النموذج قد أجاز ذلك.
لماذا يهم هذا الخبر؟
عندما تم الكشف عن ثغرات في البنية التحتية لمساعدات الوسائط من Amazon Web Services (AWS)، Google، و Vercel، يمكن للعدو الوصول إلى أدوات الوسائط دون تحقق إذا كان النموذج قد أجاز ذلك.
سياق الخبر
Security flaws in agent infrastructure from Amazon Web Services (AWS), Google, and Vercel let untrusted or forged instructions reach an agent's tools with no check that a model turn had authorized them. In several of the attack paths, the model never ran at all, so system prompts, content filters, and model-level guardrails never got a chance to intervene. The affected products include Amazon
فتح الخبر الأصلي