//GA4 analytics
  • Home
  • Privacy & Policy
  • Contact
  • Media
  • CratesHub.com
  • Audio on Demand
ATL FM NewsRoom
  • Home
  • Featured
    Government Targets ‘No Bed Syndrome’ with New Health Tech System

    Government Targets ‘No Bed Syndrome’ with New Health Tech System

    Fuel Prices Reduced As Cedi Stability Keeps Costs Down

    Fuel Prices Reduced As Cedi Stability Keeps Costs Down

    The National Anti-Illegal Mining Operations Secretariat (NAIMOS) has stepped up its nationwide crackdown on illegal mining, seizing equipment and making arrests as part of intensified efforts to curb galamsey activities.

    Security Threat Deepens as 94 Excavators Retrieved from Illegal Miners

    Dust on Kasoa–Winneba Road Is Causing Health Fears Now

    Dust on Kasoa–Winneba Road Is Causing Health Fears Now

    slavery

    President Mahama Justifies Resolution Against Slavery and Colonialism

    Catholic Bishops Raise New Legal Challenge in Wesley Girls Case

    Catholic Bishops Raise New Legal Challenge in Wesley Girls Case

    Blow Chem donates to Muslim Community in Cape Coast

    Blow Chem donates to Muslim Community in Cape Coast

    Ghana

    Ghana Becomes First African Nation to Sign Strategic Security Pact with EU

    Oil

    Oil price falls as Trump talks up Iran peace negotiations

  • News
    • All
    • Africa News
    • Business
    • International
    • Local News
    Shock as dozens of bodies, mostly infants, discovered in Kenya mass grave

    Shock as dozens of bodies, mostly infants, discovered in Kenya mass grave

    Col Michael Randrianirina seized power last October in the wake of youth-led protests

    Madagascar military leader dissolves government in surprise move

    US nationals urged to leave Middle East as conflict spreads

    US nationals urged to leave Middle East as conflict spreads

    Minority demands urgent review of the 2025 Common Fund plan

    Minority demands urgent review of the 2025 Common Fund plan

    Girl, 14, shot dead as South Africa’s ‘taxi wars’ hit school

    Girl, 14, shot dead as South Africa’s ‘taxi wars’ hit school

    Senegal PM proposes tougher anti-LGBT law, doubling prison terms

    Senegal PM proposes tougher anti-LGBT law, doubling prison terms

  • Politics
  • Sports
  • Entertainment
  • Technology
  • Lifestyle
  • Opinions
  • MediaAudio
    • All
    • Agyanom Afarifo
    • Cross Current
    • Sports Pai Mu Kan
    • Thursdays Sports

    Thursday Afternoon Sports

    Agoro Nie Pae Mu Ka

    Cross Current

    Agyanom Afarifo

  • Contact Us
  • About us
No Result
View All Result
  • Home
  • Featured
    Government Targets ‘No Bed Syndrome’ with New Health Tech System

    Government Targets ‘No Bed Syndrome’ with New Health Tech System

    Fuel Prices Reduced As Cedi Stability Keeps Costs Down

    Fuel Prices Reduced As Cedi Stability Keeps Costs Down

    The National Anti-Illegal Mining Operations Secretariat (NAIMOS) has stepped up its nationwide crackdown on illegal mining, seizing equipment and making arrests as part of intensified efforts to curb galamsey activities.

    Security Threat Deepens as 94 Excavators Retrieved from Illegal Miners

    Dust on Kasoa–Winneba Road Is Causing Health Fears Now

    Dust on Kasoa–Winneba Road Is Causing Health Fears Now

    slavery

    President Mahama Justifies Resolution Against Slavery and Colonialism

    Catholic Bishops Raise New Legal Challenge in Wesley Girls Case

    Catholic Bishops Raise New Legal Challenge in Wesley Girls Case

    Blow Chem donates to Muslim Community in Cape Coast

    Blow Chem donates to Muslim Community in Cape Coast

    Ghana

    Ghana Becomes First African Nation to Sign Strategic Security Pact with EU

    Oil

    Oil price falls as Trump talks up Iran peace negotiations

  • News
    • All
    • Africa News
    • Business
    • International
    • Local News
    Shock as dozens of bodies, mostly infants, discovered in Kenya mass grave

    Shock as dozens of bodies, mostly infants, discovered in Kenya mass grave

    Col Michael Randrianirina seized power last October in the wake of youth-led protests

    Madagascar military leader dissolves government in surprise move

    US nationals urged to leave Middle East as conflict spreads

    US nationals urged to leave Middle East as conflict spreads

    Minority demands urgent review of the 2025 Common Fund plan

    Minority demands urgent review of the 2025 Common Fund plan

    Girl, 14, shot dead as South Africa’s ‘taxi wars’ hit school

    Girl, 14, shot dead as South Africa’s ‘taxi wars’ hit school

    Senegal PM proposes tougher anti-LGBT law, doubling prison terms

    Senegal PM proposes tougher anti-LGBT law, doubling prison terms

  • Politics
  • Sports
  • Entertainment
  • Technology
  • Lifestyle
  • Opinions
  • MediaAudio
    • All
    • Agyanom Afarifo
    • Cross Current
    • Sports Pai Mu Kan
    • Thursdays Sports

    Thursday Afternoon Sports

    Agoro Nie Pae Mu Ka

    Cross Current

    Agyanom Afarifo

  • Contact Us
  • About us
No Result
View All Result
ATL FM NewsRoom
No Result
View All Result
--Advertisements--
Home Tech

Microsoft’s AI-Driven web initiative faces serious security flaw

Eugene Okyere by Eugene Okyere
9 months ago
in Tech
0
Microsoft’s AI-Driven web initiative faces serious security flaw
0
SHARES
Share on FacebookShare on Twitter
--Advertisements--

A recent security issue underscores the challenges of maintaining safety in the age of AI. Researchers have identified a critical vulnerability in the NLWeb protocol, which Microsoft touted just a few months ago at its Build conference. Designed to provide ChatGPT-like search capabilities across websites and apps, NLWeb has already been deployed with clients such as Shopify, Snowflake, and TripAdvisor.

The vulnerability allows remote users to access sensitive files, including system configuration details and API keys for OpenAI or Gemini. Alarmingly, it’s a classic path traversal flaw, easily exploited by simply visiting a malformed URL. While Microsoft has addressed the flaw, it raises concerns about how such a basic issue could slip through the cracks amid the company’s renewed focus on security.

--Advertisements--

“This case study serves as a critical reminder that as we build new AI-powered systems, we must reassess the impact of classic vulnerabilities, which can now jeopardize not only servers but also the ‘brains’ of AI agents,” stated Aonan Guan, a senior cloud security engineer at Wyze, who, along with Lei Wang, reported the flaw to Microsoft.

Guan and Wang flagged the vulnerability to Microsoft on May 28, shortly after NLWeb’s launch. Microsoft issued a fix on July 1 but has not provided a Common Vulnerabilities and Exposures (CVE) classification for the issue, which would help raise awareness and facilitate tracking. The researchers have urged Microsoft to issue a CVE, but the company has been hesitant.

--Advertisements--

“This issue was responsibly reported, and we have updated the open-source repository,” said Microsoft spokesperson Ben Hope in a statement to The Verge. “Microsoft does not use the affected code in any of our products. Customers utilizing the repository are automatically protected.”

ICYMI: National Tragedy: Defence Minister and Others Perish in Helicopter Crash

Guan cautioned that NLWeb users “must pull and vend a new build version to eliminate the flaw,” as any public-facing NLWeb deployment remains susceptible to unauthorized access to .env files containing crucial API keys.

While leaking an .env file can be serious for web applications, Guan believes it’s “catastrophic” for an AI agent. “These files hold API keys for LLMs like GPT-4, which serve as the agent’s cognitive engine,” he explained. “An attacker not only steals a credential but effectively usurps the agent’s ability to think, reason, and act, potentially resulting in significant financial losses from API abuse or the creation of malicious clones.”

Additionally, Microsoft is advancing native support for Model Context Protocol (MCP) in Windows, even as security researchers warn of the associated risks. If the NLWeb vulnerability is any indication, Microsoft will need to exercise caution in balancing the rapid rollout of new AI features with the imperative of prioritizing security.

SOURCE: THE VERGE

Eugene Okyere

Eugene Okyere

Listen Live

ATL FM Live Streaming
Your browser does not support the audio element.

Stay Connected test

  • 1.9k Followers
  • 1000 Subscribers
  • Trending
  • Comments
  • Latest
IEPA

IEPA Calls for Ethical AI and Data-Driven Education to Accelerate 2030 SDG Goals

March 10, 2026
Mpox Surge in Ghana: 1,038 Cases and Eight Deaths

Mpox Surge in Ghana: 1,038 Cases and Eight Deaths

March 9, 2026
The Acting Director of Public Affairs at the University of Cape Coast (UCC), Dr. Kwabena Antwi-Konadu, has refuted rumours circulating on social media regarding the circumstances surrounding the death of a student on campus.

UCC Mourns Student, Clarifies Circumstances of Tragic Accident

March 9, 2026
Education

Improving Education and Healthcare Infrastructure Remains My Priority – Cape Coast North MP

March 9, 2026
Government Targets ‘No Bed Syndrome’ with New Health Tech System

Government Targets ‘No Bed Syndrome’ with New Health Tech System

0
Fuel Prices Reduced As Cedi Stability Keeps Costs Down

Fuel Prices Reduced As Cedi Stability Keeps Costs Down

0
The National Anti-Illegal Mining Operations Secretariat (NAIMOS) has stepped up its nationwide crackdown on illegal mining, seizing equipment and making arrests as part of intensified efforts to curb galamsey activities.

Security Threat Deepens as 94 Excavators Retrieved from Illegal Miners

0
Dust on Kasoa–Winneba Road Is Causing Health Fears Now

Dust on Kasoa–Winneba Road Is Causing Health Fears Now

0
Government Targets ‘No Bed Syndrome’ with New Health Tech System

Government Targets ‘No Bed Syndrome’ with New Health Tech System

March 25, 2026
Fuel Prices Reduced As Cedi Stability Keeps Costs Down

Fuel Prices Reduced As Cedi Stability Keeps Costs Down

March 25, 2026
The National Anti-Illegal Mining Operations Secretariat (NAIMOS) has stepped up its nationwide crackdown on illegal mining, seizing equipment and making arrests as part of intensified efforts to curb galamsey activities.

Security Threat Deepens as 94 Excavators Retrieved from Illegal Miners

March 25, 2026
Dust on Kasoa–Winneba Road Is Causing Health Fears Now

Dust on Kasoa–Winneba Road Is Causing Health Fears Now

March 25, 2026

Recent News

Government Targets ‘No Bed Syndrome’ with New Health Tech System

Government Targets ‘No Bed Syndrome’ with New Health Tech System

March 25, 2026
Fuel Prices Reduced As Cedi Stability Keeps Costs Down

Fuel Prices Reduced As Cedi Stability Keeps Costs Down

March 25, 2026
The National Anti-Illegal Mining Operations Secretariat (NAIMOS) has stepped up its nationwide crackdown on illegal mining, seizing equipment and making arrests as part of intensified efforts to curb galamsey activities.

Security Threat Deepens as 94 Excavators Retrieved from Illegal Miners

March 25, 2026
Dust on Kasoa–Winneba Road Is Causing Health Fears Now

Dust on Kasoa–Winneba Road Is Causing Health Fears Now

March 25, 2026

ATL FM LIVE

ATL FM Live Streaming
Your browser does not support the audio element.

We serve you with the most credible and authentic news covering articles, campus, regional, national and international stories.

Follow Us

Browse by Category

  • Africa News
  • Agyanom Afarifo
  • Business
  • Cross Current
  • E-News
  • Featured
  • Foreign News
  • Foreign Sports
  • International
  • Lifestyle
  • Local News
  • Local Sports
  • Media
  • News
  • Opinions
  • Politics
  • Sports
  • Sports Pai Mu Kan
  • Tech
  • Thursdays Sports
  • Uncategorized
  • Video

Recent News

Government Targets ‘No Bed Syndrome’ with New Health Tech System

Government Targets ‘No Bed Syndrome’ with New Health Tech System

March 25, 2026
Fuel Prices Reduced As Cedi Stability Keeps Costs Down

Fuel Prices Reduced As Cedi Stability Keeps Costs Down

March 25, 2026
  • Home
  • Privacy & Policy
  • Contact
  • Media
  • CratesHub.com
  • Audio on Demand

© 2020 ATL FM NEWS - Your source of authentic news. Powered by ATL FM IT Dept

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
--Advertisements--

Add New Playlist

No Result
View All Result
  • About us
  • Audio on Demand
  • Contact Us
  • Home
  • Privacy & Policy

© 2020 ATL FM NEWS - Your source of authentic news. Powered by ATL FM IT Dept