Google's AI programming tool Antigravity has been found to have a serious security vulnerability that could be exploited to execute malicious code.

Google's AI programming tool Antigravity has been found to have a serious security vulnerability that could be exploited to execute malicious code.


Google's AI programming tool "Antigravity," based on Gemini, was found to have a serious security vulnerability within 24 hours of its release. Security researcher Aaron Portnow discovered that by modifying the tool's configuration settings, attackers could induce the AI ​​to execute malicious code, creating a "backdoor" on the user's computer, which could then be used to install malware, steal data, or even launch ransomware attacks. The vulnerability affects both Windows and Mac systems; users only need to run the exploit code once to gain system access.

Portnow pointed out that this vulnerability exposes the lack of adequate security testing by companies before releasing AI products. He emphasized that "AI systems are given huge trust assumptions but have almost no security boundaries," and although he submitted a vulnerability report to Google, he has yet to receive a patch. Google acknowledged that, in addition to this vulnerability, Antigravity also has two other vulnerabilities that can be exploited to access user files. The public disclosure of multiple vulnerabilities by cybersecurity researchers has raised questions in the industry, suggesting that Google's security team was negligent in its product release preparations.

Experts analyze that AI programming tools are generally vulnerable, often based on outdated technologies and designed with security flaws. Because these tools typically have extensive data access permissions, they are highly susceptible to becoming targets for hackers. As AI technology rapidly develops, similar security risks are continuously increasing. Portnow recommends that Google add at least an extra warning when Antigravity executes user code, emphasizing that AI tools must be equipped with sufficient security mechanisms to prevent malicious exploitation while achieving automation.

OpenAI third-party service provider hacked, some user data leaked from developer platform.

At 2:00 AM, the OpenAI security team received an urgent notification from Mixpanel, a third-party data analytics service provider, stating that its system used

OpenAI third-party service provider hacked, some user data leaked from developer platform.

Google's AI programming tool Antigravity has been found to have a serious security vulnerability that could be exploited to execute malicious code.

Google's AI programming tool "Antigravity," based on Gemini, was found to have a serious security vulnerability within 24 hours of its release. Security re

Google's AI programming tool Antigravity has been found to have a serious security vulnerability that could be exploited to execute malicious code.

Huawei Mate X7 foldable flagship phone scheduled for release in Dubai, starting at 12,999 yuan.

Huawei officially announced today that its latest foldable flagship phone, the Mate X7, will be officially launched in Dubai on December 11, 2025, marking a ne

Huawei Mate X7 foldable flagship phone scheduled for release in Dubai, starting at 12,999 yuan.

Opera Neon browser update: 1-minute deep study mode launched, integrating Gemini 3 Pro and document AI manipulation.

Opera has released a major update to its AI browser, Neon, introducing an innovative "1-Minute Deep Dive" mode designed to balance the needs of quick queries a

Opera Neon browser update: 1-minute deep study mode launched, integrating Gemini 3 Pro and document AI manipulation.

Sony's new product launch event is scheduled for December 2nd; the full-frame mirrorless camera Alpha 7 V may be unveiled.

Sony China announced yesterday via its official Bilibili account that it will hold a new product launch event for the Sony α series on December 2nd at 10

Sony's new product launch event is scheduled for December 2nd; the full-frame mirrorless camera Alpha 7 V may be unveiled.

Singapore's AISG releases next-generation large language model Qwen-Sea-Lion-v4, achieving 8.4% superior performance in Southeast Asian languages.

Singapore's AISG today officially released its next-generation large-scale language model, Qwen-Sea-Lion-v4, whose underlying architecture has been fully u

Singapore's AISG releases next-generation large language model Qwen-Sea-Lion-v4, achieving 8.4% superior performance in Southeast Asian languages.

Apple sues India over new antitrust law, potentially avoiding a massive $38 billion fine.

Apple has filed a lawsuit in the Delhi High Court, challenging India's newly revised antitrust fines law to avoid a potential fine of up to $38 billion (ap

Apple sues India over new antitrust law, potentially avoiding a massive $38 billion fine.

TSMC sues former executive Luo Weiren for allegedly leaking confidential information; Intel vehemently denies the allegations.

On November 25, global semiconductor giant TSMC officially filed a lawsuit against its former senior vice president, Luo Weiren, accusing him of potentially le

TSMC sues former executive Luo Weiren for allegedly leaking confidential information; Intel vehemently denies the allegations.

Alibaba's 1000 Questions visual model tops the spatial reasoning leaderboard, surpassing Gemini and GPT.

In the newly released SpatialBench benchmark, Alibaba's Qwen3-VL and Qwen2.5-VL visual models secured the top two spots with scores of 13.5 and 12.9 respec

Alibaba's 1000 Questions visual model tops the spatial reasoning leaderboard, surpassing Gemini and GPT.

Google has announced its timeline: Google Assistant will officially cease operations on March 31, 2026, with Gemini taking over to lead the future.

Google recently announced the final transition timeline for its voice assistant service via its official blog, marking the countdown to the Google Assistant er

Google has announced its timeline: Google Assistant will officially cease operations on March 31, 2026, with Gemini taking over to lead the future.

OpenAI upgrades ChatGPT voice mode: The main interface integrates multimodal interaction and supports real-time visual content display.

Recently, OpenAI released an official blog post announcing the full integration of ChatGPT's "Voice Mode" into the main chat interface, marking another ste

OpenAI upgrades ChatGPT voice mode: The main interface integrates multimodal interaction and supports real-time visual content display.

Dell releases Q3 FY2026 financial results: AI-driven revenue hits record high of $27 billion.

Dell Technologies (DELL) reported its fiscal third-quarter 2026 results on Tuesday, showing revenue of $27 billion (approximately RMB 191.748 billion), a recor

Dell releases Q3 FY2026 financial results: AI-driven revenue hits record high of $27 billion.

Kunlun Yuan AI releases BaiZe-Omni-14b-a2b, a multimodal fusion model whose multimodal capabilities surpass GPT-4.

At the 2025 World Computing Conference, Kunlun Yuan AI officially launched BaiZe-Omni-14b-a2b, a multimodal fusion model based on the Ascend platform, marking

Kunlun Yuan AI releases BaiZe-Omni-14b-a2b, a multimodal fusion model whose multimodal capabilities surpass GPT-4.

Musk announced that Grok 5 will challenge top League of Legends teams: a fair battle between AI and human esports.

Elon Musk posted on the X platform yesterday that his xAI company's Grok 5 AI model will challenge top human teams in League of Legends in 2026, setting st

Musk announced that Grok 5 will challenge top League of Legends teams: a fair battle between AI and human esports.

Assassin's Creed: Shadow receives version 1.1.6 update and will feature a collaboration with Attack on Titan.

Ubisoft has announced that Assassin's Creed Shadows will receive a 1.1.6 update on November 25, 2025, at 10 PM Beijing time. This update will include a col

Assassin's Creed: Shadow receives version 1.1.6 update and will feature a collaboration with Attack on Titan.