Loading...
Please wait while we get things ready for you
Please wait while we get things ready for you
A critical one-click vulnerability in Atlassian's Rovo AI assistant let attackers steal enterprise data from Jira, Confluence, and SharePoint with a single malicious link. Dubbed RovoBlast, the flaw exploited a URL parameter to inject attacker-controlled prompts directly into an authenticated user's AI session, requiring no jailbreak or permission bypass. The incident underscores the emerging attack surface of enterprise AI tools that autonomously access sensitive...
Ask AI about this