We scanned 1,000,000 exposed AI targets and it's essentially the S3 bucket crisis all over again.
What we found in the wild:
-
1,652 Ollama APIs with no authentication, out of 5,200+ exposed to the internet
-
92 Flowise instances exposing agentic workflows, prompts, and integrations
-
Claude-powered "gooner caves" leaking chat histories and API keys in plaintext
We aren't even talking about vulnerabilities here - it's just a case of catastrophic defaults.
Hosting an AI agent without a password is an open door for people to get free access to your paid models, jailbreak them for harmful content, or scrape credentials and connected integrations. We broke down the full research and the sheer volume of exposed agents we found over on the blog.
Give it a read here: From enterprise chatbots to gooner caves: exposed AI infrastructure is rampant
Hello everyone!
I'm creating a new workflow, but I can't find the "Add tag to detection" action.
It may be a dumb question, but I've tried searching for it everywhere.
I can see it in the Content Library, just like any other action, but it simply doesn't appear inside my workflow. I've already disabled all the filters in the search box within the workflow.
Below is a link to screenshots showing the issue:
Am I missing something? Any help would be appreciated.