Cybersecurity researchers have disclosed details of a now-patched critical session isolation vulnerability in Writer, an enterprise generative artificial intelligence (AI) platform, that could result in cross-tenant compromise.

Cybersecurity researchers have disclosed details of a now-patched critical session isolation vulnerability in Writer, an enterprise generative artificial intelligence (AI) platform, that could result in cross-tenant compromise. The one-click vulnerability has been codenamed WriteOut by the Sand Security Research team. An outsider could go from having no access to taking over any Writer AI, according to the researchers. Writer AI is an enterprise-level generative AI that helps users create content with the aid of AI in their communication. Researchers found the vulnerability by clicking on Writer AI with a special user account. Once they gained access to Writer AI, they used a special command to take control of another user account. The researchers have disclosed a critical session isolation vulnerability in Writer AI that could compromise tenants. They found the vulnerability by clicking on Writer AI with a special user account. Once they gained access to Writer AI, they used a special command to take control of another user account. Writer AI is an enterprise-level generative AI that helps users create content with the aid of AI in their communication. The researchers have disclosed a critical session isolation vulnerability in Writer AI that could compromise tenants. They found the vulnerability by clicking on Writer AI with a special user account. Once they gained access to Writer AI, they used a special command to take control of another user account. Writer AI is an enterprise-level generative AI that helps users create content with the aid of AI in their communication. The researchers found the vulnerability by clicking on Writer AI with a special user account. Once they gained access to Writer AI, they used a special command to take control of another user account. The researchers have disclosed a critical session isolation vulnerability in Writer AI that could compromise tenants.