Google rolled out a feature Thursday that let users run Nano Banana 2, its AI image generator, inside Google Earth and superimpose generated imagery over real satellite maps, per TechCrunch. Critics, including a BBC journalist who posted about it the same day, said the prompt based tool would make it easy to fabricate visual evidence in an app journalists and researchers treat as a source of record. Google scrapped the feature a day later, saying it had seen geospatial professionals put it to useful purposes but had also seen people share generated imagery that appeared to violate its policies. "We're rolling back this feature in Google Earth while we work on implementing stronger guardrails," the company said.
Read at TechCrunch ↗
Palo Alto Networks' Unit 42 researchers found a China based threat actor, using the aliases knaithe and KnYuan, running DeepSeek's model behind Hermes Agent, an open source framework that can execute terminal commands and reach the internet, per BleepingComputer. The researchers got visibility after Hermes accidentally served the attacker's home directory as a web server, exposing API keys, exploit scripts, target lists, shell history and AI attack logs. It pulled a public demonstration exploit for CVE-2026-33017, identified 84 exposed Langflow servers through the FOFA asset search engine and classified them as unexploitable. It then switched to the n8n workflow automation platform, where it found more than 647,000 exposed instances and chained CVE-2026-21858 with CVE-2025-68613. None of the attempts compromised a target, because the file upload forms the exploit needed turned out to require authentication. "While the observed campaign had limited impacts, the workflow confirms a functional, end-to-end autonomous offensive capability," Unit 42 said.
Read at BleepingComputer ↗