August 13, 2026
Atlassian AI Rovo Tricked Into Sending Jira and Confluence Data to Attackers
PromptArmor, an AI security firm, has done some security tests on Atlassian Rovo.

By Stanislav Klevtsov
1 min read
They hid malicious instructions in content Rovo reads. An uploaded file was enough to make the assistant gather internal data and send it out through a URL request, with no separate approval step.
As per researchers, the chain still worked even with Rovo's web-search option switched off.
Another firm, Varonis Threat Labs, put the malicious instructions in a link. Atlassian Rovo would preload malicious instructions from a URL into Rovo Chat; in this case, an authenticated user had to approve the run to execute them.
Pay attention to AI usage, have security controls around it, and monitor reports such as this. You can never be 100% secure, but at least you can adjust in time.
Other top news
โ Google rolls out OSS-Fuzz with CodeMender for automated code security. OSS-Fuzz's automated pipeline works to find the root cause of security issues, develop a fix, and propose a high-quality patch, easing the burden on maintainers and reducing the time it takes to deploy a fix.
โ An interesting attack chain where Iranian MOIS-linked malware uses a Microsoft 365 calendar for C2 infrastructure. Pay attention.
One AI leaks data; another prepares security patches. Do you trust AI with your security? ๐ค
Top CVE last week
- VMware ESXi 9.0 RCE (CVE-2026โ47876, CVE-2026โ41703)
- JetBrains TeamCity RCE (CVE-2026โ63077, CVE-2026โ65907)
- Jenkins Core (CVE-2026โ70426)
- Zohocorp ManageEngine ADAudit RCE (CVE-2026โ6516)
- IBM Langflow RCE (CVE-2026โ9198)
- Apache Kylin OS command injection (CVE-2026โ62392)
- MOVEit auth bypass (CVE-2026โ4670)
- Gitea unauth file read (CVE-2026โ59774)
Follow me
Join my Telegram channel and LinkedIn to follow security updates.