The US Department of Health and Human Services (HHS) has issued an AI strategic plan, focusing on health AI innovation, trustworthy AI development, democratising AI resources, and creating AI-empowered workforces. The plan also addresses cybersecurity concerns and aims to develop a sector-specific cybersecurity training programme. It goes on to discuss the need to standardise best practices and cybersecurity governance, and reducing the complexity of implementing new AI capabilities.

Researchers Leveraged OAuth Misconfiguration to Access Sensitive Data Without Restrictions
A researcher named Remy found a critical OAuth vulnerability during a YesWeHack bug bounty, exposing sensitive user data due to misconfiguration. This flaw granted unrestricted