Back to news

Critical AI Harness Flaw Enables Remote Takeover; LG Cracks Down on Proxy-Loaded Smart TV Apps

A perfect-10 vulnerability in the Ruflo AI agent framework and a residential-proxy scandal inside LG's webOS app store expose how fast attack surfaces are expanding beyond traditional infrastructure.

Critical AI Harness Flaw Enables Remote Takeover; LG Cracks Down on Proxy-Loaded Smart TV Apps

What happened

Noma Security researchers disclosed a maximum-severity vulnerability, CVE-2026-59726 (CVSS 10.0), in Ruflo, an open-source meta-harness that connects Anthropic Claude Code and OpenAI Codex to external tools via the Model Context Protocol. Dubbed RufRoot, the flaw allows unauthenticated attackers to execute arbitrary commands and corrupt the persistent memory that AI agents rely on for context — all without valid credentials. Every Ruflo release prior to version 3.16.3 is affected. Separately, LG Electronics USA announced it will pull any webOS smart TV applications that silently enroll users' televisions as residential proxy nodes, a decision triggered by research showing that more than 42 percent of titles in the webOS store were routing third-party internet traffic through consumers' home IP addresses without meaningful disclosure.

Why it matters for your business

The Ruflo flaw is a direct warning to any engineering team running AI coding agents in networked or shared environments: the orchestration layer itself is now a primary attack vector, not just the models or the code they produce. Memory poisoning is particularly dangerous because it can silently skew an agent's future decisions, making malicious influence hard to detect through standard monitoring. On the consumer hardware side, the LG situation illustrates that enterprise IoT and BYOD policies increasingly need to account for smart TVs and other appliances in office or hybrid-work settings, since compromised residential proxies can be used to mask the origin of attacks or circumvent geo-based access controls. The practical takeaway: audit which AI agent frameworks are deployed in your stack, enforce strict network segmentation around MCP-connected services, and revisit acceptable-use policies for internet-connected devices on corporate networks.

What to watch next

Teams running Ruflo should treat the upgrade to version 3.16.3 as an emergency patch, not a routine update, given the perfect CVSS score and the absence of any authentication requirement to exploit the flaw. On the smart TV front, regulatory and legal scrutiny of app-store operators embedding proxy SDKs in consumer devices is likely to intensify, and similar audits of other connected-device ecosystems — streaming sticks, gaming consoles, and IoT gateways — should be expected. Both developments signal broader momentum toward formal security standards for AI toolchains and edge-device software distribution.

Sources

Want this kind of clarity applied to your own systems?

HashWhales can review your website, infrastructure, security posture, and growth bottlenecks, then send a prioritized action plan.

Free AuditChat on WhatsApp