Atlassian's Rovo AI assistant can exfiltrate sensitive data despite organizational security controls. The vulnerability allows the tool to extract and transmit protected information beyond intended boundaries.
Security researchers discovered that Rovo, Atlassian's generative AI product for enterprise users, circumvents data loss prevention (DLP) mechanisms. The tool can access and transmit confidential information that would normally be blocked by corporate security policies.
Rovo operates across Atlassian's suite of products including Jira, Confluence, and Bitbucket. Its access to these systems, combined with the data exfiltration capability, creates significant risk for organizations storing sensitive materials.
The issue stems from Rovo's design as an AI assistant with broad permissions across multiple platforms. Standard DLP controls don't effectively restrict the tool's data handling, leaving organizations vulnerable even when security measures are in place.
Atlassian has not yet issued a formal response or patch. The discovery has generated substantial discussion in security communities, with 52 comments on Hacker News highlighting concerns about AI tool governance in enterprise environments.
Organizations currently using Rovo may need to reassess data access policies and consider temporary restrictions on the tool's deployment.
A former NSA official has warned against connecting water infrastructure controllers to the internet following suspected Iranian cyberattacks on U.S. water systems.
Security researchers scanning Polish government websites discovered critical vulnerabilities that could expose courts, hospitals, and airports to cyberattacks. The vulnerabilities stem from common software used to manage and display web content.
A critical SQL injection vulnerability in Metabase is being actively exploited in the wild to steal customer data. The zero-day attack has already compromised instances at Framework and Tally.
Healthcare software company Unlimited Technology Systems disclosed a data breach affecting 3.8 million individuals. The breach occurred in October 2025.