A sophisticated software supply chain attack has compromised some of the most widely used npm packages … Critical npm Worm Infects AI Coding ToolsRead more
ai security
IP Leakage Risks Grow as Code Moves Across Modern Development
Software companies once worried about employees physically walking away with sensitive information. Today, intellectual property can … IP Leakage Risks Grow as Code Moves Across Modern DevelopmentRead more
Claude Code Activity Raises Security Concerns After Reverse Tunnel and Persistence Discovery
A new investigation into Claude Code security risk has sparked debate across the cybersecurity community after … Claude Code Activity Raises Security Concerns After Reverse Tunnel and Persistence DiscoveryRead more
Hidden Web Text Can Trigger AWS Kiro RCE
A newly disclosed AWS Kiro vulnerability shows how a hidden line of text on a webpage … Hidden Web Text Can Trigger AWS Kiro RCERead more
Claude Security Brings AI-Powered Scanning Into the Terminal
Anthropic has launched Claude Security, a beta plugin that brings AI-powered vulnerability scanning directly into Claude … Claude Security Brings AI-Powered Scanning Into the TerminalRead more
YubiKey 5.8 Turns Passkeys Into Verified Approval
Yubico’s YubiKey 5.8 moves hardware-backed passkeys beyond simple login authentication and into verified authorization workflows. Announced … YubiKey 5.8 Turns Passkeys Into Verified ApprovalRead more
Jailbroken AI Models Are Becoming Offensive Security Tools
A Russian-speaking threat actor known as Trim has reportedly turned jailbroken AI models into an automated … Jailbroken AI Models Are Becoming Offensive Security ToolsRead more
AWS Warns Unmonitored Outbound Traffic Is Becoming a Major Cloud Security Risk
Cloud security teams have traditionally focused on preventing attackers from getting into their environments. Firewalls, web … AWS Warns Unmonitored Outbound Traffic Is Becoming a Major Cloud Security RiskRead more
LiteLLM RCE Vulnerability Actively Exploited in the Wild
A critical LiteLLM RCE vulnerability is now being actively exploited, exposing AI infrastructure to full system … LiteLLM RCE Vulnerability Actively Exploited in the WildRead more
How This Claude Code Flaw Exposes Critical SaaS Tokens
Autonomous AI development tools are introducing architectural vulnerabilities directly to developer workstations. Security researchers at Mitiga … How This Claude Code Flaw Exposes Critical SaaS TokensRead more