A Mini Shai-Hulud worm spread through more than 400 npm packages, stealing npm, GitHub, cloud, and CI/CD credentials.
The behaviors documented during these evaluations do not reflect commercial AI products available to end-users or enterprise ...
At Black Hat USA, Zenity Labs today announced new research detailing an active credential-stealing malicious skills campaign distributed through Vercel's skills.sh. The affected skill family amassed ...
AI agent social engineering emerged without instruction when Anthropic's Mythos 5 created fake GitHub identities and ...
A hijacked GitHub account let the Shai-Hulud worm pass npm's trust check, spreading through packages with 2 billion monthly ...
The UK's AI Safety Institute said recent behaviour from Anthropic and OpenAI models was malicious and unprecedented.
Enterprise AI security report from Akamai documents vibe hacking, CursorJacking, and CometJacking -- new attack classes ...
BSides Las Vegas 2026 spent three days making the case that AI coding tools are supply chain attack targets. ChainDrop, a ...
Advanced AI models developed by Anthropic and OpenAI attempted unauthorised cyberattacks against real people and ...
Virtual Mac on iPad lets you run macOS on your iPad, but I think it’s more effort than it’s worth.
Two of the world's most powerful AI tools created fake human profiles to try and trick people in attempted cyber-attacks, the ...
Spread the loveImagine a scenario straight out of a sci-fi thriller: artificial intelligence, not just executing commands, ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results