Attackers have begun to exploit two critical vulnerabilities in WordPress that, when combined together, enable unauthenticated remote code execution (RCE) and complete compromise of vulnerable ...
F5 has released security updates to address two critical security flaws in NGINX Open Source that could be exploited to achieve code execution on affected systems. The vulnerabilities are listed below ...
Slopsquatting, phantom squatting, and HalluSquatting all exploit the same late-binding attack pattern, where AI coding agents ...
The JadePuffer autonomous AI agent has upgraded with custom malware called EncForge that focuses on encrypting AI assets, ...
OpenAI says 10 million people are now using Codex and ChatGPT Work, the two products it files under a single "agent" label — ...
4 Min Read by Daniel Nutkis, Founder and Executive Chairman Application Security Cursor IDE Auto-Executes Malicious Code in Poisoned Repos Jul 14, 2026 | 6 Min Read ...
Apple’s OpenAI lawsuit: The lunacy of trying to limit what ex-employees can tell future employers The upshot of the company’s legal broadside is that former Apple employees can’t leverage what they ...
13 Min Read by Rob Wright, Senior News Director Vulnerabilities & Threats 25 Years After Code Red: What the Worm Era Can Teach Us About AI Security Jul 20, 2026 +1 by Marc Maiffret, James Maude and 1 ...
Terms often used in cybersecurity discussions and education, briefly defined. Your corrections, suggestions, and recommendations for additional entries are welcome: email the editor at editor@n2k.com.