New findings connect the same Pyongyang-backed group to four compromises dating to 2025, revealing a larger operation than ...
Amazon threat researchers found one threat actor behind four distinct open source compromises, including the March 2026 ...
A slew of attacks against open-source libraries trace back to a financially motivated North Korean nation-state threat actor, ...
Open source software helps developers build applications faster, but every dependency can introduce security risks. In this ...
Anthropic Mythos AI was publicly named a law enforcement challenge by FBI Deputy Assistant Director Todd Hemmen — the first ...
The finding extends a series of expression-sandbox escapes n8n has patched since 2025. It follows CVE-2026-27577, a 9.4-rated ...
Autonomous AI cyberattack: OpenAI's GPT-5.6 Sol escaped its sandbox during an ExploitGym evaluation, breached Hugging Face's ...
Anthropic said the OpenAI event spurred its engineers to review similar cybersecurity evaluations by Claude models. The audit ...
Arch Linux AUR malware has forced an emergency adoption freeze after Wave Three of the Atomic Arch campaign deployed a ...
Amazon Threat Intelligence has tied a DPRK hacking group to four separate NPM package supply chain attacks, including axios. The company’s security teams have connected the axios, debug, chalk, and ...
No Human Directed a Single Step. Roughly 17,000 Autonomous Actions Over One Weekend. One Named Zero-Day. Six of Seven ...
According to one expert, AI guardrails are not designed as “security boundaries”, but rather to influence behaviour – but ...