Chainguard will use AI to protect open-source code. Athena pools open-source users, developers, and maintainers. Others are ...
Mastra npm packages added easy-day-js malware, exposing developer systems and CI runners to infostealer risks.
As artificial intelligence becomes the defining battleground of technological leadership, CrowdStrike’s 2026 Technology ...
The Miasma credential-stealing attack framework, which has recently targeted open-source ecosystems through supply-chain ...
Solana-based decentralized exchange Raydium will repay the funds swiped in the $1.34 million exploit using its treasury.
Claude Mythos Preview autonomously built 16 working exploits targeting Firefox and Windows vulnerabilities within hours.
CrowdStrike (NASDAQ: CRWD) today released the CrowdStrike 2026 Technology Threat Landscape Report, revealing that China-nexus ...
Researchers have uncovered a supply-chain attack that hides in Python packages, propagates like a worm, and tricks LLM-based ...
Threat actors have struck the software supply chain yet again, this time hitting the Python Package Index (PyPI) with Mini Shai-Hulud in an attempt to spread poisoned code. In the latest campaign, ...
Researchers at Cyera found six vulnerabilities in prtobuf.js, including a flaw that can turn attacker-controlled schema data ...
The Miasma supply chain campaign has sparked a fresh attack wave called Hades, this time involving 37 malicious wheel ...