Attackers already know the secrets are on your developers' machines. Do you?Help Net Security·Jun 4, 00:00 UTC · Jun 4, 2026Threat actor57
Agent Threat Rules: Open detection rule format for AI agent security threatsHelp Net Security·Jun 3, 00:00 UTC · Jun 3, 2026AI safety & security in the wild45
What’s in the container? Analyzing vulnerabilities, risks and protection with Kaspersky Container Security and the KIRA AI assistantKaspersky Securelist·May 29, 07:00 UTC · May 29, 2026VulnerabilityCVE-2025-55182CVE-2023-4911CVE-2021-4034+3 CVEs60
GitHub Confirms Breach of Internal RepositoriesInfosecurity Magazine·May 20, 10:45 UTC · May 20, 2026Ransomware60
TeamPCP breached GitHub's internal codebase via poisoned VS Code extensionHelp Net Security·May 20, 00:00 UTC · May 20, 2026Data breach60
Security Researchers Find 47 ZeroInfosecurity Magazine·May 18, 09:45 UTC · May 18, 2026Exploit / PoC60
TanStack Supply Chain Attack Hits Two OpenAI Employee Devices, Forces macOS UpdatesThe Hacker News·May 15, 00:00 UTC · May 15, 2026Ransomware57
PCPJack Campaign Boots TeamPCP Off Compromised MachinesInfosecurity Magazine·May 8, 09:00 UTC · May 8, 2026Threat actor57
PyTorch Lightning and Intercom-client Hit in Supply Chain Attacks to Steal CredentialsThe Hacker News·May 1, 16:27 UTC · May 1, 2026Ransomware57
Critical Flaw Turns Vect Ransomware into Data Destroying WiperInfosecurity Magazine·Apr 29, 10:45 UTC · Apr 29, 2026Ransomware60
Malicious KICS Docker Images and VS Code Extensions Hit Checkmarx Supply ChainThe Hacker News·Apr 24, 04:35 UTC · Apr 24, 2026Malware42
SmokedMeat: Open-source tool shows what attackers do inside CI/CD pipelinesHelp Net Security·Apr 20, 00:00 UTC · Apr 20, 2026Vulnerability42
Command integrity breaks in the LLM routing layerHelp Net Security·Apr 16, 00:00 UTC · Apr 16, 2026AI tools & infra30
Google Attributes Axios npm Supply Chain Attack to North Korean Group UNC1069The Hacker News·Apr 15, 00:00 UTC · Apr 15, 2026Ransomware57
Asqav: Open-source SDK for AI agent governanceHelp Net Security·Apr 9, 00:00 UTC · Apr 9, 2026Tools155
Week in review: Axios npm supply chain compromise, critical FortiClient EMS bugs exploitedHelp Net Security·Apr 5, 00:00 UTC · Apr 5, 2026Exploit / PoC in the wildCVE-2026-35616CVE-2026-21643CVE-2026-20093+2 CVEs160
European Commission breach exposed data of 30 EU entities, CERTSecurity Affairs·Apr 4, 08:45 UTC · Apr 4, 2026Data breach160
Do not get high(jacked) off your own supply (chain)Cisco Talos·Apr 3, 17:31 UTC · Apr 3, 2026Ransomware57
Trivy supply chain attack enabled European Commission cloud breachHelp Net Security·Apr 3, 00:00 UTC · Apr 3, 2026Ransomware57
Google links Axios npm supply chain attack to North KoreaSecurity Affairs·Apr 1, 13:47 UTC · Apr 1, 2026Ransomware57
North Korean hackers linked to Axios npm supply chain compromiseHelp Net Security·Apr 1, 00:00 UTC · Apr 1, 2026Ransomware57
Axios npm packages backdoored in supply chain attackHelp Net Security·Mar 31, 00:00 UTC · Mar 31, 2026Malware42
The State of Secrets Sprawl 2026: 9 Takeaways for CISOsThe Hacker News·Mar 30, 11:30 UTC · Mar 30, 2026AI safety & security30
CISA Adds Actively Exploited SolarWinds Web Help Desk RCE to KEV CatalogThe Hacker News·Feb 5, 03:59 UTC · Feb 5, 2026Exploit / PoC in the wildCVE-2025-40551CVE-2025-40536CVE-2025-40537+7 CVEs60
Garak: Open-source LLM vulnerability scannerHelp Net Security·Sep 10, 00:00 UTC · Sep 10, 2025AI safety & security30
Over 400 IPs Exploiting Multiple SSRF Vulnerabilities in Coordinated Cyber AttackThe Hacker News·Mar 15, 00:00 UTC · Mar 15, 2025Vulnerability in the wildCVE-2017-0929CVE-2020-7796CVE-2021-21973+7 CVEs60
Experts warn of a coordinated surge in the exploitation attempts of SSRF vulnerabilitiesSecurity Affairs·Mar 13, 14:31 UTC · Mar 13, 2025Vulnerability in the wildCVE-2020-7796CVE-2021-22214CVE-2021-39935+7 CVEs60