When researchers found an obfuscated token while examining the relationship between OpenAI Codex and GitHub, they took notice ...
After hacking Trivy, TeamPCP moved to compromise repositories across NPM, Docker Hub, VS Code, and PyPI, stealing over 300GB ...
Supply chain attacks are increasing in volume, but open source vulnerabilities continue relatively unnoticed.
AI-driven development accelerated credential sprawl in 2025, with 28.65M secrets detected, expanding attack surface and remediation strain.
Independent security researchers recently completed an audit of the ClawHub skill marketplace — the primary distribution ...
A cyber attack hit LiteLLM, an open-source library used in many AI systems, carrying malicious code that stole credentials ...
The malware at the center of it, dubbed Omnistealer by investigators, uses public blockchains not just for payments, but as ...
Alleged AstraZenea data leak raises concerns over internal access, source code exposure and follow-on cyber risks.
M secrets leaked in 2025, up 34% YoY, driven by AI growth and poor remediation, expanding enterprise attack surfaces.
A new hacking group has been rampaging the Internet in a persistent campaign that spreads a self-propagating and never-before ...
NetRise®, the software supply chain security company that exists to eliminate blind trust in software, today announced the ...