GitHub confirmed attackers stole 3,800 internal repositories via a poisoned VS Code extension. The same threat group, TeamPCP, simultaneously compromised Microsoft's durabletask Python ...
Perplexity launches Bumblebee: How its new read-only dev scanner differs from Chainguard ...
GitHub is just the latest victim of TeamPCP, a gang that has carried out a spree of software supply chain attacks that has impacted hundreds of organizations.
The Mitiga disclosure is the most recent, but it is not the first time Claude Code’s configuration model has created a ...
Millions of AI agents and tools around the world have been imperiled by a critical vulnerability that can allow hackers to ...
There is an irony in the current AEO problem: Reddit has simultaneously struck licensing deals with AI companies — including ...
As threat actors operationalize AI to accelerate attacks, they are also leveraging the wider global interest around AI itself as a social engineering lure. In recent months, Microsoft Threat ...