On March 24, 2026, developers building AI applications with LiteLLM — a Python package with 95 million monthly downloads — ...
A hijacked GitHub account let the Shai-Hulud worm pass npm's trust check, spreading through packages with 2 billion monthly ...
Routine cybersecurity testing of frontier AI models sparked a series of unexpected security incidents—the most serious case ...
More than 400 NPM packages have been infected with the Mini Shai-Hulud worm in the ChainDrop supply chain attack.
The Shai Hulud variant’s blast radius includes several highly popular packages thus far.. Security teams are urged to perform ...
Microsoft Defender automatically isolated a compromised QNET endpoint in 129 seconds, stopping a multi-stage attack before the payload could persist or spread.
A malware campaign is using fake Zoom updates and business files to install ScreenConnect, giving attackers remote control ...
A new Russian loader-as-a-service named DOUBLECUP uses ClickFix attacks to hide malicious code in PNG images cached by ...