Tag: Software Security

OpenAI has reduced GPT 5.6 Sol API pricing for three months, lowering input costs by 20 percent and output costs by about 33 percent for developers.
Anthropic has revealed its unreleased Model 2 AI system, which outperforms Claude Mythos 5 on internal benchmarks but has no planned public release.

North Korea Linked npm Packages Impersonate Rollup Polyfill Tools To Target Developer Systems And Steal Secrets

Security researchers have uncovered malicious npm packages linked to North Korea that impersonate Rollup polyfill tools to deliver remote access malware and steal developer credentials and sensitive data.

GuardFall Research Reveals Shell Injection Risks Across Open Source AI Coding Agents

Adversa AI has disclosed GuardFall, a shell injection bypass affecting 10 of 11 tested open source AI coding agents, exposing systems to command execution and credential theft risks.

Miasma Supply Chain Attack Compromises Red Hat npm Packages To Steal Credentials And Spread Self Propagating Malware

A new supply chain attack called Miasma has compromised Red Hat npm packages to steal credentials, target CI/CD environments, and deploy a self propagating malware campaign affecting developers and cloud systems.

Malicious Docker Images And VS Code Extensions Compromise Checkmarx Supply Chain

Security researchers report malicious Docker images and VS Code extensions tied to Checkmarx supply chain compromise, exposing developer credentials, cloud tokens, and CI/CD secrets through multi-stage malware and npm propagation.

Security Vulnerabilities Discovered In Live Server Code Runner And Other VS Code Extensions

Researchers disclose critical vulnerabilities in four popular Microsoft Visual Studio Code extensions that could enable file theft and remote code execution across developer environments.

Recent articles

spot_img