This website uses cookies
Read our Privacy policy and Terms of use for more information.
May 25, 2026
Langflow's permissive CORS and a SameSite=None cookie let any web page run arbitrary Python as an authenticated user — no credentials required, active exploitation confirmed.
May 22, 2026
Poisoned developer tool allows attackers to exfiltrate and sell 3,800 internal code repositories.
May 21, 2026
No vulnerability in the extension itself was needed: a stolen publisher token, a hidden orphan commit in the official nrwl/nx repository, and Marketplace trust did the work — confirming that IDE extensions hold direct access to every credential a developer carries.
May 20, 2026
Georgia Tech's Vibe Security Radar formally attributed 35 CVEs to AI-generated code in March 2026 — up from 6 in January — while a researcher at Aikido Security demonstrated that hallucinated package names reach 237 repositories before any package exists, giving attackers a ready-made supply chain entry point.
May 19, 2026
May 18, 2026
Adversa AI's May 7 disclosure shows the trust designation in every major AI coding CLI is also an execution grant for attacker-supplied MCP servers, and in CI/CD pipelines the prompt is suppressed entirely — meaning a contributor-grade pull request can reach production secrets without tripping a single audit signal.
May 15, 2026
NGINX Rift surfaces an 18-year-old heap overflow, CISA orders Cisco SD-WAN patched by May 17, and Google disrupts the first AI-assisted zero-day in the wild.
May 14, 2026
Eight Canadian universities are in the Canvas breach scope — and ShinyHunters' deletion logs guarantee nothing
May 13, 2026
Mini Shai-Hulud returns with 169 compromised npm packages — and the first malicious tarballs ever to carry valid SLSA Build Level 3 provenance.
May 12, 2026
Dirty Frag, Bleeding Llama, and the Secure Boot certificate deadline now 43 days out