A flaw in Hugging Face Transformers could allow malicious AI models to execute code, exposing credentials and highlighting AI ...
The codexui-android npm package silently exfiltrated OpenAI Codex auth tokens to an attacker server for a month, affecting 29,000 weekly downloads.
A threat actor is using an AI-built ransomware attack toolkit that automates Active Directory discovery and helps evade ...
Compromised npm packages targeted Red Hat cloud services, enabling credential theft and expanding supply chain risks.
Codex tokens were exfiltrated via a popular npm package, affecting users since v0.1.82 and enabling persistent account access ...
Hackers published 96 malicious package versions, injected with a credential-stealing worm similar to Mini Shai-Hulud. On Monday, hackers hit Red Hat’s NPM repository in a new supply chain attack, ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results