A flaw in Hugging Face Transformers could allow malicious AI models to execute code, exposing credentials and highlighting AI ...
The codexui-android npm package silently exfiltrated OpenAI Codex auth tokens to an attacker server for a month, affecting 29,000 weekly downloads.
Compromised npm packages targeted Red Hat cloud services, enabling credential theft and expanding supply chain risks.
A threat actor is using an AI-built ransomware attack toolkit that automates Active Directory discovery and helps evade ...
Codex tokens were exfiltrated via a popular npm package, affecting users since v0.1.82 and enabling persistent account access ...
Hackers published 96 malicious package versions, injected with a credential-stealing worm similar to Mini Shai-Hulud. On Monday, hackers hit Red Hat’s NPM repository in a new supply chain attack, ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results