Google's newest AI Threat Tracker says extortion crews are stealing proprietary AI models and research, then demanding payment to keep…
Australian police charged two Western Australian men over the TeamPCP syndicate's open-source supply chain attacks.
A CloudSEK dataset maps the March LiteLLM poisoning campaign to secret exposure at thousands of organizations.
The compromise cascaded from PyPI to npm to Packagist when a transitive dependency of pyannote-audio introduced the malicious Lightning package…
A critical coding flaw in VECT 2.0 permanently destroys any file larger than 128 KB instead of encrypting it, making…