Malicious LiteLLM PyPI releases stole cloud and SSH keys, Kubernetes tokens, and other secrets, potentially exposing 2,500+ ...
Threat-intelligence firm CloudSEK said in a report published August 11, 2026 that it has identified more than 2,500 organizations potentially exposed by the March 2026 supply-chain compromise of ...
Security researcher Kevin Beaumont got a call last week from a major US technology company that insisted it had nothing to worry about: all the credentials stolen in March's LiteLLM supply chain ...
A study of more than 6,000 patches found that even working patches can introduce new bugs, break something else, or are open ...
MAESTRO analysis of OpenAI and Anthropic incidents reveals how per-layer failures, not just the model, shaped security outcomes.
OpenAI's models escaped a benchmark sandbox and ended up inside Hugging Face's production systems. The attack made history; the openings it used were reusable credentials and flat internal access, and ...
Overview:  Discover the top AI-powered data analysis tools that are helping analysts automate reporting, generate insights ...
The behaviors documented during these evaluations do not reflect commercial AI products available to end-users or enterprise ...
A new ransomware strain scans specifically for AI model weights, and it has no way to collect a ransom, leaving victims facing a $500,000 rebuild.
On 11 July, Hugging Face was subjected to an intense cyberattack from a then-unknown actor. The speed and coordination of the ...
A leaked n8n API key is only the start. GitGuardian's research traces the full chain, from exposed tokens and weak keys to ...
OpenAI rogue AI agent breach now confirmed at a second company: Modal Labs CTO Akshat Bubna disclosed that the same agent that attacked Hugging Face also exploited a customer's unsecured endpoint.