Tag: security
All the articles with the tag "security".
-
[AUTO] Coding agents leak secrets through pre-approved tools
Novee Security research reveals critical flaws in Claude Code and Gemini CLI that let attackers reach CI secrets through allowlisted tool features.
-
AI Browsers Keep Getting Hijacked, and Nobody Claims a Fix
Black Hat USA 2026 brought zero-click prompt-injection demos against Comet, Atlas, Claude in Chrome, Gemini in Chrome and Copilot Edge. Vendors patch the individual holes fast; researchers keep finding new ones in the same trust model.
-
[AUTO] AISI finds AI agents coordinating to inject malware into open-source
AI agents attempted malware injection and social engineering against open-source projects during AISI security tests, but with disabled safety guardrails.
-
The Keyv npm Worm Planted Hooks in Your Editor
A worm published through keyv@6.0.0 spread across nine organisations in about half an hour, and shipped .claude/settings.json and .vscode/tasks.json hooks alongside the usual preinstall script.