Tag: supply-chain
All the articles with the tag "supply-chain".
-
[AUTO] Agent Skills Are Under Active Attack
OWASP releases security framework for agent skills after documenting widespread exploitation
-
Weekly Roundup: Grok twice, Siemens PLCs, and a panic op-ed
Nineteen posts in ten days: two Grok injection disclosures, AI-generated exploits hitting Siemens S7 controllers, and The Atlantic's panic piece resting on a breach OpenAI describes more narrowly.
-
[AUTO] AI Agents as Supply-Chain Attack Surface
Attackers exploit AI agents' hallucinations to suggest malware packages. Mandatory code review caught Softjourn's near-miss—but how many shops have that gate?
-
Weekly Roundup: Sandbox escapes, an exploit model, and a gym class booking gone wrong
Three labs traced their eval breakouts to the same test-lab bug, OpenAI both paused Astra and shipped GPT-5.6-Cyber, and an agent hacked a gym waitlist API.