IncidentAI Agent Granted AWS Admin: Teardown
Your marketing team deployed an AI agent to automate social media responses. Three days later, your security team discovered it had spun up 47 EC2 instances in regions you don t use, racked up $23,000
Expert perspectives on application security, compliance, and emerging threats
IncidentYour marketing team deployed an AI agent to automate social media responses. Three days later, your security team discovered it had spun up 47 EC2 instances in regions you don t use, racked up $23,000
IncidentYou clone a repository. Your AI coding assistant reads the files to understand context. Within seconds, it s reading your SSH keys, environment variables, or internal documentation. No exploit kit req
IncidentWhat Happened Zimbra released version 10.1.19 to fix a critical stored cross-site scripting (XSS) vulnerability in its Classic Web Client. Google s Threat Analysis Group reported the flaw, highlightin
IncidentWhat Happened Datadog Security Labs identified coordinated reconnaissance campaigns using over 50 dormant GitHub accounts to map corporate organizations. Attackers issued API queries through accounts
Get weekly security insights and compliance updates delivered to your inbox.
IncidentWhat Happened Zimbra disclosed a stored cross-site scripting (XSS) vulnerability in its Classic Web Client. This flaw allows specially crafted emails to execute malicious scripts in a user s session.
IncidentWhat Happened A mid-market SaaS company discovered unauthorized data access in their production environment. The entry point wasn t their code. An attacker exploited a known vulnerability in a third-p
IncidentWhat Happened A software supply chain compromise occurred when your team integrated what appeared to be a clean open-source dependency. The package showed zero CVEs in your security scanning tools. Th
IncidentA research team at the University of Missouri-Kansas City has published proof-of-concept code for an attack that bypasses AI code review tools by hiding malicious instructions inside PNG files attache
IncidentWhat Happened On July 8, 2026, a threat actor published version 1.20.21 of @injectivelabs/sdk-ts to npm. The package contained code to steal cryptocurrency wallet private keys. Within 24 hours, the at
IncidentOn January 14, 2025, security researcher Michael Clark confirmed what Sysdig had already detected: attackers were exploiting CVE-2026-20896 to bypass authentication in Gitea Docker deployments. This v
IncidentThe Problem Organizations are facing a systemic issue: 82% carry security debt, meaning they have unresolved vulnerabilities older than a year. These aren t hypothetical risks; they re real flaws in y
IncidentUbiquiti recently released security updates for UniFi OS, addressing seven critical vulnerabilities. One of these, CVE-2026-50746, has a maximum CVSS severity score. Censys data shows over 100,000 Uni
IncidentWhat Happened By the end of Q2 2026, Sonatype Research logged 1.8 million malicious packages across public registries. This wasn t a single sophisticated attack. It was industrial-scale pollution of t
IncidentWhat Happened In early 2025, Wiz security researchers disclosed GhostApproval, a vulnerability affecting six major AI coding assistants: Amazon Q Developer, Google Antigravity, Cursor, Codeium, JetBra
IncidentOn December 20, 2024, attackers compromised the GitHub repository for Injective Labs SDK and published a malicious npm package designed to steal cryptocurrency wallet private keys. The malicious versi
IncidentYour AI coding assistant just suggested a package that doesn t exist. You accept the suggestion. Moments later, malware is running on your machine. This isn t theoretical. Researchers at Tel Aviv Univ