TanStack Supply Chain Attack
OpenAI confirms a security breach in the recent TanStack supply chain attack, which impacted hundreds of npm and PyPI packages, with two employees' devices breached and code-signing certificates rotated as a precaution.
Attackers exploit identity verification processes, particularly during onboarding and account recovery, to gain unauthorized access to corporate systems.
OpenAI confirms a security breach in the recent TanStack supply chain attack, which impacted hundreds of npm and PyPI packages, with two employees' devices breached and code-signing certificates rotated as a precaution.
Data centers can enhance security without sacrificing performance by utilizing data processing units (DPUs) to execute security workloads, freeing CPU and GPU cycles for their intended operations.
Hackers targeted a PraisonAI vulnerability less than four hours after public disclosure, with exploitation attempts starting within three hours and 44 minutes.
Microsoft and Palo Alto Networks used AI to discover dozens of vulnerabilities in their own code, highlighting the potential of AI in cybersecurity.
The House Homeland Security Committee is investigating Anthropic's AI model Mythos, which can autonomously uncover cyber vulnerabilities, amid concerns over its use by federal agencies.
European Commission President Ursula von der Leyen pushes for a new law to delay social media access for teenagers, citing concerns over addictive design features and online safety.
Fraudsters are using generative AI to automate impersonation and mass-produce synthetic identities, rendering enterprises' defenses obsolete, with predicted losses reaching $40 billion in the U.S. by 2027.
The Trump administration released a memo justifying its nationwide voter data collection efforts, citing federal laws and statutes to support its position.
A critical vulnerability in Exim mailer, identified as CVE-2026-45185, allows remote code execution on affected Linux and Unix servers.