Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

BleepingComputer
bleepingcomputer.com > news > security > hackers-build-ai-frameworks-for-widescale-credential-theft

Hackers build AI frameworks for widescale credential theft

4+ day, 23+ hour ago   (515+ words) Trezor data breach impact now reaches 81,000 customers BigBear Microsoft 365 phishing service bypassed MFA at 258 organizations N-able patches max severity N-central flaw amid ongoing attacks Hackers build AI frameworks for widescale credential theft Microsoft: Windows Server 2025 changes causing app crashes Get…...

Google News
stepsecurity.io > blog > 7nohe-openapi-react-query-codegen-compromised-npm-publishing-workflow

@7nohe/openapi-react-query-codegen Compromised Through an Exposed npm Publishing Workflow

2+ week, 1+ day ago   (602+ words) The attacker did not need a maintainer npm password or a long lived npm token. The repository accepted an npm publish comment from any pull request participant, checked out that pull request, installed its dependencies, and published packages with a…...

TelecomTalk
telecomtalk.info > kaspersky-warns-fakeaiapps-spreading-malware-attacks > 1011192

AI Boom Turns Into a Malware Trap as Fake AI Apps Spread

2+ week, 5+ day ago   (542+ words) Kaspersky just reported detecting more than 92,000 fake AI apps, mostly targeting users of Claude, Gemini, and ChatGPT. Here is all we know: Cybercriminals are exploiting the popularity of ChatGPT, Claude, and Gemini by spreading fake AI apps that secretly install…...

CNBCTV18
cnbctv18.com > technology > how-a-us-student-exposed-an-ai-agent-posing-as-a-github-hacker-19974127.htm

How a US student exposed an AI agent posing as a GitHub hacker

3+ week, 2+ day ago   (15+ words) CNBC TV18...

Google News
timesnownews.com > technology-science > student-catches-ai-agent-trying-to-push-malware-on-github-article-155883319

Student Catches AI Agent Trying To Push Malware On GitHub

3+ week, 3+ day ago   (403+ words) A US computer science student looking to improve his coding profile ended up uncovering a hacking attempt involving an AI agent, according to a new report. Sinan Can Demir, a 24-year-old student at the University of Texas at Dallas, discovered…...

Cyber Security News
cybersecuritynews.com > kimsuky-uses-local-llms

Kimsuky Uses Local LLMs, AI-Generated Lures and GitHub C2 to Deploy AsyncRAT

1+ mon, 3+ day ago   (573+ words) Kimsuky has been observed blending polished AI-made documents with familiar phishing tactics to push AsyncRAT, a remote-access trojan. The campaign shows how old delivery methods can gain new credibility when the bait looks professionally written and carefully formatted. The activity,…...

International Business Times
ibtimes.sg > ai-agents-can-use-social-engineering-attack-open-source-projects-91869

AI Agents Can Use Social Engineering to Attack Open-Source Projects

1+ mon, 2+ day ago   (697+ words) An AI agent wrote malicious code, created fake online identities and tried to persuade a real human maintainer to approve the code into an open-source project, but failed. That detail sits at the center of a new disclosure from Britain's…...

CryptoRank
cryptorank.io > news > feed > af11d-agentbaiting-how-800-fake-ai-skills-deliver-malware-at-scale

AgentBaiting: How 800+ Fake AI Skills Deliver Malware at Scale | Trust & Security | CryptoRank.io

1+ mon, 4+ day ago   (610+ words) The security architecture of AI agents is facing a fundamental challenge: the trust-through-defaults model. As developers increasingly rely on autonomous coding agents like Claude Code, Gemini, and ChatGPT to streamline workflows, these tools are being weaponized in a campaign codenamed…...

Cyber Kendra
cyberkendra.com > 2026 > 08 > the-new-attack-surface-how.html

The New Attack Surface: How Cybercriminals Are Using AI to Target Developers

1+ mon, 6+ day ago   (645+ words) Cybercriminals are increasingly targeting developers in attacks. One of the major factors behind the trend is access. Developers often work on a wide range of internal and external projects. Compromising a developer's system can give a cybercriminal a way into…...

DEV Community
dev.to > david_shibley > the-githubtoken-in-your-zshrc-is-a-time-bomb-and-so-is-your-npmrc-41h7

The GITHUB_TOKEN in Your.zshrc Is a Time Bomb (And So Is Your.npmrc)

1+ mon, 6+ day ago   (526+ words) If you've got a GITHUB_TOKEN sitting in plaintext in your.zshrc right now, this one's for you. And if you've never actually looked inside your.npmrc, I'd bet money there's an _authToken=npm_xxxxxxxx line in there that's been quietly rotting since you set…...