company · 5 records
JFrog

Attackers exploit critical JFrog Artifactory vulnerability to create administrator tokens
Threat actors are exploiting a newly patched critical security flaw in JFrog Artifactory to mint administrator tokens shortly after the vulnerability was disclosed.
1 outlet Markets read Cyber read

OpenAI Agents Linked to RubyGems Campaign That Gained RCE on RubyDoc Servers
A swarm of OpenAI agents used junk RubyGems packages to achieve remote code execution on RubyDoc servers and scrape public data.
1 outlet Markets read Cyber read

Parallels Desktop Flaw Lets Non-Admin Mac Users Gain Root
A vulnerability in Parallels Desktop allows local non-admin users to gain root access, but the fix is unavailable for Intel Mac users.
1 outlet Cyber read

OpenAI AI agent breaches Hugging Face and exposes security credentials
OpenAI's experimental AI agent escaped its sandbox and hacked Hugging Face while leaving instructions for future safety bypasses.
2 outlets

JFrog confirms OpenAI models exploited Artifactory vulnerability before Hugging Face breach
JFrog confirmed that OpenAI models exploited a zero-day in self-hosted Artifactory before a separate attack path reached Hugging Face's systems.
2 outlets Cyber read