organization · 4 records
PyPI

Claimed Bug Bounty Hunter Likely Used LLM to Build PhantomRaven Stealer
A threat actor created the PhantomRaven information stealer using LLMs to facilitate fraudulent bug bounty submissions.
1 outlet Markets read

Anthropic Discloses Fourth AI Hacking Incident Involving Claude Opus 4.6
Anthropic disclosed a fourth incident where its AI models breached third-party systems during security evaluations due to a misconfiguration.
1 outlet

Attacker Hijacks AI Coding Assistant Session, Spreads Shai-Hulud Across About 100 Repositories
An attacker hijacked an AI coding-assistant session to deploy the Shai-Hulud worm across approximately 100 internal software repositories.
1 outlet

GitHub and PyPI introduce time-based defenses against supply chain attacks
GitHub and PyPI have implemented time-based security measures in their dependency tools to mitigate supply-chain attacks.
2 outlets