GitHub's new AI detector checks code for exposed passwords and credentials, expanding push protection to prevent more secret ...
A tool that might quietly resonate with those building MCP servers (a standard for AI agents to call tools) was released on ...
A malicious Tensorlake npm release carries a Shai-Hulud worm variant that steals developer secrets and spreads through ...
ThreatsDay: Malicious VS Code themes, npm supply-chain attacks, AI phishing, ransomware betrayal, exposed hacker tools, and ...
IntroductionIn July 2026, Zscaler ThreatLabz uncovered a campaign linked to TraderTraitor (also tracked as Jade Sleet, UNC4899, Pressure Chollima, and Slow Pisces), an advanced persistent threat actor ...
Recently, I have been seeing news about cyberattacks and ransomware damage to companies much more frequently.The ransomware ...