The malicious version of Cline's npm package — 2.3.0 — was downloaded more than 4,000 times before it was removed.
CISA ordered federal agencies on Thursday to secure their systems against a critical Microsoft Configuration Manager ...
These 4 critical AI vulnerabilities are being exploited faster than defenders can respond ...
Cline CLI 2.3.0 was published with a stolen npm token, installing OpenClaw in an 8-hour attack affecting ~4,000 downloads.
Agentic AI systems have gone mainstream over the past year. They are now being used for several functions, including authenticating users, moving capital, triggering compliance workflows, and ...
RoguePilot flaw let GitHub Copilot leak GITHUB_TOKEN, while new studies expose LLM side channels, ShadowLogic backdoors, and promptware risks.
Also today, SAP released 27 new and updated security notes, including two that address critical-severity vulnerabilities. Jonathan Stross, SAP security analyst at Pathway, drew attention to a code ...
CVE-2026-21525 is a denial-of-service vulnerability affecting the Windows Remote Access Connection Manager. “Exploitation is local, requires no privileges, and does not rely on user interaction,” ...
"From an AI research perspective, this is nothing novel," one expert told TechCrunch.
A viral AI caricature trend may be exposing sensitive enterprise data, fueling shadow AI risks, social engineering attacks, ...
As the pace of change accelerates in early 2026, technical decision-makers are faced with a fundamental choice between ...