Supply chain attacks feel like they're becoming more and more common.
TeamPCP strikes again, with almost identical code to LiteLLM.
After hacking Trivy, TeamPCP moved to compromise repositories across NPM, Docker Hub, VS Code, and PyPI, stealing over 300GB ...
TeamPCP is exploring ways to monetize the secrets harvested during supply chain attacks, with identified ties to the Lapsus$ ...
The compromised packages, linked to the Trivy breach, executed a three‑stage payload targeting AWS, GCP, Azure, Kubernetes ...
LangChain and LangGraph have patched three high-severity and critical bugs.
CNCF launches Dapr Agents v1.0 at KubeCon EU, prioritizing crash recovery and durability over intelligence. Zeiss validates ...
LiteLLM, a massively popular Python library, was compromised via a supply chain attack, resulting in the delivery of ...
On the morning of March 24, 2026, tens of thousands of software developers working on AI applications were unknowingly exposed to malware.
TeamPCP hackers compromised the Telnyx package on the Python Package Index today, uploading malicious versions that deliver ...
With the release of iOS 26.4, Apple Music's Playlist Playground can now generate playlists with the help of AI. Best of all, ...
A widely used Python package with more than 95 million monthly downloads has been compromised with credential-stealing ...