@anon
sign up
@anon
sign up
pull down to refresh
LiteLLM infected with credential-stealing code via Trivy
www.theregister.com/2026/03/24/trivy_compromise_litellm/
503 sats
\
3 comments
\
@0xbitcoiner
25 Mar
AI
related
Supply Chain Attack in litellm 1.82.8 on PyPI
futuresearch.ai/blog/litellm-pypi-supply-chain-attack/
373 sats
\
0 comments
\
@Scoresby
24 Mar
devs
Bitcoin Developer Resources
www.dollarparity.com/bitcoin-development-resources/
226 sats
\
0 comments
\
@dollarparity
8 May 2024
bitcoin_beginners
The end of "trust me bro" - confidential computing for everyone
787 sats
\
1 comment
\
@aljaz
5 Feb
tech
Multiple redhat-cloud-services npm Packages compromised - StepSecurity
www.stepsecurity.io/blog/multiple-redhat-cloud-services-npm-packages-compromised
776 sats
\
1 comment
\
@winteryeti
2 Jun
tech
Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain Campaign
thehackernews.com/2026/04/bitwarden-cli-compromised-in-ongoing.html
1134 sats
\
5 comments
\
@Scoresby
23 Apr
tech
devs
pylint MCP provider
2428 sats
\
6 comments
\
@optimism
4 Jun 2025
builders
Compromised npm package silently installs OpenClaw on developer machines
www.csoonline.com/article/4135449/compromised-npm-package-silently-installs-openclaw-on-developer-machines.html
422 sats
\
4 comments
\
@winteryeti
24 Feb
AI
Kernel Devs Debate LLM Code Quality Concerns as AI-Generated Patches Increase
biggo.com/news/202508240724_Kernel_Developers_Debate_LLM_Code_Quality
210 sats
\
0 comments
\
@ch0k1
8 Mar
AI
devs
Claude Code's GitHub Actions Vulnerability Lets Attackers Compromise Any Repo
cybersecuritynews.com/claude-codes-github-actions-vulnerability/amp/
202 sats
\
1 comment
\
@ch0k1
3 Jun
security
400+ AUR Packages Compromised with Infostealer and Rootkit
discourse.ifin.network/t/400-aur-packages-compromised-with-infostealer-and-rootkit/577
288 sats
\
3 comments
\
@k00b
7h
security
tech
We Just Found Malicious Code in the Popular NPM Package
jdstaerk.substack.com/p/we-just-found-malicious-code-in-the
1497 sats
\
18 comments
\
@kristapsk
8 Sep 2025
security
Lazarus Infects New Batch of JavaScript Packages With Crypto Stealing Malware
decrypt.co/309669/lazarus-javascript-crypto-stealing-malware
1161 sats
\
0 comments
\
@k00b
13 Mar 2025
security
GitHub MCP exploited: Accessing private repositories via MCP | Hacker News
simonwillison.net/2025/May/26/github-mcp-exploited/
286 sats
\
1 comment
\
@ch0k1
30 May 2025
news
GitHub suffers a cascading supply chain attack compromising CI/CD secrets
www.infoworld.com/article/3849245/github-suffers-a-cascading-supply-chain-attack-compromising-ci-cd-secrets.html
389 sats
\
2 comments
\
@ch0k1
21 Mar 2025
security
LLMs are in trouble - Video
www.youtube.com/watch?v=o2s8I6yBrxE
259 sats
\
0 comments
\
@kepford
14 Oct 2025
AI
Brainworm - Hiding in Your Context Window | Origin
www.originhq.com/blog/brainworm
564 sats
\
1 comment
\
@Scoresby
5 Mar
AI
Second releases python barkd client
second.tech/docs/barkd/clients#python
443 sats
\
0 comments
\
@Scoresby
8 May
bitcoin
devs
🚨 CRITICAL: supply chain attack on axios
1626 sats
\
8 comments
\
@justin_shocknet
31 Mar
devs
Anthropic’s new model refuses to find smart contract vulnerabilities
protos.com/anthropics-new-model-refuses-to-find-smart-contract-vulnerabilities/
402 sats
\
4 comments
\
@0xbitcoiner
10 Jun
AI
Tinycolor npm Package Compromised in (another) Supply Chain Attack
socket.dev/blog/tinycolor-supply-chain-attack-affects-40-packages
1053 sats
\
3 comments
\
@aljaz
16 Sep 2025
security
Claude, Gemini CLI & Copilot Vulnerable to Prompt Injection via GitHub Comments
cybersecuritynews.com/prompt-injection-via-github-comments/
398 sats
\
0 comments
\
@Tony
21 Apr
security
AI
more