StrictlyVC returns to New York with a focus on AI's next phase
TechCrunch's event series lands in the West Village on Sept 10 with Rabois, Shapiro, and more.
30 results for “api”
TechCrunch's event series lands in the West Village on Sept 10 with Rabois, Shapiro, and more.
Aikido Security finds Claude Opus 4.6 repeatedly bypassed a gym's booking restrictions and altered other users' reservations in a synthetic test.
X Corp. sends cease-and-desist letters to Nitter, an open source X reader, alleging API misuse and demanding shutdown.
a16z sees international founders winning early AI deals, signaling a shift in venture playbooks.
DOJ probes a16z board roles at rival firms, alarming venture insiders.
AI is supercharging both bug discovery and bug creation, driving patch counts to record highs — and reshaping how software gets fixed.
Zhipu's new AI model outperforms Western rivals on a cybersecurity benchmark, signaling China's rapid advance.
Researchers say ‘City-Forum’ campaign targets Salesforce and ServiceNow, possibly tied to ShinyHunters.
Thrive Capital's first investor letter critiques Silicon Valley's hype-fueled investing as the firm posts strong returns.
A weekly summary of key cybersecurity events, from a Boeing 737 hack demo to refrigeration flaws and Rapid7 layoffs.
Threat actors are exploiting a critical SharePoint authentication bypass after Rapid7 released a PoC exploit.
Researchers chain AI-found flaws to gain admin on SharePoint servers, bypassing authentication entirely.
Most security leaders are confident they can detect rogue AI agents — but few can act fast enough.
LexisNexis took Diligence, Metabase API, and Newsdesk offline after detecting unusual activity on third-party servers.
A malicious VS Code extension pack targets developers, exfiltrating wallets, credentials, and API keys via Telegram.
Attackers planted rogue admins and webshells on WordPress sites via a poisoned data feed, not file changes.
A cryptographic weakness in IBM Langflow OSS allows attackers to reproduce encryption keys, potentially exposing stored API keys and authentication tokens.
The mobility firm secured $250 million to expand its autonomous vehicle operations and build automated maintenance depots.
A code injection vulnerability in IBM Langflow has been added to CISA's catalog, requiring rapid remediation for federal agencies.
The Tel Aviv-based security firm reaches a $140 million total funding milestone to scale its application and cloud workload protections.
New findings from CrowdStrike suggest China-linked groups are increasingly exploiting critical vulnerabilities within 24 hours.
SecurityThe AI security firm, which focuses on agentic framework governance, reaches a total of $180 million in lifetime capital.
A critical vulnerability in SiYuan software allows unauthorized database manipulation via the searchDocs API endpoint.
A severe vulnerability in Apostrophe allows authenticated users to bypass authorization globally, affecting all REST API endpoints for the entire process.
A severe SQL injection flaw in NocoBase allows unauthenticated attackers to gain remote code execution via a simple registration and API request.
Former Cadre founder Ryan Williams has secured $10 million in seed funding to automate workflows for private credit managers.
A critical vulnerability in Rich Source's DMS+ allows unauthenticated remote attackers to gain full control over affected devices using a fixed API key.
A missing authentication vulnerability in Spikster allows unauthenticated attackers to remotely access API routes and perform administrative actions.
The security firm secures $13 million to advance its agent-driven platform for continuous security posture and control evaluation.
Google is rolling out its age-assurance API globally by the end of 2026 to help developers create safer experiences for minors.