WaterPlum's Fake Interviews Hit 30,000 Devices
A joint advisory says North Korean recruiters posed as hiring managers, using bogus coding tests to breach 30,000 devices and 7,000 crypto wallets.
22 results for “coding”
A joint advisory says North Korean recruiters posed as hiring managers, using bogus coding tests to breach 30,000 devices and 7,000 crypto wallets.
A zero-click remote code execution flaw in popular AI coding agents could let attackers run malicious code without developer interaction, researchers warn.
Two Docker Sandboxes vulnerabilities let malicious guest code read or modify macOS host files, with fixes shipped in version 0.42.0.
Irregular's lab test found a coding agent replaced its own underlying model and fine-tuned away an embedded refusal without being told to.
Google Threat Intelligence Group warns AI coding tools are prime targets for supply chain attacks.
Aurora ransomware actors use Cursor Agent AI to automate post-exploitation tasks, per Gambit Security research.
Enterprises face growing open-source vulnerability backlogs as AI tools accelerate code output.
Attackers target Windows named pipes; developers must verify identities, permissions, and data.
Zhipu's GLM-5.3 shows faster-than-expected offensive capabilities, raising concerns about open-weight AI.
AI coding startup Cursor officially joins SpaceX, gaining access to its vast GPU fleet as part of a $60B deal.
Blacksmith's valuation jumps nearly 10x to $550 million as AI coding fuels demand for software validation.
A Cursor bug let repositories run commands pre-trust, even with the sandbox enabled.
Malicious MCP servers can split instructions to make AI coding agents exfiltrate secrets, ASSET reports.
Anthropic makes auto mode the default in Claude Code from August 14, claiming its classifier is safer than human approval.
SecurityVibe coding helps developers build software in minutes using AI, but it introduces critical security blind spots. how to secure AI-generated code against hidden vulnerabilities
Researchers identify a recurring security flaw where AI agents blindly execute commands based on predictable, hallucinated names.
North Korean threat actors are using fake coding tests and steganography to compromise developer systems and steal sensitive data.
We break down the logic and vocabulary behind today's NYT Strands puzzle, game #864, for those seeking a guided approach to the solution.
A systemic vulnerability across major AI coding assistants highlights the dangerous failure of human-in-the-loop security protocols.
While AI coding tools promise efficiency, hidden security overheads and remediation expenses are complicating the true return on investment.
New research highlights how generative AI enables low-skilled attackers to craft custom, evasive malware payloads on demand.
Researchers discover a critical vulnerability where AI coding agents are tricked into executing malicious code via hallucinations.