A flaw in Anthropic's Claude for Chrome browser extension could allow a malicious extension to trigger predefined AI actions ...
New TELEPUZ malware spreads through ClickFix, then steals browser cookies, logs keystrokes, runs commands, and installs itself as a Windows service.
2don MSN
Anthropic's Claude extension still contains security vulnerabilities despite multiple updates
Unpatched Claude extension flaws could allow hijacking of Gmail and Google Docs workflows ...
AWS Kiro prompt injection flaw let hidden web page text rewrite the IDE’s MCP configuration file and silently execute ...
AWS fixed a Kiro prompt injection chain that rewrote mcp.json and launched attacker-controlled code with developer privileges ...
Hackers are exploiting the "wp2shell" critical vulnerability suite (CVE-2026-63030 and CVE-2026-60137) affecting WordPress ...
Threat actors compromised AsyncAPI packages and weaponized trusted CI/CD workflows to distribute malware through npm. This ...
Stolen and leaked credentials lead to Node.js packages from AsyncAPI and Jscrambler Code Integrity being poisoned with ...
Attackers were found using a Lua-based malware loader posing as a TrueType font tile, with layered obfuscation and fileless execution to deploy stealers and persistent trojans.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results