GitHub has introduced a significant update to its CodeQL engine, enabling developers to define custom sanitizers and ...
Hugging Face hosts 352,000 unsafe model issues. ClawHub's registry contains 341 malicious AI agent skills. The AI supply chain is now the most attractive target in software security.
A North Korean APT has crafted malicious software packages to appeal to AI coding agents, while ‘slopsquatting’ shows the ...
Every time a developer types npm install, they are placing a bet that the package they are pulling into their project is not ...
CLI-Anything generates SKILL.md files that AI agents trust and execute. Snyk found 13.4% of agent skills contain critical ...
Critical cPanel flaw under attack, Copy Fail Linux privilege escalation, TeamPCP supply chain campaign, GitHub RCE & major ...
OpenMythos is a from-scratch attempt to reconstruct the architecture behind Claude Mythos, the model Anthropic refuses to ...
A new malware framework called PCPJack is stealing credentials from exposed cloud infrastructure while actively removing ...
This episode looks back at a history-making column with author Steve Stasiukonis and Dark Reading's Becky Bracken and Kelly ...
Dive into The Register's online archive of incisive tech news reporting, features, and analysis dating back to 1998 ...