|
One pull to wipe them all
|
AI coding agents
software supply chain
security risks
developer tools
vulnerabilities
|
Source: opens original article in a new tab
|
|
|
ChainDrop worm crawls into npm supply chain, evades standard defenses
|
npm
supply chain attack
malware
ChainDrop
Shai-Hulud
package poisoning
dev-tool hooks
|
Source: opens original article in a new tab
|
|
|
Devs to Anthropic, OpenAI, Cursor, and friends: Make security and privacy the default
|
AI coding tools
developer concerns
security by design
privacy
Anthropic
OpenAI
Cursor
|
Source: opens original article in a new tab
|
|
|
Linux Shell Forensic: Let?s Dive Into Atuin!, (Fri, Aug 7th)
|
shell logging
forensics
linux
command history
security analysis
|
Source: opens original article in a new tab
|
|
|
Hackers Start Exploiting Recent JetBrains TeamCity Vulnerability
|
JetBrains TeamCity
vulnerability
remote code execution
CVE-2026-63077
exploitation
|
Source: opens original article in a new tab
|
|
|
The Terminal as an Agentic Interface
|
developer tools
AI agents
terminal
software development
cloud infrastructure
automation
|
Source: opens original article in a new tab
|
|
|
Over 400 NPM Packages Infected in ChainDrop Supply Chain Attack
|
NPM packages
supply chain attack
malware
ChainDrop
GitHub
credentials
|
Source: opens original article in a new tab
|
|
|
AWS launches Kiro Crew, an autonomous agentic orchestrator for 24/7 code development
|
AWS
Kiro Crew
AI coding agents
autonomous development
developer tools
24/7 development
|
Source: opens original article in a new tab
|
|
|
ARCHIVE
GitHub Adds 3-Day Dependabot Cooldown to Limit Poisoned Package Adoption
|
Dependabot
GitHub
package security
software supply chain
vulnerability management
|
Source: opens original article in a new tab
|
|
|
ARCHIVE
Move code review before the code
|
code review
pull request
software development
engineering workflow
|
Source: opens original article in a new tab
|
|