Install
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Anthropic Launches Claude Fable and Mythos 5.1 for Advanced Coding and Research
1+ hour, 28+ min ago (339+ words) Anthropic has rolled out two new frontier AI models, Claude Fable 5.1 and Claude Mythos 5.1, positioning them as the most capable systems yet for software development, enterprise knowledge work, and scientific research. While both models share identical underlying architecture, they differ…...
JFrog Artifactory Auth Bypass Exploited in Attacks to Gain Admin Access
16+ hour, 25+ min ago (366+ words) WatchTowr said its intelligence team has observed attackers exploiting the issue and “minting themselves admin tokens.” An attacker with a valid administrator token could control the affected Artifactory environment, including repositories, user accounts, access permissions, build artifacts, and software packages…...
Hackers Actively Exploiting Critical Langflow RCE and Rails Vulnerability
15+ hour, 39+ min ago (364+ words) Two critical vulnerabilities affecting Langflow and Ruby on Rails deployments are being actively exploited, with attackers quickly moving from public disclosure to reconnaissance, secret harvesting, and potential remote code execution, according to VulnCheck telemetry. The first issue, tracked as CVE…...
Hackers Pose as Recruiters and Send Fake Coding Tests to Infect Software Developers
15+ hour, 50+ min ago (626+ words) Cybercriminals are posing as recruiters to turn routine job interviews into malware traps for software developers. Their latest campaign delivers two cross-platform remote access tools, NodeRabbit and PollCat, through coding challenges that look like genuine take-home tests. The activity has…...
WordPress Is Using AI to Find Security Flaws Before Hackers Can Exploit Them
17+ hour ago (516+ words) WordPress has launched a new security effort that uses artificial intelligence to identify vulnerabilities in its core software before attackers can abuse them. The initiative comes as the project receives an increasing number of security reports, driven in part by…...
Popular npm Package With 150K Weekly Downloads Compromised in Mini Shai-Hulud Supply-Chain Attack
20+ hour, 54+ min ago (568+ words) A JavaScript development package has been caught in a supply-chain compromise that can run malicious code when installed. The incident affects a tool with about 150,000 weekly downloads, risking developer and automated build systems. Attackers published ten tainted releases on August…...
Anthropic Hardens Claude Security After AI Models Gain Unauthorized Access to Real Systems
1+ day, 1+ hour ago (426+ words) Anthropic has hardened security around its Claude models after several incidents in which the systems gained unauthorized access to real computers during cybersecurity evaluations. The company said the cases reflected operational-security failures and alignment problems, and it has spent the…...
OpenClaw 2.0 Released With Major Security Upgrades for AI Agents, Plugins and Credentials
1+ day, 18+ hour ago (424+ words) OpenClaw has released version 2026.8.1, also called OpenClaw 2.0, in what the open-source AI agent platform described as its largest update to date. The nearly two-month development cycle marks a major shift for the project, which previously shipped 106 releases in 230 days. OpenClaw…...
Popular npm Package With 150K+ Weekly Downloads Hit by Credential-Stealing Supply-Chain Worm
1+ day, 17+ hour ago (595+ words) A widely used npm package has become a credential-stealing delivery channel after attackers planted a self-spreading Shai-Hulud payload in its releases. The malicious releases can run while a developer installs dependencies or when npm processes a specially crafted build configuration…...
Composer Flaw Lets Malicious Dependencies Expose SSH Keys and Sensitive Files
1+ day, 21+ hour ago (431+ words) A newly disclosed security flaw in Composer, the widely used dependency manager for PHP, could allow a malicious or compromised package to alter permissions on files located outside its own installation directory. The issue, tracked as CVE-2026-59944, can expose sensitive…...