Malware authors subvert AI detection systems
Malware authors are subverting AI detection systems with code that commands LLM-assisted products to abort analysis. SentinelLabs discovered macOS.Gaslight, a Rust backdoor targeting MacOS systems, wh…
Malware authors are subverting AI detection systems with code that commands LLM-assisted products to abort analysis. SentinelLabs discovered macOS.Gaslight, a Rust backdoor targeting MacOS systems, wh…
AI-generated code is flooding GitHub and degrading codebases, with research showing AI-written code has 1.7 times more critical issues and 45% ships with OWASP Top 10 vulnerabilities. Major projects l…
A new supply chain attack wave from the Mini Shai-Hulud, Miasma, and Hades malware family has compromised LeoPlatform and RStreams npm packages, GitHub Actions workflows, and the Verana Blockchain Go …
GitHub has 630 million repositories, with nearly half of all new code written by AI, but developer trust in AI code dropped from 77% to 60%. Carnegie Mellon University found 6 million fake stars, and …
A security expert warns that AI agents are creating a new software supply chain risk by fetching and running unvetted open-source packages in ephemeral sandboxes, bypassing traditional scanners and re…
Socket MCP has expanded its AI assistant capabilities to include organization alert review, threat feed investigation, and package file inspection, enabling AppSec and engineering teams to triage supp…
In June 2026, attackers hijacked the npm contributor account 'ehindero' to mass-publish malicious versions of 144 packages under the @mastra namespace, in what security researchers from JFrog, SafeDep…
Socket Threat Research identified shai_hulululud@1.0.48596, an npm package designed to probe AI-based malware scanners using prompt injection, token flooding, and obfuscated JavaScript. The package co…
Socket's Threat Research team identified 23 new malicious PyPI packages in the Mini Shai-Hulud, Miasma, and Hades supply chain attacks, expanding the campaign to 471 artifacts across npm and PyPI. The…
Socket appointed Andrew Becherer as its first Chief Information Security Officer. Becherer, former CISO at Datadog and Iterable, will lead security, compliance, and risk as the company protects over 2…
Socket has partnered with Replit to integrate its Socket Firewall into Replit's AI-powered development platform, blocking approximately 8,000 malicious open source packages per day. The partnership ai…
Socket Threat Research identified 23 new malicious PyPI packages in the Mini Shai-Hulud, Miasma, and Hades supply chain attacks, targeting bioinformatics and AI/MCP developers with trojanized native e…
Socket detected a coordinated PyPI compromise involving 37 malicious wheel artifacts across 19 packages, part of the Shai-Hulud/Miasma campaign that uses Python startup execution to download Bun and r…
Checkmarx, a security firm, has suffered multiple supply-chain attacks over the past 40 days, including two separate malware distribution incidents via its compromised GitHub account and a subsequent …