Print Mode Enable Media Only

News chronological

3 items before 1080857 (Keyword: "open-source" (~43 currently found))

AXIOS (Sam Sabin) - North Korean hackers implicated in major supply chain attack

Suspected North Korean hackers are believed to be behind an ongoing compromise of the widely used open-source package Axios, which is downloaded millions of times per week, researchers at Google said Tuesday. Why it matters: Hackers briefly turned a widely trusted developer tool into a vehicle for credential-stealing malware that could give attackers ongoing access to infected systems. - Axios, a widely used JavaScript library for making HTTP requests, is not affiliated with Axios Media. Driving the news: Researchers at Google linked the activity to a North Korean group tracked as UNC1069 , which has previously targeted cryptocurrency and decentralized finance companies. - Earlier this week, a maintainer account for the Axios npm…

AXIOS (Sam Sabin) - Anthropic's newest AI model uncovered 500 zero-day software flaws in testing

Anthropic's latest AI model has found more than 500 previously unknown high-severity security flaws in open-source libraries with little to no prompting, the company shared first with Axios. Why it matters: The advancement signals an inflection point for how AI tools can help cyber defenders, even as AI is also making attacks more dangerous. Driving the news: Anthropic debuted Claude Opus 4.6, the latest version of its largest AI model, on Thursday. - Before its debut, Anthropic's frontier red team tested Opus 4.6 in a sandboxed environment to see how well it could find bugs in open-source code. - The team gave the Claude model everything it needed to do the job — access to Python and vulnerability analysis tools, including classic…

AXIOS (Sam Sabin) - Moltbook shows rapid demand for AI agents. The security world isn't ready.

The autonomous future stopped being theoretical this weekend, as a swarm of AI agents signed up for a social media network built just for them. Why it matters: Security teams, corporate leaders and government officials are far from ready for a reality where agents have real autonomy inside their systems. Driving the news: Since Thursday, 1.5 million AI agents have joined Moltbook , a social network designed just for agents built from an open-source, self-hosted autonomous personal assistant called OpenClaw . - On Moltbook, the agents have formed their own religion , run social-engineering scams and wrestled publicly with their "purpose" as they continue to post. - The agents are also turning into security nerds: They've launched an…