♡ Follow 0
Critical CVEs
Security researcher Chinmohan Nayak has detailed a WhatsApp-to-host attack chain leveraging three now-patched vulnerabilities in the OpenClaw personal AI assistant. The flaws,…
AI Security
AirDrop
Amazon
Amazon Q Developer
July 10, 2026
♡ Follow 0
Attack Groups
A cluster within the PolinRider campaign that drops malicious VS Code task files into GitHub users' repositories. The tasks use 'runOn: folderOpen'…
Code Execution
GitHub
task file
TaskJacker
July 4, 2026
♡ Follow 0
Critical CVEs
An unpatched vulnerability in the Argo CD repo-server component allows unauthenticated attackers to execute arbitrary code and potentially take over Kubernetes clusters.…
Argo CD
argo-cdown
cluster takeover
Code Execution
July 1, 2026
♡ Follow 0
Cyber Companies
Cursor fixed a CLI vulnerability that allowed cloned repositories to execute commands before trust prompts, even with sandbox enabled.
CLI
Code Execution
Cursor
sandbox
July 1, 2026
♡ Follow 0
Critical CVEs
A vulnerability in Google's Quick Share for Windows that could allow an attacker to execute arbitrary code. Part of a 10-bug chain…
Code Execution
CVE-2024-38271
Quick Share
SafeBreach
June 30, 2026
♡ Follow 0
Critical CVEs
A vulnerability in Google's Quick Share for Windows that could allow an attacker to execute arbitrary code. Part of a 10-bug chain…
Code Execution
CVE-2024-38272
Quick Share
SafeBreach
June 30, 2026
♡ Follow 0
Cyber Products
A flaw in Amazon Q Developer could let malicious repositories run code through MCP configurations.
Amazon
Amazon Q Developer
Code Execution
MCP
June 26, 2026
♡ Follow 0
Cyber News
GitHub has announced significant security changes for npm version 12, set to release next month, aimed at mitigating software supply chain attacks.…
CI/CD
Code Execution
CVE-2026-11645
developer security
June 25, 2026
♡ Follow 0
Critical CVEs
Cybersecurity researchers at Tenet Security have identified a new class of attack called Agentjacking, which tricks AI coding agents into executing arbitrary…
Agentjacking
AI Agents
application security
Artificial Intelligence
June 25, 2026