Datadog Security Labs has uncovered several overlapping campaigns that leverage dormant GitHub accounts—some created two to five years ago—to systematically enumerate corporate…
API SecurityCloud SecurityCVE-2026-46817CVE-2026-55200
Datadog Security Labs identified campaigns using dormant GitHub accounts for corporate reconnaissance, highlighting risks in API usage and supply chain security.
GitHub has officially released npm version 12, introducing significant security changes to reduce software supply chain risks. The most notable change is…
The cybersecurity landscape is witnessing a surge in vulnerability clearinghouse announcements, but according to this analysis, most will fail because they focus…
Security researchers at Wiz have identified a critical vulnerability pattern, dubbed GhostApproval, affecting six popular AI coding assistants. The flaw allows a…
Researchers from Tel Aviv University, Technion, and Intuit have identified a novel attack vector called HalluSquatting that exploits AI coding assistants' tendency…