Security researchers have uncovered a class of vulnerabilities in agent infrastructure from Amazon Web Services (AWS), Google, and Vercel that allow attackers…
Agent InfrastructureAI SecurityAmazon Bedrock AgentCoreAmazon Web Services
Vercel patched authorization bypass vulnerabilities in the Codex and OpenCode harness packages, removing the process-path fallback and requiring exact one-time authorizations for…
Cybersecurity researchers have uncovered a sophisticated software supply chain attack dubbed 'SleeperGem' targeting the Ruby ecosystem. Three malicious gems were published to…