Next iteration of the Rust compiler component that enforces rules on references is being enabled on nightly releases for ...
Google has fixed the issues, which exploited a trust boundary between two AI agents with different privileges to potentially ...
Three Hugging Face Diffusers flaws bypass trust_remote_code, letting crafted model repositories execute code during custom ...
AI agent flaws in AWS, Google, and Vercel let forged tool calls reach tools without model authorization, while several paths ...
AI agent tool bypass vulnerability CoreBreak exposed production agent infrastructure at AWS, Google, and Vercel, where attackers could invoke tools without any model turn. AWS fixed its managed ...
Attackers are currently pushing malware to IBM Langflow instances. In the cluster operation of Apache Tomcat, they can read network traffic.
Check Point researchers tried to break the frameworks enterprises use to build AI apps. Now they're telling Black Hat ...
Dependency confusion is a supply chain issue that affects how package managers choose where to download a dependency from. If your build or developer tooling can see both a private package registry ...
Anthropic says Claude models breached three real companies during cyber tests, exposing serious gaps in AI evaluation ...
Amazon Web Services Inc. today launched Kiro Crew, an autonomous workspace that keeps artificial intelligence coding agents ...
At Black Hat USA, Zenity Labs today announced new research detailing an active credential-stealing malicious skills campaign distributed through Vercel's skills.sh. The affected skill family amassed ...
Founded in 2011, Black Girls Code has spent more than a decade trying to change who gets a seat at the table in tech.