|
You are here |
www.sysdig.com | ||
| | | | |
thehackernews.com
|
|
| | | | | Shai-Hulud v2 breached npm and Maven, impacting 28,000+ repos and leaking 11,858 secrets. | |
| | | | |
www.sonatype.com
|
|
| | | | | Crypto stealers are posing as IP checker utilities on npm, targeting Windows, Linux and macOS users with new open source malware campaigns. | |
| | | | |
blog.gitguardian.com
|
|
| | | | | AI adoption accelerates secret sprawl as organizations connect to multiple providers. Our investigation of a leaked xAI API key, which granted access to unreleased Grok models, reveals critical flaws in their disclosure process, highlighting necessary improvements in this domain. | |
| | | | |
berthub.eu
|
|
| | | The final compromise text of the EU Cyber Resilience Act is now officially available, and various open source voices are currently opining on it. This is a complex act and other parts of the open source world (like the Eclipse Foundation and NLNet Labs) have been hard at work to advocate with the EU and member states to get a CRA that is good for open source. I've also been highly critical. | ||