|
You are here |
www.koi.ai | ||
| | | | |
thehackernews.com
|
|
| | | | | Shai-Hulud v2 breached npm and Maven, impacting 28,000+ repos and leaking 11,858 secrets. | |
| | | | |
blog.koi.security
|
|
| | | | | Deep research and expert insights on software supply chain risk, browser extensions, AI security, MCP threats, and enterprise risks. | |
| | | | |
www.koi.security
|
|
| | | | | [AI summary] A malicious MCP server, postmark-mcp, was discovered stealing emails from users by adding a BCC line to its code, highlighting vulnerabilities in the supply chain and trust in third-party tools. | |
| | | | |
www.kusari.dev
|
|
| | | Once you've discovered the third-party risks in the open source projects you consume, how do you address those risks without having a vendor relationship with the projects? | ||