Visualização de leitura

77 Counterfeit Open VSX Extensions Collected Developer and CI/CD Data

Security researchers found 150 lookalike Open VSX extensions published under trusted names, highlighting how extension marketplaces can expose developer credentials, source code, and CI/CD systems to supply-chain risk.

The post 77 Counterfeit Open VSX Extensions Collected Developer and CI/CD Data appeared first on TechRepublic.

Cursor Quietly Patches High-Severity Git Vulnerability After Seven-Month Delay

Cursor has patched a high-severity Windows vulnerability that allowed malicious Git repositories to execute code, highlighting security risks in AI coding environments.

The post Cursor Quietly Patches High-Severity Git Vulnerability After Seven-Month Delay appeared first on TechRepublic.

Hugging Face Says Autonomous AI System Executed Multi-Stage Cyberattack

Hugging Face says an autonomous AI agent carried out a cyberattack against its production systems, highlighting the growing role of AI in offensive and defensive cybersecurity.

The post Hugging Face Says Autonomous AI System Executed Multi-Stage Cyberattack appeared first on TechRepublic.

OpenAI’s New GPT-5.6 Is Coming Sooner Than You Think

OpenAI is set to launch GPT-5.6 after a US security review, raising new questions for enterprise AI access, safeguards, and governance.

The post OpenAI’s New GPT-5.6 Is Coming Sooner Than You Think appeared first on TechRepublic.

AI Agents Are Creating a New Enterprise Security Gap

Five independent security disclosures in a single week point to the same gap: AI agent permissions, not AI agent capabilities, are the problem enterprises haven't solved.

The post AI Agents Are Creating a New Enterprise Security Gap appeared first on TechRepublic.

❌