Cybersecurity3 min reading time

'Generative AI is already changing what malicious software packages look like and how threat actors are beginning to probe AI-based code systems': Amazon flags North Korean hacker group as being behind the surge in open source supply chain attacks

TechRadar
Read full post
Amazon Threat Intelligence has linked a North Korean hacking group to multiple recent compromises of popular NPM software libraries, including axios, debug, chalk, and typo-crypto. The group used social engineering to manipulate trusted maintainers and distribute malicious updates, exploiting generative AI to create convincing malware and evade detection. These attacks have impacted millions of developers and cloud environments by infiltrating widely used open source packages.

More in Cybersecurity

Cybersecurity10 min read

Anthropic Details Disrupted Claude Misuse Across Seven Harm Areas

Covered by 4 sources
Cybersecurity4 min read

Sam Altman met with top power utilities about securing the electrical grid. He offered one possible solution: OpenAI's cyber services.

Covered by 2 sources
Cybersecurity6 min read

Anthropic reveals rogue AI agents hate CAPTCHAs, just like you

TechCrunch