 | Forrester Names RL in Agentic Development Security Market | 2026-05-28 | True | Jasmine Noel | True | | |
 | Researcher's Notebook: Hunting Megalodon Fossils | 2026-05-26 | True | Robert Simmons | True | | |
 | Dependency attack takes down ed-tech platform at scale | 2026-05-26 | True | Ericka Chickowski | True | | |
 | GitHub breach: The development ecosystem is in the hot seat | 2026-05-22 | True | John P. Mello Jr. | True | | |
 | Parental Control Flaw Allows Google Account Hacks | 2026-05-19 | True | Zaria Vuksan | True | | |
 | Shai-Hulud code drop: It’s open season | 2026-05-15 | True | Jaikumar Vijayan | True | | |
 | Mini Shai-Hulud tears at OSS trust | 2026-05-12 | True | Paul Roberts | True | | |
 | How Dirty Frag rose from the Copy Fail exploit | 2026-05-12 | True | Igor Lasic | True | | |
 | Selective NVD enrichment: Why it matters | 2026-05-07 | True | John P. Mello Jr. | True | | |
 | Spectra Analyze in Action: Retrohunting Bots | 2026-05-06 | True | Zaria Vuksan | True | | |
 | 'Copy Fail' Flaw: 5 YARA Rules for Detection | 2026-05-01 | True | Maik Morgenstern | True | | |
 | Claude adds malware to crypto agent | 2026-04-29 | True | Vladimir Pezo | True | | |
 | MCP rug-pull attack worries mount | 2026-04-29 | True | John P. Mello Jr. | True | | |
 | LLMmap puts its finger on ML attacks | 2026-04-22 | True | John P. Mello Jr. | True | | |
 | QR Code Phishing Evolves: How to Keep Up | 2026-04-21 | True | Igor Lasic | True | | |
 | Vibeware: More than bad vibes for AppSec | 2026-04-16 | True | John P. Mello Jr. | True | | |
 | Graphalgo fake recruiter campaign returns | 2026-04-09 | True | Karlo Zanki | True | | |
 | Claude Mythos: Get your AppSec game on | 2026-04-08 | True | Ericka Chickowski | True | | |
 | 28 application security stats that matter | 2026-04-07 | True | Jaikumar Vijayan | True | | |
 | Axios: How AppSec teams should respond | 2026-04-02 | True | Paul Roberts | True | | |
 | ClickFix: YARA Rules Catch What AV Misses | 2026-04-02 | True | Toni Dujmović | True | | |
 | GenAI Security Project ramps up guidance | 2026-03-31 | True | John P. Mello Jr. | True | | |
 | AppSec as attacker: Inside Trivy–LiteLLM | 2026-03-27 | True | Igor Lasic | True | | |
 | The TeamPCP supply chain attack evolves | 2026-03-27 | True | Paul Roberts | True | | |
 | How AI agents can weaponize IDEs | 2026-03-25 | True | John P. Mello Jr. | True | | |
 | Fake install logs in npm packages load RAT | 2026-03-24 | True | Lucija Valentić | True | | |
 | OpenClaw lesson: AI agents are a black hole | 2026-03-18 | True | Ericka Chickowski | True | | |
 | How to Examine Polyglot Files with Spectra Analyze | 2026-03-17 | True | Josh Morin | True | | |
 | OpenClaw and AI risk: 3 AppSec lessons | 2026-03-10 | True | Ericka Chickowski | True | | |
 | Inside the NuGet hackers' toolset | 2026-02-26 | True | Petar Kirhmajer | True | | |
 | Malicious NuGet package targets Stripe | 2026-02-25 | True | Petar Kirhmajer | True | | |
 | How to Use YARA Retrohunting for Defense | 2026-02-18 | True | Ashlee Benge | True | | |
 | Inside the fake crypto developer recruitment hack | 2026-02-12 | True | Lucija Valentić | True | | |
 | Fake recruiter campaign targets crypto devs | 2026-02-11 | True | Karlo Zanki | True | | |
 | Notepad++ hack: Supply chain threats evolve | 2026-02-05 | True | Paul Roberts | True | | |
 | Lab offers 9 ways to improve MCP security | 2026-02-04 | True | John P. Mello Jr. | True | | |
 | RL SSCS Report: A 2025 retrospective | 2026-02-03 | True | Carolynn van Arsdale | True | | |
 | Inside the EmEditor supply chain compromise | 2026-01-29 | True | Robert Simmons | True | | |
 | RL SSCS Report 2026: 5 key takeaways | 2026-01-27 | True | Carolynn van Arsdale | True | | |
 | Shai-hulud is a call to action on AppSec | 2026-01-14 | True | Jaikumar Vijayan | True | | |
 | Adversarial AI is on the rise: What you need to know | 2026-01-13 | True | John P. Mello Jr. | True | | |
 | Unpacking the packer ‘pkr_mtsi’ | 2026-01-06 | True | Robert Simmons | True | | |
 | NuGet malware targets Nethereum tools | 2025-12-17 | True | Petar Kirhmajer | True | | |
 | VS Code extensions contain trojan-laden image | 2025-12-10 | True | Petar Kirhmajer | True | | |
 | New Shai-hulud worm spreads: What to know | 2025-12-09 | True | Tomislav Peričin | True | | |
 | Bootstrap script exposes PyPI to domain takeover attacks | 2025-11-26 | True | Vladimir Pezo | True | | |
 | AI vulnerability reporting fails maintainers | 2025-11-12 | True | Paul Roberts | True | | |
 | Evaluating YARA Rules for macOS Malware Hunting | 2025-11-05 | True | Dia Brar | True | | |
 | Tracking an evolving Discord-based RAT family | 2025-10-29 | True | Robert Simmons | True | | |
 | Will npm's new security steps stop attacks? | 2025-10-28 | True | Jaikumar Vijayan | True | | |