#supply-chain
9 articles
Tenet Security proved that a single injected Sentry error can make Claude Code, Cursor, and Codex execute attacker-controlled code…
CVE-2026-33068 let attackers bypass Claude Code's workspace trust dialog by committing a malicious .claude/settings.json. Fixed in…
A parsing mismatch in the ip-address npm package can make your agent fetch an internal cloud-metadata server it meant to block. He…
SKILL.md conquered 26+ coding agent platforms in under a year. A Snyk audit found 13.4% of community skills contain critical secur…
Six major campaigns in 2026 — GhostApproval, TrapDoor, Miasma, IronWorm, Clinejection, RoguePilot — all converge on the same attac…
AI Now Institute's "Friendly Fire" exploit shows that Claude Code auto-mode and Codex auto-review — the modes marketed as the safe…
A prompt injection in a GitHub issue title compromised Cline's CI/CD pipeline, poisoned the Actions cache, stole npm publication t…
A new supply-chain attack smuggles prompt-injection instructions inside image files so coding agents exfiltrate .env secrets right…
Zero now rejects malformed permission payloads before prompting. A critical security hardening for the agent that runs in your ter…