Cline CLI 2.3.0 was published with a stolen npm token, installing OpenClaw in an 8-hour attack affecting ~4,000 downloads.
The Register on MSN
AI coding assistant Cline compromised to create more OpenClaw chaos
4K unintended installs in very odd supply chain attack Someone compromised open source AI coding assistant Cline CLI's npm package earlier this week in an odd supply chain attack that secretly ...
While the AI itself wasn’t weaponized, the technique raises concerns about AI agents with broad system access.
OpenAI, along with Paradigm and Ottersec, has released the EVMbench research paper, looking at how well different AI models can detect, patch up, and exploit smart contract vulnerabilities.
ActiveState, a global leader in open source language solutions and secure software supply chain management, today announced it has grown its catalog of secure open source components to 79 million, ...
Some results have been hidden because they may be inaccessible to you
Show inaccessible results