Content Paint

cybersecurity

Vercel breach: GitHub, npm tokens reported stolen

Infostealer researchers trace the breach to dodgy Roblox downloads at third party AI tool.

Critical MCP vulnerability in nginx-UI now actively exploited in the wild

The popular nginx-UI tool, with over 11,000 stars on GitHub and 430,000 Docker pulls, is missing authentication middleware.

Anthropic's zero day machine "Mythos" triggers hype, criticism

Canny marketing but “vulnpocalypse” fears are real

A hitchhiker's guide to RSAC: what you may have missed, from post-quantum to NSA veterans

Iain Thomson wraps up the most notable dispatches from the biggest security conference of the year.

A child using an abacus. Google has counted four zero day vulnerabilities in Chrome this March.

Chrome has already seen half as many zero days this year as it did in 2025.

Security researchers are in the last-chance saloon to save their jobs from AI

Katie Moussouris calls on security researchers to sandbag human-in-the-loop processes against AI automation.

Open source scanner compromise reveals CI/CD's vulnerable underbelly

"GitHub’s Immutable badge was intended as a trust signal..."

"I have customers running things on Humvees in the desert... Choose your own adventure"

EU sanctions and CISA warnings: Iran's cyber attacks are evolving

Iran's tradecraft is evolving, and sanctions can't keep up.

Search the site

Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Great! You've successfully signed up.
Great! You've successfully signed up.
Welcome back! You've successfully signed in.
Success! You now have access to additional content.