Malicious npm package indexed-btree impersonated sorted-btree, using nearly 2M weekly downloads to steal data and deliver payloads.
Researchers escaped OpenAI's Codex sandbox two ways, one running commands on a developer's machine from its most locked-down mode. OpenAI has patched both.
Agent memory is not one database or an endlessly growing prompt. It is a designed system for retaining working context, ...
SuperSplat 3 rebuilds its Gaussian-splat editor on WebGPU, shrinking browser memory use and moving sorting, selection and more onto the GPU.
Compare 11 open-source agent harnesses for local LLMs, including OpenCode, Pi, Goose, Cline, OpenHands, Aider, and Codex CLI.
Claude Code Projects could change how developers manage complex AI coding workflows by coordinating threads, sharing memory, and spanning repos, but its biggest benefits are still cloud-only for now.
Four espionage groups used the BlueMoon Chrome+Windows exploit kit within 12 days. Researchers suspect AI development.
Google patched 230 Chrome flaws, including an actively exploited V8 bug that could let attackers run arbitrary code.
Explore the latest news, real-world incidents, expert analysis, and trends in Vulnerability — only on The Hacker News, the leading cybersecurity and IT news platform.
Engineer Tetsuya Wakita built vault-mcp, an open-source system that stores personal AI context in a user-owned Git repo and serves it to any LLM via MCP, making the assistant replaceable while the ...
CISA has added a critical Google Chromium V8 type confusion vulnerability, tracked as CVE-2026-85046, to its Known Exploited ...
The infrastructure surrounding open AI may ultimately be more commercially valuable than many of the individual models flowing through it.
Some results have been hidden because they may be inaccessible to you
Show inaccessible results