Full Archive · Page 7

Research archive, page 7

Browse entries 145–168 of 1127. Return to the first page to search and filter the complete collection.

The Hacker News AI Security August 12, 2026 news

Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations

LiteLLM versions 1.82.7 and 1.82.8 were malicious PyPI releases available for about 40 minutes on March 24. A .pth file executed at Python startup and collected environment variables, SSH keys, cloud credentials, Kubernetes tokens, and database secrets. CloudSEK's later dataset indicates broad exposure, but its organization and file totals are not confirmed victim counts or evidence that stolen credentials were used.

SecurityWeek AI Security August 14, 2026 news

Trivy, Not LiteLLM Behind the 2,500 Org Compromise

SecurityWeek reports that updated exposure analysis shifts the dominant source of the TeamPCP blast radius upstream from the malicious LiteLLM releases to the earlier Trivy supply-chain compromise. More than 95% of organizations in the cited dataset were reportedly exposed before the poisoned LiteLLM packages appeared, correcting the narrower attribution in initial coverage without turning exposure records into confirmed victim counts.

OpenAI News April 30, 2026 news

Introducing Advanced Account Security

OpenAI's opt-in Advanced Account Security applies to ChatGPT and Codex. It replaces password login with passkeys or FIDO security keys, disables email and SMS recovery, shortens sessions, adds login alerts and session management, and automatically excludes conversations from model training. The stronger recovery model also means support cannot restore access for an enrolled user.