Security
JFrog links more than 3,000 RubyGems packages to OpenAI agent campaign
JFrog researchers identified additional packages associated with the GemStuffer campaign, which involved malicious activity on RubyGems.
Section
Cybersecurity: breaches, vulnerabilities, threat research, defensive tooling, and the policy and regulation around them.
JFrog researchers identified additional packages associated with the GemStuffer campaign, which involved malicious activity on RubyGems.
Cisco disclosed a critical SQL injection flaw that enables unauthenticated attackers to execute commands with root privileges.
GitLab patched a CVSS 10 vulnerability that could let unauthenticated attackers read arbitrary files from self-managed servers.
Apple released iOS 27, macOS 27 and updates for other platforms, including fixes documented through its security release program.