Security researcher Kevin Beaumont got a call last week from a major US technology company that insisted it had nothing to worry about: all the credentials stolen in March's LiteLLM supply chain ...
Researchers found every major AI provider encrypts reasoning tokens with a single global key—and exploited it to decode a trove of data.
A new paper published this week demonstrated that every encrypted reasoning block returned by Anthropic, OpenAI, and Google's AI APIs shares a single global encryption key — meaning any developer who ...
Terabytes worth of credentials, many belonging to the world’s biggest and most sensitive organizations, have been exposed in a supply-chain attack on LiteLLM, an open source tool that streamlines ...
Microsoft Threat Intelligence examines DeadLock ransomware, an emerging financially motivated operation distinguished by its ...
This week’s cybersecurity recap covers rogue AI behavior, an exploited Metabase zero-day, MCP supply-chain attacks, router backdoors, and more.