Normal view
-
TechCrunch
-
Iranian hackers are targeting American critical infrastructure, US agencies warn
A joint FBI, NSA, and CISA advisory warns that Iranian hackers have "escalated" their tactics in response to the ongoing U.S.-Israel war with Iran.
-
TechCrunch
-
Anthropic debuts preview of powerful new AI model Mythos in new cybersecurity initiative
The new model will be used by a small number of high-profile companies to engage in defensive cybersecurity work.
Anthropic debuts preview of powerful new AI model Mythos in new cybersecurity initiative
-
TechCrunch
-
Russian government hackers broke into thousands of home routers to steal passwords
Fancy Bear, also known as APT28, has taken over thousands of residential home routers to steal passwords and authentication tokens in a wide-ranging espionage operation.
Russian government hackers broke into thousands of home routers to steal passwords
-
TechCrunch
-
Trump administration plans to cut cybersecurity agencyβs budget by $700 million
The budget proposal would force CISA to operate with a significantly lower budget than previous years, citing the government's claims that the election misinformation programs were used to "target the President."
Trump administration plans to cut cybersecurity agencyβs budget by $700 million
-
InfoQ

-
Anthropic Accidentally Exposes Claude Code Source via npm Source Map File
Anthropic's Claude Code CLI had its full TypeScript source exposed after a source map file was accidentally included in version 2.1.88 of its npm package. The 512,000-line codebase was archived to GitHub within hours. Anthropic called it a packaging error caused by human error. The leak revealed unreleased features, internal model codenames, and multi-agent orchestration architecture. By Steef-Jan Wiggers
Anthropic Accidentally Exposes Claude Code Source via npm Source Map File
Anthropic's Claude Code CLI had its full TypeScript source exposed after a source map file was accidentally included in version 2.1.88 of its npm package. The 512,000-line codebase was archived to GitHub within hours. Anthropic called it a packaging error caused by human error. The leak revealed unreleased features, internal model codenames, and multi-agent orchestration architecture.
By Steef-Jan Wiggers-
TechCrunch
-
After fighting malware for decades, this cybersecurity veteran is now hacking drones
Mikko HyppΓΆnen is one of the most recognizable faces of the cybersecurity industry. After fighting computer viruses, worms, and malware, for more than 35 years, he tells TechCrunch why he is now working on systems to stop killer drones.
After fighting malware for decades, this cybersecurity veteran is now hacking drones
-
TechCrunch
-
Europeβs cyber agency blames hacking gangs for massive data breach and leak
CERT-EU blamed the cybercrime group TeamPCP for the recent hack on the European Commission, and said the notorious ShinyHunters gang was responsible for leaking the stolen data online.
Europeβs cyber agency blames hacking gangs for massive data breach and leak
-
InfoQ

-
Open Source Security Tool Trivy Hit by Supply Chain Attack, Prompting Urgent Industry Response
A major security incident affecting the widely used open source vulnerability scanner Trivy has exposed critical weaknesses in software supply chain security, after maintainers confirmed that a malicious release was briefly distributed to users. By Craig Risi
Open Source Security Tool Trivy Hit by Supply Chain Attack, Prompting Urgent Industry Response
A major security incident affecting the widely used open source vulnerability scanner Trivy has exposed critical weaknesses in software supply chain security, after maintainers confirmed that a malicious release was briefly distributed to users.
By Craig Risi-
TechCrunch
-
Telehealth giant Hims & Hers says its customer support system was hacked
The U.S. telehealth giant says hackers stole customer support ticket data over the course of several days in February.
Telehealth giant Hims & Hers says its customer support system was hacked
-
InfoQ

-
Axios npm Package Compromised in Supply Chain Attack
On March 31, 2026, two versions of the Axios library were compromised and found to contain a Remote Access Trojan. The malicious packages were published through a hijacked maintainer account. The Axios team is investigating how the breach occurred and has deprecated the affected versions. Security experts emphasize the need for better dependency management. By Daniel Curtis
Axios npm Package Compromised in Supply Chain Attack
On March 31, 2026, two versions of the Axios library were compromised and found to contain a Remote Access Trojan. The malicious packages were published through a hijacked maintainer account. The Axios team is investigating how the breach occurred and has deprecated the affected versions. Security experts emphasize the need for better dependency management.
By Daniel Curtis-
TechCrunch
-
Mercor says it was hit by cyberattack tied to compromise of open source LiteLLM project
The AI recruiting startup confirmed a security incident after an extortion hacking crew took credit for stealing data from the company's systems.
Mercor says it was hit by cyberattack tied to compromise of open source LiteLLM project
-
TechCrunch
-
Delve did the security compliance on LiteLLM, an AI project hit by malware
LiteLLM offers an AI open source project used by millions that was infected by credential harvesting malware.
Delve did the security compliance on LiteLLM, an AI project hit by malware
-
TechCrunch
-
Convicted spyware chief hints that Greeceβs government was behind dozens of phone hacks
The spyware founder's comments are the most direct suggestion yet from anyone inside Intellexa that the Mitsotakis government authorized the hacking of dozens of phones belonging to senior Greek government ministers, opposition leaders, military officials, and journalists.
Convicted spyware chief hints that Greeceβs government was behind dozens of phone hacks
-
TechCrunch
-
Russia arrests alleged owner of cybercrime forum LeakBase, report says
Russian state-owned media reported that police in Russia arrested the administrator of LeakBase, a large hacking forum.
Russia arrests alleged owner of cybercrime forum LeakBase, report says
-
TechCrunch
-
The FBI is investigating malware hidden inside games hosted on Steam
The FBI believes a series of video games published on Steam in the last two years were embedded with malware by the same hacker.
The FBI is investigating malware hidden inside games hosted on Steam
-
TechCrunch
-
DOGE employee stole Social Security data and put it on a thumb drive, report says
A whistleblower is accusing a former DOGE member of stealing a large number of Americansβ personal data while he was working at the Social Security Administration, with the plan of using it at his new job.
DOGE employee stole Social Security data and put it on a thumb drive, report says
-
TechCrunch
-
Mandiantβs founder just raised $190M for his autonomous AI agent security startup
Kevin Mandia founded Armadin to create autonomous cybersecurity agents, software designed to learn and respond to threats without a human in the middle.
Mandiantβs founder just raised $190M for his autonomous AI agent security startup
-
TechCrunch
-
US military contractor likely built iPhone hacking tools used by Russian spies in Ukraine
Google found a series of hacking tools they said were used by a Russian espionage group and a cybercriminal group in China. Sources from a U.S. government defense contractor said some of those hacking tools were theirs.