Free-for-Teacher 취약점으로 인한 3.65TB 데이터 유출 및 긴급 복구 사례
Double Canvas breach acknowledged as ShinyHunters sets new pay-or-leak deadline
Double Canvas breach acknowledged as ShinyHunters sets new pay-or-leak deadline
Lean 4 IO 핸들러 내 USize 오버플로우를 통한 메모리 손상 취약점 분석
Anthropic Just Did Something Unprecedented: They Hid Their Best Security Model
AI agents found vulns in this popular Linux and Unix print server
AI slop got better, so now maintainers have more work
Webinar: Integrating SAST into DevSecOps — Key Points
The Documentation Attack Surface: How npm Libraries Teach Insecure Patterns
OpenAI Codex Had a Command Injection Bug That Could Steal Your GitHub Tokens
OpenAI patches ChatGPT flaw that smuggled data over DNS
How to Integrate Endoflife.Date in Dependency-Track EoL
CVE-2026-33044: CVE-2026-33044: Stored Cross-Site Scripting in Home Assistant Map-Card
Vibe Coding Is a Security Nightmare: How to Fix It
We Scanned 4,275 MCP Servers. Most of Them Shouldn't Be Trusted.
CVE-2026-32241: CVE-2026-32241: Command Injection in Flannel Experimental Extension Backend
The PostgreSQL MCP Server — Read-Only Protection That Wasn't
The LiteLLM Attack Exposed a Bigger Problem: Your Vibe-Coded App Probably Has the Same Vulnerabilities
GHSA-5VP3-3CG6-2RQ3: GHSA-5VP3-3CG6-2RQ3: Cross-Site Scripting via Markdown Serialization Breakout in justhtml
Bypassing Attestation Logic in Cairo: A Starknet Security Case Study
Security advisory for Cargo
Tuesday, March 24, 2026 Security Releases