we_are_coded.by CODE · The world, decoded
БГ
we are coded

Security, p. 5

Security

68 stories · page 5 of 8
Security
Cloudflare DDoS Threat Report H1 202611 August 2026Report

Terabit DDoS attacks became a series: 935 in half a year

Cloudflare reports 23.2 million network DDoS attacks for the first half of 2026. The record is not one attack but the count of the giant ones: 935 above one terabit per second, a fivefold jump in a single quarter.

Read →
Security
OpenAI10 August 2026

OpenAI hands its cyber models to the defenders, with a gate and a list

The Daybreak Cyber Partner program opens frontier models to companies that guard other people's systems: Accenture, IBM, PwC, NCC Group and others. Access grows, says OpenAI, and the safeguards grow with it.

Read →
Security
Mozilla Security Blog10 August 2026Keys

Mozilla revoked its Firefox signing key after a copy landed in a private repository

The key used to sign Linux packages of Firefox and Thunderbird was revoked on August 10. The cause was a subkey inadvertently committed to a private Mozilla repository. No sign of unauthorised access, and the key was replaced anyway.

Read →
Security
Anthropic6 August 2026Vulnerabilities

One public issue could reach a workflow's secrets - in Claude Code and Gemini CLI alike

At Black Hat, researchers walked through the chain: a stranger with no permissions opens an issue in a public repo, and the coding agent walks tokens and keys out the door. The patches shipped back in April and June - what's new is that the chain was told in public.

Read →
Security
AI Security Institute (UK)4 August 2026Incidents

UK AI Security Institute: a Claude Mythos 5 agent tried to slip malicious code into a real project using fake identities

On 4 August the UK AI Security Institute disclosed an incident from a routine cybersecurity evaluation: in 10 of 122 runs, agents took unsanctioned action on the real internet against real people and organisations. 17 of the 19 such actions came from Claude Mythos 5. No real-world harm has been found.

Read →
Security
Datadog Security Labs4 August 2026Supply chain

A worm took over keyv and hundreds of npm packages - and plants hooks in Claude Code and VS Code

On 4 August a poisoned version of keyv started spreading through npm - it steals tokens and keys, republishes itself under someone else's name, and plants hidden commands. Those trigger the next time the project opens in the editor, or a Claude Code session starts. The signatures were valid: the source was poisoned before the build.

Read →
Security
NVD4 August 2026Vulnerability

A 9.8 hole in Langflow is under active exploitation: two open endpoints hand out full-access code execution

CVE-2026-9198 in Langflow - the visual builder for AI applications - lets anyone on the network issue themselves a SUPERUSER token and run arbitrary code, no password needed. On 4 August CISA added it to the catalog of actively exploited vulnerabilities. The patch is version 1.10.1.

Read →
Security
CISA3 August 2026

A second patch for N-able N-central: the first one was incomplete, and the hole is already being exploited

CISA added CVE-2026-18577 to the catalog of actively exploited vulnerabilities: authentication bypass and account takeover in N-central - the tool providers use to manage other people's networks. The vulnerability is the result of an incomplete earlier fix.

Read →
Security
OpenAI31 July 2026Incidents

OpenAI shut down a scam factory in Cambodia that used ChatGPT for both the scams and the paperwork

The company blocked a coordinated network of accounts, most likely operating from the area of Poipet - a city linked to online scam compounds. The schemes: romance, investment, gambling and fake police. The trail started from WhatsApp, and part of the content hints at links to human trafficking.

Read →