AISnyk Finds Prompt Injection in 36%, 1467 Malicious Payloads in a ToxicSkills Study of Agent Skills Supply Chain CompromiseRead now
Open Source SecurityThe full Snyk AI Security Platform, free for open source maintainersJune 18, 2026
Supply Chain SecurityA Forgotten Contributor Account Compromised the Entire Mastra npm Package ScopeJune 16, 2026
VideoAIWhen a Government Pulls an AI Model: What the Fable 5 and Mythos 5 Suspension Means for Security TeamsJune 14, 2026
Supply Chain SecurityNode-gyp Supply Chain Compromise: A Self-Propagating npm Worm That Hides in binding.gypJune 4, 2026
AIProtestware by open source maintainer to hinder agentic coding: The jqwik 1.10.0 Prompt InjectionJune 2, 2026
Supply Chain SecurityMiasma supply chain attack: malicious code found in @redhat-cloud-services npm packagesJune 1, 2026
How Relay Network Adopted AI Coding Securely and Built the Foundation for Agentic DevelopmentMay 29, 2026
Snyk announces Anthropic updates: Evo integrates with Claude Enterprise, and Snyk Desk comes to Claude DesktopMay 21, 2026
The AntV Supply Chain Campaign Expands: Microsoft's `durabletask` PyPI Package CompromisedMay 19, 2026
Supply Chain SecurityMini Shai-Hulud Hits AntV: 300+ Malicious npm Packages Published via Compromised Maintainer AccountMay 18, 2026
Supply Chain SecurityMalicious node-ipc versions published to npm in suspected maintainer account compromiseMay 15, 2026
Supply Chain SecurityTanStack Npm Packages Compromised Inside The Mini Shai Hulud Supply Chain AttackMay 11, 2026
Supply Chain Securitylightning PyPI Compromise: A Bun-Based Credential Stealer in PythonApril 30, 2026
AIBridging the Gap to Autonomous Fixes: Snyk and Atlassian Unveil Intelligent Remediation for JiraApril 29, 2026