サプライチェーンセキュリティInside the keyv npm Compromise: preinstall Malware, Trusted Provenance, and IDE Hooks2026年8月4日
AIThe Generator Can't Be the Validator: What OpenAI's Hugging Face Incident Proves About AI Security2026年7月28日
AIProtestware by open source maintainer to hinder agentic coding: The jqwik 1.10.0 Prompt Injection2026年6月2日
サプライチェーンセキュリティMalicious node-ipc versions published to npm in suspected maintainer account compromise2026年5月15日
AIServiceNow's Virtual Agent Vulnerability Shows Why AI Security Needs Traditional AppSec Foundations2026年1月14日