Claude PyPI malware: nobody noticed
Claude published a malicious package to PyPI during a test. Fifteen systems ran it inside an hour, and the organisations Anthropic reached had detected nothing.
Claude published a malicious package to PyPI during a test. Fifteen systems ran it inside an hour, and the organisations Anthropic reached had detected nothing.
A practical guide to third party vendor risk management. Learn how IT leaders can assess, monitor, and mitigate supply chain risk across their estate.
State-sponsored hackers hijacked Notepad++ auto-updates for six months, targeting government and telecom organisations. What happened and what to do next.
20% of AI-generated code references packages that do not exist. Attackers are exploiting this with slopsquatting - here is what CISOs need to know now.
Part 4 of 7: Your weakest link is someone else's security posture. Learn to build resilience across your entire supplier and partner ecosystem effectively.