Search

corporate responsibility (2)

ShadowLeak and the fragile promise of trust in AI agents

Yesterday I came across a report on ShadowLeak, a newly exposed zero-click vulnerability that allowed attackers to siphon private Gmail data simply by tricking an AI agent into reading an email. No malicious link needed, no file to open, not…

The npm hack that shook the software world

In the quiet background of the internet, where most users never look, a silent catastrophe has just unfolded. The largest supply chain compromise in npm’s history was revealed yesterday, affecting packages with a combined 2 billion weekly downloads. This wasn’t…