4,000+ installations compromised through malicious Cline package v2.3.0

Weekly insights on threats, vulnerabilities, and security best practices.

ClawJacked vulnerability enables malicious websites to hijack local OpenClaw AI agents via WebSocket connections, allowing complete takeover of AI operations and data exfiltration.

CISA advisory reveals four critical vulnerabilities in Gardyn smart gardens enabling remote code execution and network lateral movement through IoT exploitation.

Scattered LAPSUS$ Hunters offers $500-$1,000 per call to recruit women for voice phishing attacks against IT help desks. Analysis of TTPs and defensive strategies.