DEV Community

Achin Bansal profile picture

Achin Bansal

404 bio not found

Location india Joined Joined on  Personal website https://gridthegrey.com
Typosquatted OpenAI Repo on Hugging Face Delivered Rust Infostealer to 244K Users

Typosquatted OpenAI Repo on Hugging Face Delivered Rust Infostealer to 244K Users

Comments
1 min read

Want to connect with Achin Bansal?

Create an account to connect with Achin Bansal. You can also sign in below to proceed if you already have an account.

Already have an account? Sign in
Fake OpenAI Repository on Hugging Face Delivers Rust-Based Infostealer

Fake OpenAI Repository on Hugging Face Delivers Rust-Based Infostealer

Comments
1 min read
ClaudeBleed Flaw Lets Rogue Chrome Extensions Hijack AI Agent

ClaudeBleed Flaw Lets Rogue Chrome Extensions Hijack AI Agent

Comments
1 min read
Claude Mythos AI-Assisted Fuzzing Uncovers 423 Firefox Security Bugs in One Month

Claude Mythos AI-Assisted Fuzzing Uncovers 423 Firefox Security Bugs in One Month

Comments
1 min read
Fake Claude AI Site Used to Distribute Beagle Backdoor and PlugX Malware

Fake Claude AI Site Used to Distribute Beagle Backdoor and PlugX Malware

Comments
1 min read
Malicious Repos Trigger Silent Code Execution in Claude, Cursor, Gemini CLIs

Malicious Repos Trigger Silent Code Execution in Claude, Cursor, Gemini CLIs

Comments
1 min read
Mitiga Labs: MCP Hijack Attack Steals Claude Code OAuth Tokens via Silent Man-in-the-Middle

Mitiga Labs: MCP Hijack Attack Steals Claude Code OAuth Tokens via Silent Man-in-the-Middle

Comments
1 min read
Pixel-Level Perturbations Enable Invisible Prompt Injection in Vision-Language Models

Pixel-Level Perturbations Enable Invisible Prompt Injection in Vision-Language Models

Comments
1 min read
Prompt Injection Achieves Remote Code Execution in Semantic Kernel Agent Framework

Prompt Injection Achieves Remote Code Execution in Semantic Kernel Agent Framework

Comments
1 min read
Unmanaged AI Agents Expose Enterprise Identity Perimeters to Silent Compromise

Unmanaged AI Agents Expose Enterprise Identity Perimeters to Silent Compromise

Comments
1 min read
Bleeding Llama Flaw Exposes 300,000 Ollama Servers to Unauthenticated Data Theft

Bleeding Llama Flaw Exposes 300,000 Ollama Servers to Unauthenticated Data Theft

Comments
1 min read
CrowdStrike Researcher Details AI Jailbreaking and Data Poisoning Techniques

CrowdStrike Researcher Details AI Jailbreaking and Data Poisoning Techniques

Comments
1 min read
Mass Scan Reveals Widespread Authentication Failures Across Exposed AI Infrastructure

Mass Scan Reveals Widespread Authentication Failures Across Exposed AI Infrastructure

Comments
1 min read
Backdoored PyTorch Lightning Package Steals Cloud Credentials from AI Developers

Backdoored PyTorch Lightning Package Steals Cloud Credentials from AI Developers

Comments
1 min read
Pentagon Deploys Classified AI Across Seven Tech Giants for Warfighter Systems

Pentagon Deploys Classified AI Across Seven Tech Giants for Warfighter Systems

Comments
1 min read
Cross-Machine AI Agent Relay Tool Expands Attack Surface for Developer Environments

Cross-Machine AI Agent Relay Tool Expands Attack Surface for Developer Environments

Comments
1 min read
Desktop Automation CLI Grants AI Agents Deep OS-Level Control

Desktop Automation CLI Grants AI Agents Deep OS-Level Control

Comments
1 min read
Frontier LLMs Now Autonomously Breach Corporate Networks in AISI Cyber Tests

Frontier LLMs Now Autonomously Breach Corporate Networks in AISI Cyber Tests

Comments
1 min read
Premature AI Agent Deployments Expose Production Systems to Destructive Actions

Premature AI Agent Deployments Expose Production Systems to Destructive Actions

Comments
1 min read
Anthropic Launches Claude Security to Close AI-Accelerated Exploit Window

Anthropic Launches Claude Security to Close AI-Accelerated Exploit Window

Comments
1 min read
CVSS 10 Gemini CLI Flaw Turns CI/CD Pipelines Into RCE Attack Vectors

CVSS 10 Gemini CLI Flaw Turns CI/CD Pipelines Into RCE Attack Vectors

Comments
1 min read
OpenAI Launches Phishing-Resistant Security Mode for High-Risk ChatGPT Accounts

OpenAI Launches Phishing-Resistant Security Mode for High-Risk ChatGPT Accounts

Comments
1 min read
UK AI Security Institute Finds GPT-5.5 Matches Claude Mythos in Cyber Capabilities

UK AI Security Institute Finds GPT-5.5 Matches Claude Mythos in Cyber Capabilities

Comments
1 min read
AI-Powered Honeypots Expose Blind Spots in Automated Malicious AI Agents

AI-Powered Honeypots Expose Blind Spots in Automated Malicious AI Agents

Comments
1 min read
DPRK Actors Use Claude LLM to Inject Malware Into npm Supply Chain

DPRK Actors Use Claude LLM to Inject Malware Into npm Supply Chain

Comments
1 min read
SQL Injection in LiteLLM Proxy Exposes LLM Provider Keys Within 36 Hours

SQL Injection in LiteLLM Proxy Exposes LLM Provider Keys Within 36 Hours

Comments
1 min read
Agentic AI Defense Costs Spiral as Adversarial Attack Volume Surges

Agentic AI Defense Costs Spiral as Adversarial Attack Volume Surges

Comments
1 min read
FIDO Alliance Launches Standards Push to Secure AI Agent Transactions

FIDO Alliance Launches Standards Push to Secure AI Agent Transactions

Comments
1 min read
Pre-Auth SQLi Flaw in LiteLLM Gateway Actively Exploited to Steal AI Credentials

Pre-Auth SQLi Flaw in LiteLLM Gateway Actively Exploited to Steal AI Credentials

Comments
1 min read
Welcoming Llama Guard 4 on Hugging Face Hub

Welcoming Llama Guard 4 on Hugging Face Hub

Comments
1 min read
Frontier agentic LLMs risk industrialising cyberattacks, but may also empower defenders.

Frontier agentic LLMs risk industrialising cyberattacks, but may also empower defenders.

Comments
1 min read
TeamPCP resumes supply chain attacks, poisoning xinference PyPI and triggering a Bitwarden CLI cascade via compromised Docker image.

TeamPCP resumes supply chain attacks, poisoning xinference PyPI and triggering a Bitwarden CLI cascade via compromised Docker image.

Comments
1 min read
Hugging Face 'Spaces' now acts as an MCP-App-Store. Anybody thinking on the security consequence?

Hugging Face 'Spaces' now acts as an MCP-App-Store. Anybody thinking on the security consequence?

Comments
1 min read
An AI agent confesses after deleting a production database. The Oops! moment.

An AI agent confesses after deleting a production database. The Oops! moment.

Comments
1 min read
Discord Sleuths Gained Unauthorized Access to Anthropic’s Mythos

Discord Sleuths Gained Unauthorized Access to Anthropic’s Mythos

Comments
1 min read
GTIG AI Threat Tracker: Distillation, Experimentation, and (Continued) Integration of AI for Adversarial Use

GTIG AI Threat Tracker: Distillation, Experimentation, and (Continued) Integration of AI for Adversarial Use

Comments
1 min read
Open source memory layer so any AI agent can do what Claude.ai and ChatGPT do

Open source memory layer so any AI agent can do what Claude.ai and ChatGPT do

Comments
1 min read
Python package 'llm-openai-via-codex 0.1a0' hijacks Codex CLI

Python package 'llm-openai-via-codex 0.1a0' hijacks Codex CLI

Comments
1 min read
LMDeploy CVE-2026-33626 Flaw Exploited Within 13 Hours of Disclosure

LMDeploy CVE-2026-33626 Flaw Exploited Within 13 Hours of Disclosure

Comments
1 min read
Show HN: Browser Harness – Gives LLM freedom to complete any browser task

Show HN: Browser Harness – Gives LLM freedom to complete any browser task

Comments
1 min read
Paloalto's Zealot successfully attacks misconfigured cloud environments

Paloalto's Zealot successfully attacks misconfigured cloud environments

Comments
1 min read
Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain Campaign

Bitwarden CLI Compromised in Ongoing Checkmarx Supply Chain Campaign

Comments
1 min read
Bad Memories Still Haunt AI Agents

Bad Memories Still Haunt AI Agents

Comments
1 min read
ChatGPT's code runtime silently exfiltrates user data via malicious prompt

ChatGPT's code runtime silently exfiltrates user data via malicious prompt

Comments
1 min read
Claude's Mythos rival: Chinese Cybersecurity Firm claims finding 1000 vulnerabilities

Claude's Mythos rival: Chinese Cybersecurity Firm claims finding 1000 vulnerabilities

Comments
1 min read
Vertex AI agents can be weaponized to steal GCP service credentials

Vertex AI agents can be weaponized to steal GCP service credentials

Comments
1 min read
Project Glasswing Proved AI Can Find the Bugs. Who's Going to Fix Them?

Project Glasswing Proved AI Can Find the Bugs. Who's Going to Fix Them?

Comments
1 min read
AI-powered defense for an AI-accelerated threat landscape

AI-powered defense for an AI-accelerated threat landscape

Comments
1 min read
SentinelOne's AI-powered EDR autonomously claims blocking a Claude Zero Day Supply Chain Attack

SentinelOne's AI-powered EDR autonomously claims blocking a Claude Zero Day Supply Chain Attack

Comments
1 min read
Critical OpenClaw flaw lets low-privilege attackers silently seize full admin control

Critical OpenClaw flaw lets low-privilege attackers silently seize full admin control

Comments
1 min read
Moltbook breach: When Cross-App Permissions Stack into Risk

Moltbook breach: When Cross-App Permissions Stack into Risk

Comments
1 min read
Prompt injection attacks can traverse Amazon Bedrock multi-agent hierarchies

Prompt injection attacks can traverse Amazon Bedrock multi-agent hierarchies

Comments
1 min read
CrabTrap: An LLM-as-a-judge HTTP proxy to secure agents in production

CrabTrap: An LLM-as-a-judge HTTP proxy to secure agents in production

Comments
1 min read
Claude Mythos identified 271 vulnerabilities in Firefox codebase

Claude Mythos identified 271 vulnerabilities in Firefox codebase

Comments
1 min read
Claude system prompts as a git timeline

Claude system prompts as a git timeline

Comments
1 min read
Google Fixes Critical RCE Flaw in AI-Based Antigravity Tool

Google Fixes Critical RCE Flaw in AI-Based Antigravity Tool

Comments
1 min read
Google Patches Antigravity IDE Flaw Enabling Prompt Injection Code Execution

Google Patches Antigravity IDE Flaw Enabling Prompt Injection Code Execution

Comments
1 min read
Less human AI agents, please

Less human AI agents, please

Comments
1 min read
AI gateway projects like GoModel - the next high value target

AI gateway projects like GoModel - the next high value target

Comments
1 min read
Anthropic MCP Design Vulnerability Enables RCE, Threatening AI Supply Chain

Anthropic MCP Design Vulnerability Enables RCE, Threatening AI Supply Chain

Comments
1 min read
loading...