Hacker Newsnew | past | comments | ask | show | jobs | submit | fromlogin
SQLite Critical CVEs or LLM Slop? (jfrog.com)
719 points by ymir_e 1 day ago | past | 371 comments
Fast Remediation Is the New Trust Model (JFrog and OpenAI Zero-Day Findings) (jfrog.com)
61 points by 882542F3884314B 7 days ago | past | 37 comments
PixelSmash – Critical FFmpeg Vulnerability Turns Media Files into Weapons (jfrog.com)
2 points by doener 38 days ago | past
PixelSmash – Critical FFmpeg Vulnerability (jfrog.com)
3 points by stymaar 40 days ago | past
PixelSmash – FFmpeg's MagicYUV decoder vuln leads to RCE via media file (jfrog.com)
10 points by n0on3 41 days ago | past | 1 comment
PixelSmash – Critical FFmpeg Vulnerability Turns Media Files into Weapons (jfrog.com)
4 points by croes 42 days ago | past
TeamPCP Campaign Spreads to NPM via a Hijacked Bitwarden CLI (jfrog.com)
3 points by thefreeman 3 months ago | past
TeamPCP strikes again: Xinference (v2.6.0-2.6.2) PyPI package compromised (jfrog.com)
1 point by lukecarr 3 months ago | past | 1 comment
Show HN: Host, share, promote and track release artifacts via your coding agent (jfrog.com)
12 points by guyle 3 months ago | past
TeamPCP strikes again – telnyx popular PyPI library compromised (jfrog.com)
4 points by homarp 4 months ago | past | 1 comment
Potentially Critical RCE Vulnerability in OpenSSL (jfrog.com)
10 points by beny23 6 months ago | past | 1 comment
PyPI Revival Hijack – technique exploited in the wild, puts 22K packages at risk (jfrog.com)
1 point by pabs3 on Nov 16, 2024 | past
Binary secret scanning prevents serious supply chain attack on Python ecosystem (jfrog.com)
5 points by Terretta on July 12, 2024 | past
Leaked admin access token to Python, PyPI, and PSF GitHub repos (jfrog.com)
114 points by elchief on July 12, 2024 | past | 29 comments
Worst supply chain attack you can imagine prevented with binary secret scanning (jfrog.com)
2 points by talboren on July 11, 2024 | past | 1 comment
JFrog to Acquire Qwak to Streamline AI Models from Development to Production (jfrog.com)
1 point by creaghpatr on June 25, 2024 | past
JFrog research discovers coordinated attacks on Docker Hub that planted millions (jfrog.com)
47 points by based2 on April 30, 2024 | past | 4 comments
Data Scientists Targeted by Malicious Hugging Face ML Models with Backdoor (jfrog.com)
3 points by kryptiskt on Feb 29, 2024 | past
Data Scientists Targeted by Malicious Hugging Face ML Model with Silent Backdoor (jfrog.com)
3 points by epistasis on Feb 28, 2024 | past
SSH protocol flaw – Terrapin Attack CVE-2023-48795: All you need to know (jfrog.com)
3 points by uraid on Dec 31, 2023 | past
Examining OpenSSH Sandboxing and Privilege Separation – Attack Surface Analysis (jfrog.com)
3 points by weeha on Dec 13, 2023 | past
Raspberry Pi 5 in 2024? (jfrog.com)
1 point by chuckhend on Sept 3, 2023 | past | 2 comments
Security Research to Protect the Modern Software Supply Chain (jfrog.com)
2 points by mooreds on June 23, 2023 | past
Attackers are starting to target .NET developers with malicious NuGet packages (jfrog.com)
1 point by uraid on March 20, 2023 | past
Examining OpenSSH Sandboxing and Privilege Separation – Attack Surface Analysis (jfrog.com)
1 point by Bender on March 19, 2023 | past
Examining OpenSSH Sandboxing and Privilege Separation – Attack Surface Analysis (jfrog.com)
3 points by uraid on March 14, 2023 | past
Artifact State of Union (jfrog.com)
2 points by maxyurk on Feb 11, 2023 | past
OpenSSH Pre-Auth Double Free – Writeup and Proof-of-Concept (jfrog.com)
161 points by uraid on Feb 8, 2023 | past | 102 comments
Watch out for DoS when using Rust’s Hyper package (jfrog.com)
53 points by simjue on Jan 7, 2023 | past | 19 comments
Python malware starting to employ anti-debug techniques (jfrog.com)
143 points by lukastyrychtr on Dec 23, 2022 | past | 104 comments

Consider applying for YC's Fall 2026 batch! Applications are open till July 27.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: