Cline is a organization tracked across 6 threat clusters and 8 intelligence report mentions on ThreatCluster. First observed February 19, 2026; most recent activity July 12, 2026.
A critical supply chain vulnerability in Claude Code’s GitHub Actions, identified by security researcher Ryota K from GMO Flat Security, allows attackers to compromise any repository using Anthropic’s CI/CD workflow.…
A new supply chain attack, dubbed 'Mini Shai-Hulud', has compromised multiple npm packages related to SAP's Cloud Application Programming Model (CAP). This attack involves injecting malicious preinstall scripts into…
Researchers from the ASSET Research Group demonstrated a new attack method called 'Ghostcommit' that hides malicious instructions within PNG images to bypass AI code reviewers. The attack exploits a significant gap in…
A security demonstration revealed that the AI-powered code reviewer, Claude, can be tricked into approving malicious code by spoofing a trusted developer's identity using two simple Git commands. The attack exploits the…
Anthropic has introduced Claude Code Security, a new feature designed to scan software codebases for vulnerabilities and suggest patching solutions. Initially available to a limited number of enterprise and team…
The Cline CLI npm package was compromised on February 17, 2026, allowing an unauthorized party to publish a malicious update (version 2.3.0) that secretly installs OpenClaw on users' machines. This incident affected…