TypeScript is a technology platform tracked across 8 threat clusters and 8 intelligence report mentions on ThreatCluster. First observed February 13, 2026; most recent activity July 22, 2026.
A new supply chain attack, dubbed 'Mini Shai-Hulud', has compromised multiple npm packages related to SAP's Cloud Application Programming Model (CAP). This attack involves injecting malicious preinstall scripts into…
A report by OX Security has identified a critical vulnerability in the Model Context Protocol (MCP) developed by Anthropic, potentially exposing over 200,000 AI servers to remote code execution. The flaw lies in the…
A critical vulnerability tracked as CVE-2026-0969 was disclosed in the -mdx-remote library, allowing attackers to execute arbitrary code on servers that render untrusted MDX content. The vulnerability affects versions…
On July 21, 2026, Google announced the preview release of CodeMender, a managed AI security agent designed to identify and remediate software vulnerabilities. Integrated into the Gemini Enterprise Agent Platform and AI…
A recent AIRQ report assessed 100 AI agents and found that only 11% met security standards. The report highlighted vulnerabilities such as standing credentials and tool access, which could lead to attacks like prompt…
Recent research demonstrates that locally-hosted open-weight models can effectively replace cloud AI for security code reviews, addressing confidentiality concerns. The study found that a local model, running on…
Stoïk, founded in 2021, aims to enhance cybersecurity resilience for SMEs across Europe. The company combines cyber insurance, cybersecurity tools, and an internal incident response team, supported by AI. Recently,…
OpenAI has released an updated version of its Agents SDK, aimed at helping enterprises build safer AI agents. The new SDK introduces sandboxing capabilities that allow agents to operate in controlled environments,…