Anthropic is scrambling to contain the leak, but the AI coding agent is spreading far and wide and being picked apart.
Within days of each other, Anthropic first leaked the source code to Claude Code, and then a critical vulnerability was found ...
A hacker inserted malware in Axios, an open-source web tool downloaded tens of millions of times weekly, in a widespread hack ...
The exposure traces back to version 2.1.88 of the @anthropic-ai/claude-code package on npm, which was published with a 59.8MB ...
Nuchi Nashoba has worked for decades to honor the legacy of the Choctaw code talkers, a group of 19 Native American soldiers, including her great-grandfather, who used their language to ...
Attackers stole a long-lived npm token from the lead axios maintainer and published two poisoned versions that drop a ...
IntroductionOn March 31, 2026, Anthropic accidentally exposed the full source code of Claude Code (its flagship ...
The widely used Axios HTTP client library, a JavaScript component used by developers, was recently hacked to distribute ...
With almost 175,000 npm projects listing the library as a dependency, the attack had a huge cascade effect and shows how ...
The biggest story of the week is a new massive supply chain breach, which appears to be unrelated to the previous massive supply chain breaches, this time of the Axios HTTP project. Axios was ...
When businesses plan for expansion by entering new markets, scaling operations, or pursuing acquisitions, fraud prevention ...
Two malicious Axios npm releases have prompted warnings for developers to rotate credentials and treat affected systems as ...