A Worm Just Hacked 160+ npm Packages — And OpenAI Got Hit Too

A self-propagating supply chain worm called Mini Shai-Hulud compromised 160+ npm packages including TanStack and Mistral AI, and OpenAI confirmed two employee devices were breached. Here's what happened and what you need to do.

Breaking news:

A Worm Just Hacked 160+ npm Packages — And OpenAI Got Hit Too

A self-propagating supply chain worm called Mini Shai-Hulud compromised 160+ npm packages including TanStack and Mistral AI, and OpenAI confirmed two employee devices were breached. Here's what happened and what you need to do.

Mythos, APRA, and ASIC: Are Australian Enterprises Ready for the AI Threat?

Anthropic released Mythos, then APRA and ASIC sent urgent letters to the financial sector. Three events in three weeks, one message: the game has changed, and most organisations aren't ready.

Your Smart Home Is Watching You. Here’s How to Fight Back.

Smart speakers, cameras, thermostats, doorbells - they're all collecting data about you. Here's what they know and how to take back some control.

AI Agents Are Everywhere. Your Security Team Probably Isn’t Ready.

Every company is rushing to deploy AI agents. Few are thinking about what happens when those agents get compromised. Here's what keeps me up at night.

Latest articles

A Worm Just Hacked 160+ npm Packages — And OpenAI Got Hit Too

A self-propagating supply chain worm called Mini Shai-Hulud compromised 160+ npm packages including TanStack and Mistral AI, and OpenAI confirmed two employee devices were breached. Here's what happened and what you need to do.

Mythos, APRA, and ASIC: Are Australian Enterprises Ready for the AI Threat?

Anthropic released Mythos, then APRA and ASIC sent urgent letters to the financial sector. Three events in three weeks, one message: the game has changed, and most organisations aren't ready.

Your Smart Home Is Watching You. Here’s How to Fight Back.

Smart speakers, cameras, thermostats, doorbells - they're all collecting data about you. Here's what they know and how to take back some control.

AI Agents Are Everywhere. Your Security Team Probably Isn’t Ready.

Every company is rushing to deploy AI agents. Few are thinking about what happens when those agents get compromised. Here's what keeps me up at night.

This Week in Cyber: AI Gets Scary, Super Funds Get Hit, and Privacy Keeps Eroding

Another week in cyber security. AI threats are getting more real, Australian super funds are under attack, and your smart devices keep watching. Here's what mattered.

Someone’s Using AI to Make Fake Nudes of Teenagers. Here’s What Parents Need to Know.

A new sextortion tactic uses AI to generate realistic fake nude images of teenagers from their social media photos. This is real, it's happening now, and parents need to talk about it.

Subscribe