Superagentic AI has released SuperClaw, an open-source, pre-deployment security testing framework built specifically for autonomous AI coding agents. Announced in late 2025, SuperClaw addresses a growing blind spot in enterprise …
Cybersecurity Companies’ Stocks Fall Sharply as Anthropic Releases Claude Security Tool
Claude Security Tool Stocks Impacted Shares of major cybersecurity companies nosedived on Friday after AI startup Anthropic unveiled Claude Code Security, a new AI-powered tool capable of autonomously scanning codebases …
New Shai-Hulud–like npm Worm Attack 19+ Packages to Steal dev/CI Secrets
Shai-Hulud–like npm Worm Attack A new supply chain worm is actively targeting the npm ecosystem, with a research team identifying at least 19 malicious npm packages designed to steal developer …
Anthropic Launches Claude Code Security to Scan Codebases for Security Vulnerabilities
Claude Code Security A new feature inside Claude Code enables developers and security teams to identify and remediate vulnerabilities across their codebases, known as Claude Code Security. Currently available in …
‘Starkiller’ Phishing Service Proxies Real Login Pages, MFA
February 20, 2026 0 Comments Most phishing websites are little more than static copies of login pages for popular online destinations, and they are often quickly taken down by anti-abuse …
PayPal Data Breach Exposes SSNs and Business PII of Customers for Over Six Months
PayPal Data Breach PayPal has issued a formal data breach notification disclosing that a coding error in its PayPal Working Capital (PPWC) loan application exposed the personally identifiable information (PII) …
Grandstream VoIP Phones Vulnerability Allows Attackers to Gain Root Privileges
VoIP desk phones are trusted devices, but many are managed like office furniture. A newly disclosed flaw in Grandstream phones shows how a simple network-facing bug can turn a handset …
CharlieKirk Grabber Stealer Attacking Windows Systems to Exfiltrate Login Credentials
A new Python-based infostealer called CharlieKirk Grabber has been identified targeting Windows systems, with a focused goal of stealing stored login credentials, browser cookies, and session data. The malware is …
Critical Jenkins Vulnerability Exposes Build Environments to XSS Attacks
Jenkins Vulnerability Exposes XSS Attacks Security Advisory has revealed multiple vulnerabilities in Jenkins Core, including a stored Cross-Site Scripting (XSS) flaw that could expose build environments to severe security risks. The issues, …
Critical Vulnerabilities in VS Code Extensions Threaten 128 Million Developer Environments
128 Million Users at Risk VS Code Extensions Flaws Three critical vulnerabilities have been found in four popular Visual Studio Code extensions. These extensions have been downloaded over 128 million …

