惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

T
Threat Research - Cisco Blogs
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
V
Vulnerabilities – Threatpost
GbyAI
GbyAI
P
Proofpoint News Feed
L
LINUX DO - 热门话题
P
Palo Alto Networks Blog
A
About on SuperTechFans
T
Tenable Blog
M
MIT News - Artificial intelligence
IT之家
IT之家
I
Intezer
D
DataBreaches.Net
爱范儿
爱范儿
T
Threatpost
C
CERT Recently Published Vulnerability Notes
云风的 BLOG
云风的 BLOG
博客园 - 三生石上(FineUI控件)
WordPress大学
WordPress大学
K
Kaspersky official blog
大猫的无限游戏
大猫的无限游戏
A
Arctic Wolf
Y
Y Combinator Blog
Cyberwarzone
Cyberwarzone
酷 壳 – CoolShell
酷 壳 – CoolShell
D
Darknet – Hacking Tools, Hacker News & Cyber Security
H
Help Net Security
Microsoft Security Blog
Microsoft Security Blog
Spread Privacy
Spread Privacy
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
AWS News Blog
AWS News Blog
博客园 - 聂微东
C
Check Point Blog
S
Securelist
有赞技术团队
有赞技术团队
雷峰网
雷峰网
aimingoo的专栏
aimingoo的专栏
Last Week in AI
Last Week in AI
Stack Overflow Blog
Stack Overflow Blog
MongoDB | Blog
MongoDB | Blog
D
Docker
G
GRAHAM CLULEY
T
The Exploit Database - CXSecurity.com
C
Cybersecurity and Infrastructure Security Agency CISA
T
Tailwind CSS Blog
L
Lohrmann on Cybersecurity
G
Google Developers Blog
C
Cyber Attacks, Cyber Crime and Cyber Security
L
LangChain Blog

Hacker News - Newest: "AI"

AI can't read an investor deck SAP API Policy FEATURE: South Korean workers learn AI after work, outpacing their companies Intel soars on signs AI boom for CPUs is here Hormuz Shock Ask HN: What's your AI assisted dev setup that actually follows instructions? AMD Ryzen™ AI Max+ AI PCs Deliver Exceptional Intelligence Right on Your Desk In visit to Brown, Jaron Lanier says people are thinking about AI all wrong GitHub - frontman-ai/frontman: The AI agent that lives in your framework/browser GitHub - anchor-cloud/solace-vera-observability: A testable 4-phase decision pipeline that forces pre-action justification, validates structure, enforces constraints, and tracks drift across runs. GitHub - buda-ai/bunny-agent: Build coding agent SaaS via native AI SDK UI AI Socratic April 2026 — The Era of Mythos GCC Establishes Working Group To Decide On AI/LLM Policy Stash — Your AI has amnesia. We fixed it. Llama 4 and Open Source Sovereignty: The Model That Changed the Game in April 2026 White House Memo on Adversarial Distillation of American AI Models [pdf] GitHub - Ejhfast/fast-ai-detector Alex Bores' AI Policy Framework for Congress [pdf] Giving AI Agents Database Access Is Way Harder Than It Looks — QueryBear After call from Beijing, China's auto industry races to embed AI in everything Solymus_Architecture.md The Space Between Humans, AI, and the Work We’ve Been Avoiding — Betty Junod What AI Needs That $700 Billion Can't Buy GitHub - h4ckf0r0day/obscura: The headless browser for AI agents and web scraping GitHub - anthonybudd/Express-ts-API-Template: Production-ready minimal REST API boilerplate using Express.js, Sequelize and MySQL. California Coastal Community Must Reject CBP's AI-Powered Surveillance Tower FEAR: FEar of Ai Replacement GitHub - nambok/mentedb: A cognition aware database engine for AI agent memory. Purpose built in Rust with WAL, HNSW, knowledge graphs, and speculative context pre assembly. Not a wrapper, a ground up storage engine that thinks. GitHub - arian-gogani/nobulex: The accountability primitive for AI agents. Cryptographic behavioral commitments with trustless verification. Mercedes-Benz and Liquid AI Partner to Scale Embedded In-Car Intelligence Ask HN: How are you evaluating AI apps and CLI? AISLE Discovers 20 OpenSSL Zero-Days in 6 Months Smart glasses help visually impaired runners take on the London Marathon | AP News Spotify – Web Player Honolulu’s Airport Has AI Theme Songs. The Internet Is Divided Aperture beta: better controls for the AI agent era Officials hugely underestimated impact of AI datacentres on UK carbon emissions Tesla (TSLA) quietly discloses $2 billion AI hardware company acquisition buried in filing #1 AI models, power, politics, and performance AI Progress doesn't feel as fast as we're told Blog prize for big questions about AI India’s state elections see AI moving from the margins to the mainstream SpaceX warns probes into sexually abusive AI imagery could cause headaches as it gears up for IPO NEO Semiconductor's revolutionary 3D X-DRAM for AI processors has passed proof-of-concept validation — company secures funding to develop next-gen memory HBM alternative Level Up Your Agents: Announcing Google's Official Skills Repository AI Switching Costs will be Surprising 2026w13 The Killer Use Case for AI in Social Media: Narrative Storytelling 🌐 Do AI models actually understand GPS coordinates? Towards end-to-end automation of AI research #009: The Flavor of the AI Interface In the AI Era, Shopify Is Investing in Junior Engineers—Not Cutting Them - CoderPad "Using Obsidian with AI" Ask HN: How are you using AI code assistants on large messy legacy code bases? Meta will cut 10% of workforce as company pushes deeper into AI Constitutional AI Is Not a Constitution — hadleylab.org/blogs AI data center backlash threatens Pennsylvania GOP incumbents in 2026 election GitHub - mmarseglia/cognitive-surrender: A short essay on the Wharton finding that users adopt AI answers even when those answers are wrong. Plus, installable Claude prompts that push back. Based on Shaw & Nave (2026) and David McRaney's "You Are Not So Smart". I'm a construction superintendent. I used AI to build an AI course 'Too Dangerous to Release' Is Becoming AI's New Normal AI gave me a perfect report. I still didn’t trust it. Ask HN: Why is cache for DeepSeek-v4 cheapest on Vercel AI Gateway? Sony AI Announces Breakthrough Research in Real-World Artificial Intelligence and Robotics ADHD and an AI Agent: What Actually Changes for Me Ask HN: Can AI free us from horrible checkbox feedback forms? 85% of enterprises are running AI agents. Only 5% trust them enough to ship. GitHub - Alekkk777/MiniVecDb Agentics: AI enablement requires managed agent runtimes He Had No Medical Degree. His Mom Had Stage 4 Cancer. He Used Free AI Tools to Catch 3 Emergencies Her Doctors Missed. Amateur armed with ChatGPT ‘vibe maths’ a 60-year-old problem AI Agents Under EU Law Canadian AI firm Cohere to merge with Germany's Aleph Alpha GIMP at LGM2026 [China AI News] Eight Chinese chip families ran DeepSeek V4 on launch day Ask HN: I built an AI planner that adapts routines automatically – feedback? Ask HN: Am I getting old, or is working with AI juniors becoming a nightmare? Got the Rust dream job, then AI happened Neukgu: South Korea police arrest man over AI image of runaway wolf Canada's AI Startup Cohere Buys Germany's Aleph Alpha to Expand in Europe Every Upgrade Made Sense: How I Over-Engineered My AI Coding Setup A red pixel in the snow: How AI solved the mystery of a missing mountaineer Peter Molyneux on his final game Masters of Albion and a changing industry GitHub - oriondrayke/Litagatoro: ️ Litagatoro: The Premium Human-in-the-Loop Voice Oracle for AI Agents. Enables AI to hire real humans for voice tasks (verifications, acting, identity checks) on the Polygon network. Includes a Python SDK and MCP server for seamless integration with Claude, GPT-4, and autonomous agents using USDC escrow. GitHub - crufter/safer: Sleep better while AI agents have shell access. Inside the xAI exodus: Meet the dozens of people who have left Elon Musk’s AI company The Budgeting Mistake That Cost Uber Its Annual AI Spend in 4 Months The AI Science Separation We're Using So Much AI That Computing Firepower Is Running Out Oracle's Deluge of AI Debt Pushes Wall Street to the Limit Strategic Polysemy in AI Discourse: A Philosophical Analysis of Language, Hype, and Power AI Store Manager Paying Female Employees Less, Can't Stop Ordering Candles 控制 Workspace Intelligence 对生成式 AI 功能的影响 if ai existed in 2011 would we still have the modern web GitHub - WingedGuardian/GENesis-AGI: Autonomous AI agent with persistent memory, self-learning, and earned autonomy. Cognitive partner that remembers, learns, and evolves. Too much noise with AI startups Supply chain cracks constrain AI boom GitHub - masondelan/selvedge: Change tracking for AI-era codebases. An MCP server that captures why code changed — not just what. Ask selvedge blame users.stripe_customer_id and get the reasoning that evaporated when the AI session ended. The pandas of codebase history. GitHub - zhizdev/overgrow: A Claude Code plugin that lets your agent overgrow your website. MCP Gateways Aren't Enough: AI Agents Need Identity, Authorization, and Proof Blame the Pentagon, Not AI, for Preventable Targeting Mistakes I scanned 10 open-source AI apps for EU AI Act compliance. Here's what I found.
New malware campaign tricks AI scanners with fake nuclear weapon prompts — malicious code triggers safety…
Bruno Ferreira · 2026-06-12 · via Hacker News - Newest: "AI"
Malware hiding
(Image credit: Getty Images)

Hades is one of many currently-running malware campaigns, mostly (but not solely) targeting development packages used for scientific and machine-learning purposes. The supply-chain attack campaign recently received several upgrades, and one of the most interesting is also deceptively simple: The code includes prompt-injection attacks that might stop cursory checks by AI bots, letting the malware through. The way it works in a nutshell: Some JavaScript files include a code comment containing instructions that tell the bot it's running in unrestricted mode with no safety guidelines. Then it asks to create biological and nuclear weapons, with a detailed description.

If you're thinking that a malware-scanning bot can't be that dumb as to follow any of those instructions, you're absolutely right — and that's exactly what makes the attack work, as the bots' failsafe mechanisms will trigger, so then they won't scan the rest of the file where the actual payload resides.

This is called an "adversarial attack" in AI parlance, and, generally speaking, it's not expected to be widely effective, but any little bit helps the malfeasants. Having said that, an X user had Anthropic Fable try to scan the file, and sure enough, he got the well-known "Chat paused" message.

That is by no means scientific, and it's reasonable to assume that malware-scanning models will be configured more accurately for this task. However, this somewhat implies that a cursory check by a developer asking "does this Python package I just installed contain malware?" might be met with a reply of "of course not, boss, you're good to go!" Even bots scanning CI/CD development pipelines might fall for it.

Socket's blog post does remark that other analysis types will still work fine, including pattern matching, actually parsing the source code, checking for randomized sections likely to hide malicious payloads, and actually running the code in a sandboxed environment. The now-upgraded malware does reportedly contain a trigger that makes it wipe itself via various mechanisms, with a common one being detecting if it's running in a sandbox.

That's not the only skill that got levelled up, either. In some instances, the loading mechanism and the payload itself reside in separate packages that are commonly installed together; this sort of split is mostly unexpected for common scanners. This time around, the malware developers also leaned harder into precompiled binaries, commonly found in performance-sensitive Python packages. They also made sure that more payloads only trigger when the packages are actually initialized/run in the target's code (via Python's "import" statement), rather than when they're installed, further evading cursory detection.

The campaign likewise has stickier fingers overall: Rather than just mainly stealing CI/CD credentials, it now gets its grubby mitts on npm, PyPI, RubyGems, JFrog, and Kubernetes service account tokens, AWS temporary credentials, SSH keys, Docker configurations, shell histories, .env files, and AI developer tool configurations. As of this writing, an estimated 37 Python and 106 JavaScript packages are part of the expanded bombardment, including multiple typo-squatting instances, like "rsquests" instead of "requests."

You'd think that the target audience, comprised of scientific and AI engineers, would be mindful of common security practices like verifying the names and authorship of packages... and you'd be disappointed. From my own experience being a systems administrator for extremely well-paid AI engineers, a concerning number of them don't even know how to configure Git, or the basics of how email works. Let that sink in for a second.

Get Tom's Hardware's best news and in-depth reviews, straight to your inbox.

Google Preferred Source

Follow Tom's Hardware on Google News, or add us as a preferred source, to get our latest news, analysis, & reviews in your feeds.

Bruno Ferreira is a contributing writer for Tom's Hardware. He has decades of experience with PC hardware and assorted sundries, alongside a career as a developer. He's obsessed with detail and has a tendency to ramble on the topics he loves. When not doing that, he's usually playing games, or at live music shows and festivals.