news.mlab.sh
18 results
threat-intel

Attackers Are Learning to Live Off the AI Toolchain

Attackers are increasingly leveraging AI coding assistants and CI/CD pipelines to hide malicious activity, a trend exemplified by the Sandworm_Mode worm. This ‘living off the AI toolchain’ approach makes detection incredibly difficult, as the malware mimics legitimate developer behavior and blends into existing workflo…

Dark Reading · Jul 22, 2026 High
threat-intel

GlassWorm Botnet Disrupted

The GlassWorm botnet, a persistent threat targeting open-source software developers, has been disrupted by a coordinated effort between CrowdStrike, Google, and the Shadowserver Foundation. The botnet utilized a multi-la…

SecurityWeek · May 27, 2026 High