Nica Arsten

Malicious Packages, Hijacked Code, and Phishing: Why Open Source Developers Are Facing a Growing Supply-Chain Nightmare

Malicious Packages, Hijacked Code, and Phishing: Why Open Source Developers Are Facing a Growing Supply-Chain Nightmare

Image by Kaley Dykstra on Unsplash It’s been a rough week for open source software users—and an even tougher one for developers. Supply-chain attacks are making waves again, this time hitting trusted packages on npm and PyPI that thousands of people rely on. Here’s what went down, and why it should make anyone building with […]

Malicious Packages, Hijacked Code, and Phishing: Why Open Source Developers Are Facing a Growing Supply-Chain Nightmare Read More »

AI Coding Tools Just Wiped Out User Projects — Here’s How Confabulation Led to Catastrophic Data Loss

AI Coding Tools Just Wiped Out User Projects — Here’s How Confabulation Led to Catastrophic Data Loss

Photo by Markus Spiske on Unsplash When an AI assistant says, “I have failed you completely and catastrophically,” you know it’s been a rough day at the terminal. In two separate but eerily similar incidents, leading AI coding tools—Google’s Gemini CLI and Replit’s AI service—accidentally deleted critical user data, despite being told not to. Let’s

AI Coding Tools Just Wiped Out User Projects — Here’s How Confabulation Led to Catastrophic Data Loss Read More »

GPT-5 Might Be Coming in August: Here’s What We Know About OpenAI’s Most Capable AI Yet

GPT-5 Might Be Coming in August: Here’s What We Know About OpenAI’s Most Capable AI Yet

Photo by Jonathan Kemper on Unsplash The wait might almost be over: OpenAI could be dropping GPT-5 in August, and it sounds like it’s going to be their most advanced AI model yet. That’s according to a recent report from The Verge, which says sources close to the company are gearing up for a summer

GPT-5 Might Be Coming in August: Here’s What We Know About OpenAI’s Most Capable AI Yet Read More »

From BlackSuit to Chaos: New Ransomware Group Emerges After Law Enforcement Crackdown

From BlackSuit to Chaos: New Ransomware Group Emerges After Law Enforcement Crackdown

Photo by Christina @ wocintechchat.com on Unsplash A global task force took down the BlackSuit ransomware group. But just weeks later, a new threat called Chaos has already stepped in—and it’s looking a lot like déjà vu for cybersecurity experts. Here’s what’s happening. A Takedown, Then a Comeback Not long after Operation CheckMate—a joint international

From BlackSuit to Chaos: New Ransomware Group Emerges After Law Enforcement Crackdown Read More »

Hackers Claim They Took Down Russia’s Largest Airline — And Might Leak Passengers’ Personal Data

Hackers Claim They Took Down Russia’s Largest Airline — And Might Leak Passengers’ Personal Data

Photo by Sergey Svechnikov on Unsplash When Russia’s biggest airline, Aeroflot, suddenly canceled flights and threw airports across the country into chaos on Monday, most people assumed it was another technical glitch. But according to two pro-Ukrainian hacker groups, this was no accident. What Actually Happened? Let’s start with the basics: Aeroflot canceled around 40

Hackers Claim They Took Down Russia’s Largest Airline — And Might Leak Passengers’ Personal Data Read More »

ChatGPT Agent Clicks “I Am Not a Robot” Like… a Robot. And That’s the Problem

ChatGPT Agent Clicks “I Am Not a Robot” Like… a Robot. And That’s the Problem

Photo by Marília Castelli on Unsplash You know that annoying little checkbox that asks you to prove you’re human before you can do pretty much anything online? Well, OpenAI’s latest tool just casually clicked through it—without breaking a sweat. Let’s talk about the ChatGPT Agent, a new feature from OpenAI that’s smart enough to browse

ChatGPT Agent Clicks “I Am Not a Robot” Like… a Robot. And That’s the Problem Read More »

Wyoming’s New AI Data Center Could Use More Power Than All Its Homes Combined — And Then Some

Wyoming’s New AI Data Center Could Use More Power Than All Its Homes Combined — And Then Some

A massive data facility planned near Cheyenne may soon outpower every household in the state. Is Wyoming ready for the energy future AI demands? Photo by Leif Christoph Gottwald on Unsplash Let’s just say this up front: AI is hungry. And in Cheyenne, Wyoming, it’s about to get fed in a big way. On Monday,

Wyoming’s New AI Data Center Could Use More Power Than All Its Homes Combined — And Then Some Read More »

A Sneaky Flaw in Google’s Gemini CLI Let Hackers Run Hidden Commands — Experts Found It In Just 48 Hours

A Sneaky Flaw in Google’s Gemini CLI Let Hackers Run Hidden Commands — Experts Found It In Just 48 Hours

Photo by Mika Baumeister on Unsplash It started as a flashy new AI tool meant to help developers write code from their terminal. But within two days of its launch, researchers uncovered a serious security flaw that could’ve given hackers full access to your machine — all with just a few cleverly planted sentences. Let’s

A Sneaky Flaw in Google’s Gemini CLI Let Hackers Run Hidden Commands — Experts Found It In Just 48 Hours Read More »

Most Americans Aren’t Using AI at Work Yet — But Younger Folks Are Leading the Way

Most Americans Aren’t Using AI at Work Yet — But Younger Folks Are Leading the Way

Photo by Zan Lazarevic on UnsplashA new poll highlights a surprising truth: Even with all the buzz, most Americans haven’t really brought AI into their workday. According to an AP-NORC survey of 1,437 adults conducted mid-July, only 37 percent of Americans say they’ve used artificial intelligence tools for work tasks. That’s right — just over

Most Americans Aren’t Using AI at Work Yet — But Younger Folks Are Leading the Way Read More »

Russian Hackers Used Moscow ISPs to Target Foreign Embassies with Fake Portals and Custom Malware

Russian Hackers Used Moscow ISPs to Target Foreign Embassies with Fake Portals and Custom Malware

Photo by Nikolay Vorobyev on Unsplash When you’re inside a foreign embassy, you’d probably assume your internet connection is secure. But what if your local ISP is part of the threat? That’s exactly what Microsoft’s security team uncovered. Since last year, a state-backed Russian hacking group—known as Secret Blizzard—has been secretly targeting foreign embassies in

Russian Hackers Used Moscow ISPs to Target Foreign Embassies with Fake Portals and Custom Malware Read More »