Jaw-dropping security flaws found in open source code could allow hackers to spirit away entire projects – here’s what devs need to know

Sysdig exposed how a trusted GitHub feature can silently hand control to attackers pull_request_target isn’t just risky, it’s a loaded weapon in the wrong hands Even top-tier security projects like MITRE’s can fall to simple GitHub workflow misconfigurations Experts have revealed several critical vulnerabilities in GitHub Actions workflows which could pose serious risks to some…

Read More

Intuit’s Mailchimp is gradually growing into a fully-fledged CRM suite for SMB thanks to a raft of new additions – and I can’t wait to try them

Mailchimp’s subtle updates are stacking up to challenge what we expect from SMB software Integrations with TikTok, Meta, and Google are finally making Mailchimp marketing feel connected Metrics Visualizer offers 40+ variables, but feels like overdue functionality rather than innovation Mailchimp’s continued transformation from a straightforward email marketing service into a broader business platform seems…

Read More

More than a third of US tech workers prefer to learn from YouTube rather than more traditional online courses – and I, for once, totally agree

Over half of tech workers secretly stay late to learn what they pretended to know, survey finds YouTube has become the go-to fix for real-time workplace panic and skill gaps Fake it in meetings, Google it later – this is the reality for modern tech workers In the fast-paced environment of today’s tech-driven workplace, employees…

Read More

Two WormGPT Clones That Use Grok and Mixtral Found in Underground Forum

Security researchers at Cato Network have discovered two new WormGPT variants that repurpose commercial AI models — xAI’s Grok and Mistral’s Mixtral — to generate malicious content, reviving a tool once believed to be defunct. The newly discovered versions, named keanu-WormGPT and xzin0vich-WormGPT, were identified by the company’s CTRL Threat Research Team. Found on BreachForums,…

Read More