<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>VibeWShield — Security Blog &amp; News</title>
    <link>https://vibewshield.com</link>
    <description>Security guides and AI-curated cybersecurity news for developers building with AI tools.</description>
    <language>en-us</language>
    <lastBuildDate>Tue, 14 Apr 2026 13:16:16 GMT</lastBuildDate>
    <atom:link href="https://vibewshield.com/feed" rel="self" type="application/rss+xml"/>
    <item>
      <title><![CDATA[Agentic Scan: Your AI Pentester Running an OODA Loop]]></title>
      <link>https://vibewshield.com/blog/agentic-scan-explained</link>
      <guid isPermaLink="true">https://vibewshield.com/blog/agentic-scan-explained</guid>
      <description><![CDATA[Agentic Scan deploys Claude AI as an autonomous pentester. It reads your scan results, forms attack hypotheses, sends targeted probes, and reports what scanners miss.]]></description>
      <pubDate>Tue, 07 Apr 2026 00:00:00 GMT</pubDate>
      <category>Blog</category>
    </item>
    <item>
      <title><![CDATA[Aggressive Mode: Testing What Others Won't Touch]]></title>
      <link>https://vibewshield.com/blog/aggressive-scan-explained</link>
      <guid isPermaLink="true">https://vibewshield.com/blog/aggressive-scan-explained</guid>
      <description><![CDATA[Aggressive Mode unlocks state-changing security tests — file upload attacks, mass assignment, prototype pollution, and more. Here's what it does and why it's safe.]]></description>
      <pubDate>Mon, 06 Apr 2026 00:00:00 GMT</pubDate>
      <category>Blog</category>
    </item>
    <item>
      <title><![CDATA[Deep Scan: Full Security Audit with AI-Powered Analysis]]></title>
      <link>https://vibewshield.com/blog/deep-scan-explained</link>
      <guid isPermaLink="true">https://vibewshield.com/blog/deep-scan-explained</guid>
      <description><![CDATA[Deep Scan runs 54+ scanners, browser runtime analysis, and Claude AI to find vulnerabilities, build attack chains, and generate fix prompts — free with a VibeWShield account.]]></description>
      <pubDate>Sun, 05 Apr 2026 00:00:00 GMT</pubDate>
      <category>Blog</category>
    </item>
    <item>
      <title><![CDATA[Why Your Lovable App Is Probably Leaking User Data Right Now]]></title>
      <link>https://vibewshield.com/blog/lovable-app-security-vulnerabilities</link>
      <guid isPermaLink="true">https://vibewshield.com/blog/lovable-app-security-vulnerabilities</guid>
      <description><![CDATA[Lovable generates apps fast but creates predictable security gaps. What leaks, why it happens, and how to fix it before attackers find it.]]></description>
      <pubDate>Sat, 04 Apr 2026 00:00:00 GMT</pubDate>
      <category>Blog</category>
    </item>
    <item>
      <title><![CDATA[Quick Scan: 40+ Security Checks in Under 3 Minutes]]></title>
      <link>https://vibewshield.com/blog/quick-scan-explained</link>
      <guid isPermaLink="true">https://vibewshield.com/blog/quick-scan-explained</guid>
      <description><![CDATA[VibeWShield Quick Scan runs 40+ security checks against your web app in under 3 minutes. No account needed. Here's exactly what it covers and what it skips.]]></description>
      <pubDate>Sat, 04 Apr 2026 00:00:00 GMT</pubDate>
      <category>Blog</category>
    </item>
    <item>
      <title><![CDATA[Next.js Server Actions: Security Risks When Vibe-Coding]]></title>
      <link>https://vibewshield.com/blog/nextjs-server-actions-security</link>
      <guid isPermaLink="true">https://vibewshield.com/blog/nextjs-server-actions-security</guid>
      <description><![CDATA[AI tools generate Server Actions with mass assignment vulnerabilities. Learn how attackers inject admin privileges and how to fix it with Zod validation.]]></description>
      <pubDate>Sun, 29 Mar 2026 00:00:00 GMT</pubDate>
      <category>Blog</category>
    </item>
    <item>
      <title><![CDATA[Hacking a "Vibe-coded" App in 15 Minutes: A Real Case Study]]></title>
      <link>https://vibewshield.com/blog/vibe-coded-hack-15-minutes</link>
      <guid isPermaLink="true">https://vibewshield.com/blog/vibe-coded-hack-15-minutes</guid>
      <description><![CDATA[A step-by-step breakdown of how an attacker can find an exposed database port and a .env file in AI-generated code. Demonstrating the critical need for external DAST scanning.]]></description>
      <pubDate>Sat, 28 Mar 2026 00:00:00 GMT</pubDate>
      <category>Blog</category>
    </item>
    <item>
      <title><![CDATA[React Server Components (RSC): The Hidden Data Leak Risk]]></title>
      <link>https://vibewshield.com/blog/react-server-components-data-leaks</link>
      <guid isPermaLink="true">https://vibewshield.com/blog/react-server-components-data-leaks</guid>
      <description><![CDATA[Passing data blindly from Next.js Server Components to Client Components is causing severe API data leaks. Learn how to sanitize props.]]></description>
      <pubDate>Thu, 26 Mar 2026 00:00:00 GMT</pubDate>
      <category>Blog</category>
    </item>
    <item>
      <title><![CDATA[Top 5 Automated Web Vulnerability Scanners (2026)]]></title>
      <link>https://vibewshield.com/blog/best-dast-scanners-2026</link>
      <guid isPermaLink="true">https://vibewshield.com/blog/best-dast-scanners-2026</guid>
      <description><![CDATA[Comparing the best DAST scanners for Next.js, React, and GraphQL in 2026. Pricing, pros, cons, and which tool fits your team.]]></description>
      <pubDate>Tue, 24 Mar 2026 00:00:00 GMT</pubDate>
      <category>Blog</category>
    </item>
    <item>
      <title><![CDATA[How ChatGPT and Claude Generate SSRF Vulnerabilities]]></title>
      <link>https://vibewshield.com/blog/ssrf-chatgpt-claude</link>
      <guid isPermaLink="true">https://vibewshield.com/blog/ssrf-chatgpt-claude</guid>
      <description><![CDATA[AI often generates unsafe URL fetch code leading to Server-Side Request Forgery (SSRF). Learn why it happens and how to secure Next.js API routes.]]></description>
      <pubDate>Sat, 21 Mar 2026 00:00:00 GMT</pubDate>
      <category>Blog</category>
    </item>
    <item>
      <title><![CDATA[Vibe-Coding SaaS Security: The Ultimate Pre-Launch Checklist]]></title>
      <link>https://vibewshield.com/blog/vibe-coding-security-checklist</link>
      <guid isPermaLink="true">https://vibewshield.com/blog/vibe-coding-security-checklist</guid>
      <description><![CDATA[Before you launch that AI-generated SaaS on Product Hunt, run through this 5-minute security checklist to avoid massive data leaks.]]></description>
      <pubDate>Thu, 19 Mar 2026 00:00:00 GMT</pubDate>
      <category>Blog</category>
    </item>
    <item>
      <title><![CDATA[Top 5 Security Flaws Cursor AI Writes in Next.js 15]]></title>
      <link>https://vibewshield.com/blog/cursor-ai-security-flaws</link>
      <guid isPermaLink="true">https://vibewshield.com/blog/cursor-ai-security-flaws</guid>
      <description><![CDATA[Vibe-coding is fast but often sacrifices security. The top 5 vulnerabilities found in Next.js apps generated by Cursor AI and how to fix them.]]></description>
      <pubDate>Mon, 16 Mar 2026 00:00:00 GMT</pubDate>
      <category>Blog</category>
    </item>
    <item>
      <title><![CDATA[Top 5 Security Vulnerabilities in AI-Generated Apps]]></title>
      <link>https://vibewshield.com/blog/top-vulnerabilities-vibe-coded-apps</link>
      <guid isPermaLink="true">https://vibewshield.com/blog/top-vulnerabilities-vibe-coded-apps</guid>
      <description><![CDATA[AI coding assistants ship apps fast but create predictable security blind spots. The top 5 vulnerabilities in vibe-coded apps and how to fix each one.]]></description>
      <pubDate>Sat, 14 Mar 2026 00:00:00 GMT</pubDate>
      <category>Blog</category>
    </item>
    <item>
      <title><![CDATA[Why NextAuth (Auth.js) Doesn't Guarantee API Security]]></title>
      <link>https://vibewshield.com/blog/nextauth-api-security</link>
      <guid isPermaLink="true">https://vibewshield.com/blog/nextauth-api-security</guid>
      <description><![CDATA[NextAuth handles authentication but not authorization. AI-generated apps consistently miss API endpoint protection. Here's how to fix missing access control.]]></description>
      <pubDate>Wed, 11 Mar 2026 00:00:00 GMT</pubDate>
      <category>Blog</category>
    </item>
    <item>
      <title><![CDATA[How to Properly Secure Supabase Row-Level Security]]></title>
      <link>https://vibewshield.com/blog/how-to-secure-supabase-rls</link>
      <guid isPermaLink="true">https://vibewshield.com/blog/how-to-secure-supabase-rls</guid>
      <description><![CDATA[Supabase RLS is one of the most commonly misconfigured security features in vibe-coded apps. Here's a practical guide to getting it right.]]></description>
      <pubDate>Sun, 08 Mar 2026 00:00:00 GMT</pubDate>
      <category>Blog</category>
    </item>
    <item>
      <title><![CDATA[How Exposed API Keys End Up in Your JavaScript Bundle]]></title>
      <link>https://vibewshield.com/blog/detecting-exposed-api-keys</link>
      <guid isPermaLink="true">https://vibewshield.com/blog/detecting-exposed-api-keys</guid>
      <description><![CDATA[API keys bundled into client-side JavaScript are the #1 critical finding in vibe-coded apps. How it happens and how to fix it.]]></description>
      <pubDate>Wed, 04 Mar 2026 00:00:00 GMT</pubDate>
      <category>Blog</category>
    </item>
    <item>
      <title><![CDATA[OpenAI Revokes macOS Certificate After Supply Chain Attack]]></title>
      <link>https://vibewshield.com/news/openai-revokes-macos-certificate-axios-supply-chain</link>
      <guid isPermaLink="true">https://vibewshield.com/news/openai-revokes-macos-certificate-axios-supply-chain</guid>
      <description><![CDATA[OpenAI revoked its macOS app certificate after a malicious Axios supply chain incident exposed users to tampered builds. Here's what developers need to know.]]></description>
      <pubDate>Mon, 13 Apr 2026 06:50:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[GlassWorm Campaign Targets Developer IDEs via Zig Dropper]]></title>
      <link>https://vibewshield.com/news/glassworm-campaign-zig-dropper-developer-ide-infection</link>
      <guid isPermaLink="true">https://vibewshield.com/news/glassworm-campaign-zig-dropper-developer-ide-infection</guid>
      <description><![CDATA[The GlassWorm campaign uses a Zig-compiled dropper to infect developer IDEs. Learn how it works, what's at risk, and how to protect your dev environment.]]></description>
      <pubDate>Fri, 10 Apr 2026 13:23:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Browser Extensions: The Hidden AI Attack Surface]]></title>
      <link>https://vibewshield.com/news/browser-extensions-ai-attack-surface-security-risks</link>
      <guid isPermaLink="true">https://vibewshield.com/news/browser-extensions-ai-attack-surface-security-risks</guid>
      <description><![CDATA[Browser extensions are quietly becoming a top AI data consumption channel. Here's what developers need to know about the security risks they introduce.]]></description>
      <pubDate>Fri, 10 Apr 2026 11:00:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Marimo RCE CVE-2026-39987 Exploited in 10 Hours]]></title>
      <link>https://vibewshield.com/news/marimo-rce-cve-2026-39987-exploited-10-hours</link>
      <guid isPermaLink="true">https://vibewshield.com/news/marimo-rce-cve-2026-39987-exploited-10-hours</guid>
      <description><![CDATA[The Marimo RCE flaw CVE-2026-39987 was exploited within 10 hours of disclosure. Learn how it works, what's at risk, and how to protect your stack now.]]></description>
      <pubDate>Fri, 10 Apr 2026 07:37:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Smart Slider 3 Pro Backdoor via Nextend Server Breach]]></title>
      <link>https://vibewshield.com/news/smart-slider-3-pro-backdoor-nextend-server-breach</link>
      <guid isPermaLink="true">https://vibewshield.com/news/smart-slider-3-pro-backdoor-nextend-server-breach</guid>
      <description><![CDATA[Attackers distributed a backdoored Smart Slider 3 Pro update through compromised Nextend servers. Here's what WordPress site owners need to check now.]]></description>
      <pubDate>Fri, 10 Apr 2026 06:28:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Smart Slider 3 Pro Hijacked to Push Backdoored Updates]]></title>
      <link>https://vibewshield.com/news/smart-slider-3-pro-hijacked-malicious-wordpress-joomla</link>
      <guid isPermaLink="true">https://vibewshield.com/news/smart-slider-3-pro-hijacked-malicious-wordpress-joomla</guid>
      <description><![CDATA[Smart Slider 3 Pro version 3.5.1.35 was hijacked to push malicious WordPress and Joomla updates with hidden admin accounts and multi-layer backdoors.]]></description>
      <pubDate>Thu, 09 Apr 2026 16:15:26 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Shadow AI Security Risks Exposing Enterprise Networks]]></title>
      <link>https://vibewshield.com/news/shadow-ai-security-risks-enterprise-networks</link>
      <guid isPermaLink="true">https://vibewshield.com/news/shadow-ai-security-risks-enterprise-networks</guid>
      <description><![CDATA[Shadow AI is collapsing human response windows and turning remote access into the fastest path to breach. Here's what developers need to know now.]]></description>
      <pubDate>Thu, 09 Apr 2026 11:31:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[SVG Pixel Trick Hides Magento Credit Card Skimmer]]></title>
      <link>https://vibewshield.com/news/svg-pixel-trick-magento-credit-card-skimmer</link>
      <guid isPermaLink="true">https://vibewshield.com/news/svg-pixel-trick-magento-credit-card-skimmer</guid>
      <description><![CDATA[Hackers inject a 1x1 SVG pixel with base64-encoded skimmer code into Magento stores, stealing credit card data via fake checkout overlays. Here's what to check.]]></description>
      <pubDate>Wed, 08 Apr 2026 22:34:26 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Chaos Malware Variant Hits Cloud Deployments]]></title>
      <link>https://vibewshield.com/news/chaos-variant-targets-misconfigured-cloud-deployments</link>
      <guid isPermaLink="true">https://vibewshield.com/news/chaos-variant-targets-misconfigured-cloud-deployments</guid>
      <description><![CDATA[A new Chaos variant targets misconfigured cloud deployments and adds SOCKS proxy capability. Here's what developers need to know to stay protected.]]></description>
      <pubDate>Wed, 08 Apr 2026 17:51:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Claude AI Finds Thousands of Zero-Day Flaws]]></title>
      <link>https://vibewshield.com/news/claude-ai-zero-day-flaws-major-systems</link>
      <guid isPermaLink="true">https://vibewshield.com/news/claude-ai-zero-day-flaws-major-systems</guid>
      <description><![CDATA[Anthropic's Claude AI model has uncovered thousands of zero-day vulnerabilities across major systems, shrinking the window humans have to respond to threats.]]></description>
      <pubDate>Wed, 08 Apr 2026 09:16:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[N. Korean Hackers Drop 1,700 Malicious Packages]]></title>
      <link>https://vibewshield.com/news/north-korean-hackers-malicious-packages-npm-pypi-go-rust</link>
      <guid isPermaLink="true">https://vibewshield.com/news/north-korean-hackers-malicious-packages-npm-pypi-go-rust</guid>
      <description><![CDATA[North Korean hackers spread 1,700 malicious packages across npm, PyPI, Go, and Rust registries. Here's what developers need to check right now.]]></description>
      <pubDate>Wed, 08 Apr 2026 07:47:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Ninja Forms File Upload Flaw: CVE-2026-0740]]></title>
      <link>https://vibewshield.com/news/ninja-forms-file-upload-cve-2026-0740-rce</link>
      <guid isPermaLink="true">https://vibewshield.com/news/ninja-forms-file-upload-cve-2026-0740-rce</guid>
      <description><![CDATA[CVE-2026-0740 in Ninja Forms File Upload allows unauthenticated RCE. Over 3,600 attacks blocked in 24 hours. Update to 3.3.27 now.]]></description>
      <pubDate>Tue, 07 Apr 2026 22:03:01 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Snowflake Data Theft via SaaS Integrator Breach]]></title>
      <link>https://vibewshield.com/news/snowflake-data-theft-saas-integrator-breach</link>
      <guid isPermaLink="true">https://vibewshield.com/news/snowflake-data-theft-saas-integrator-breach</guid>
      <description><![CDATA[ShinyHunters stole auth tokens from Anodot to hit Snowflake customers. Here's what happened, who's affected, and how to protect your integrations.]]></description>
      <pubDate>Tue, 07 Apr 2026 19:39:18 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Flowise RCE CVE: 12,000+ Instances Under Attack]]></title>
      <link>https://vibewshield.com/news/flowise-rce-cvss-10-active-exploitation-exposed</link>
      <guid isPermaLink="true">https://vibewshield.com/news/flowise-rce-cvss-10-active-exploitation-exposed</guid>
      <description><![CDATA[A CVSS 10.0 RCE flaw in Flowise AI Agent Builder is being actively exploited. Over 12,000 exposed instances face full remote takeover. Here's what you need to know.]]></description>
      <pubDate>Tue, 07 Apr 2026 05:56:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[LiteLLM Flaw Turns Dev Machines Into Credential Vaults]]></title>
      <link>https://vibewshield.com/news/litellm-credential-vault-vulnerability-developer-machines</link>
      <guid isPermaLink="true">https://vibewshield.com/news/litellm-credential-vault-vulnerability-developer-machines</guid>
      <description><![CDATA[A critical LiteLLM vulnerability exposed developer machines as credential vaults for attackers. Learn how it works and how to protect your AI toolchain now.]]></description>
      <pubDate>Mon, 06 Apr 2026 11:45:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Hackers Exploit React2Shell in Automated Credential Theft Campaign]]></title>
      <link>https://vibewshield.com/news/hackers-exploit-react2shell-automated-credential-theft</link>
      <guid isPermaLink="true">https://vibewshield.com/news/hackers-exploit-react2shell-automated-credential-theft</guid>
      <description><![CDATA[CVE-2025-55182 in React2Shell is being weaponized to steal AWS keys, SSH keys, and env secrets from Next.js apps at scale. 766 hosts hit in 24 hours.]]></description>
      <pubDate>Sun, 05 Apr 2026 14:17:23 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[36 Malicious npm Packages Exploited Redis and PostgreSQL to Deploy Persistent Implants]]></title>
      <link>https://vibewshield.com/news/malicious-npm-packages-redis-postgresql-persistent-implants</link>
      <guid isPermaLink="true">https://vibewshield.com/news/malicious-npm-packages-redis-postgresql-persistent-implants</guid>
      <description><![CDATA[36 rogue npm packages abused Redis and PostgreSQL connections to plant persistent backdoors. Here is what happened and how to protect your supply chain.]]></description>
      <pubDate>Sun, 05 Apr 2026 05:07:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[LinkedIn Secretly Scans for 6,000+ Chrome Extensions, Collects Device Data]]></title>
      <link>https://vibewshield.com/news/linkedin-scans-chrome-extensions-collects-data</link>
      <guid isPermaLink="true">https://vibewshield.com/news/linkedin-scans-chrome-extensions-collects-data</guid>
      <description><![CDATA[LinkedIn injects hidden JavaScript to detect 6,236+ Chrome extensions and harvest device data from visitors - what developers need to know about browser fingerprinting.]]></description>
      <pubDate>Fri, 03 Apr 2026 20:40:22 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Hims & Hers Warns of Data Breach After Zendesk Support Ticket Breach]]></title>
      <link>https://vibewshield.com/news/hims-hers-data-breach-zendesk-support-tickets</link>
      <guid isPermaLink="true">https://vibewshield.com/news/hims-hers-data-breach-zendesk-support-tickets</guid>
      <description><![CDATA[Hims & Hers suffered a data breach after ShinyHunters compromised their Okta SSO to access Zendesk, stealing millions of customer support tickets in February 2026.]]></description>
      <pubDate>Fri, 03 Apr 2026 17:41:11 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Microsoft Details Cookie-Controlled PHP Web Shells Persisting via Cron on Linux Servers]]></title>
      <link>https://vibewshield.com/news/cookie-controlled-php-web-shells-cron-linux-servers</link>
      <guid isPermaLink="true">https://vibewshield.com/news/cookie-controlled-php-web-shells-cron-linux-servers</guid>
      <description><![CDATA[Microsoft exposes PHP web shells using cookie-based activation and cron jobs to persist on Linux servers - here is what developers need to know.]]></description>
      <pubDate>Fri, 03 Apr 2026 15:32:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[UNC1069 Social Engineering of Axios Maintainer Led to npm Supply Chain Attack]]></title>
      <link>https://vibewshield.com/news/unc1069-social-engineering-axios-npm-supply-chain-attack</link>
      <guid isPermaLink="true">https://vibewshield.com/news/unc1069-social-engineering-axios-npm-supply-chain-attack</guid>
      <description><![CDATA[Threat actor UNC1069 targeted an Axios maintainer via social engineering, compromising the npm package in a dangerous supply chain attack.]]></description>
      <pubDate>Fri, 03 Apr 2026 11:04:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Why Third-Party Risk Is the Biggest Gap in Your Clients' Security Posture]]></title>
      <link>https://vibewshield.com/news/third-party-risk-biggest-gap-clients-security-posture</link>
      <guid isPermaLink="true">https://vibewshield.com/news/third-party-risk-biggest-gap-clients-security-posture</guid>
      <description><![CDATA[AI has collapsed human response windows and turned remote access into the fastest path to breach. Here's why third-party risk is your clients' biggest blind spot.]]></description>
      <pubDate>Fri, 03 Apr 2026 11:00:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[CERT-EU: European Commission Hack Exposes Data of 30 EU Entities]]></title>
      <link>https://vibewshield.com/news/cert-eu-european-commission-hack-exposes-data-30-eu-entities</link>
      <guid isPermaLink="true">https://vibewshield.com/news/cert-eu-european-commission-hack-exposes-data-30-eu-entities</guid>
      <description><![CDATA[TeamPCP breached the European Commission's AWS environment using a stolen API key, exposing data from 30+ EU entities. Here's how it happened and what devs must do.]]></description>
      <pubDate>Fri, 03 Apr 2026 06:33:34 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Hackers Exploit CVE-2025-55182 to Breach 766 Next.js Hosts, Steal Credentials]]></title>
      <link>https://vibewshield.com/news/cve-2025-55182-nextjs-breach-credentials-stolen</link>
      <guid isPermaLink="true">https://vibewshield.com/news/cve-2025-55182-nextjs-breach-credentials-stolen</guid>
      <description><![CDATA[Attackers exploited CVE-2025-55182 to compromise 766 Next.js hosts and harvest credentials. Here's what happened and how to protect your app.]]></description>
      <pubDate>Thu, 02 Apr 2026 19:30:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[ThreatsDay Bulletin: Pre-Auth Chains, Android Rootkits, CloudTrail Evasion & More]]></title>
      <link>https://vibewshield.com/news/threatsday-bulletin-pre-auth-chains-android-rootkits-cloudtrail-evasion</link>
      <guid isPermaLink="true">https://vibewshield.com/news/threatsday-bulletin-pre-auth-chains-android-rootkits-cloudtrail-evasion</guid>
      <description><![CDATA[Pre-auth exploit chains, Android rootkits, and CloudTrail evasion are dominating the threat landscape. Here's what developers need to know right now.]]></description>
      <pubDate>Thu, 02 Apr 2026 12:45:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Google Attributes Axios npm Supply Chain Attack to North Korean Group UNC1069]]></title>
      <link>https://vibewshield.com/news/google-axios-npm-supply-chain-attack-unc1069</link>
      <guid isPermaLink="true">https://vibewshield.com/news/google-axios-npm-supply-chain-attack-unc1069</guid>
      <description><![CDATA[Google links the Axios npm supply chain attack to North Korean threat group UNC1069. Here's what happened and how developers can protect their code.]]></description>
      <pubDate>Wed, 01 Apr 2026 07:44:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Claude Code Source Leaked via npm Packaging Error, Anthropic Confirms]]></title>
      <link>https://vibewshield.com/news/claude-code-source-leaked-npm-packaging-error-anthropic</link>
      <guid isPermaLink="true">https://vibewshield.com/news/claude-code-source-leaked-npm-packaging-error-anthropic</guid>
      <description><![CDATA[Anthropic confirms Claude Code source was exposed via an npm packaging error. Here's what happened and how developers can protect their own packages.]]></description>
      <pubDate>Wed, 01 Apr 2026 06:12:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Claude Code Source Code Accidentally Leaked in NPM Package]]></title>
      <link>https://vibewshield.com/news/claude-code-source-code-leaked-npm-package</link>
      <guid isPermaLink="true">https://vibewshield.com/news/claude-code-source-code-leaked-npm-package</guid>
      <description><![CDATA[Anthropic accidentally exposed Claude Code's closed-source code via a 60MB source map file in an NPM package. Here's what happened and what developers should learn.]]></description>
      <pubDate>Wed, 01 Apr 2026 00:32:25 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Vertex AI Vulnerability Exposes Google Cloud Data and Private Artifacts]]></title>
      <link>https://vibewshield.com/news/vertex-ai-vulnerability-exposes-google-cloud-data</link>
      <guid isPermaLink="true">https://vibewshield.com/news/vertex-ai-vulnerability-exposes-google-cloud-data</guid>
      <description><![CDATA[A critical Vertex AI vulnerability exposed sensitive Google Cloud data and private artifacts, putting AI workloads at serious risk.]]></description>
      <pubDate>Tue, 31 Mar 2026 13:09:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Axios Supply Chain Attack Pushes Cross-Platform RAT via Compromised npm Account]]></title>
      <link>https://vibewshield.com/news/axios-supply-chain-attack-rat-compromised-npm-account</link>
      <guid isPermaLink="true">https://vibewshield.com/news/axios-supply-chain-attack-rat-compromised-npm-account</guid>
      <description><![CDATA[A compromised npm account pushed a cross-platform RAT through the Axios package. Here's what happened and how developers can protect their supply chain.]]></description>
      <pubDate>Tue, 31 Mar 2026 06:08:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[OpenAI Patches ChatGPT Data Exfiltration Flaw and Codex GitHub Token Vulnerability]]></title>
      <link>https://vibewshield.com/news/openai-patches-chatgpt-data-exfiltration-codex-github-token</link>
      <guid isPermaLink="true">https://vibewshield.com/news/openai-patches-chatgpt-data-exfiltration-codex-github-token</guid>
      <description><![CDATA[OpenAI fixed a ChatGPT data exfiltration bug and a Codex vulnerability that exposed GitHub tokens - here's what developers need to know.]]></description>
      <pubDate>Mon, 30 Mar 2026 18:05:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[The State of Secrets Sprawl 2026: 9 Takeaways for CISOs]]></title>
      <link>https://vibewshield.com/news/state-of-secrets-sprawl-2026-takeaways-cisos</link>
      <guid isPermaLink="true">https://vibewshield.com/news/state-of-secrets-sprawl-2026-takeaways-cisos</guid>
      <description><![CDATA[Secrets sprawl is out of control in 2026. Here are 9 critical takeaways every CISO needs to know to lock down leaked credentials and API keys.]]></description>
      <pubDate>Mon, 30 Mar 2026 11:30:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Apple Sends Lock Screen Alerts to Outdated iPhones Over Active Web-Based Exploits]]></title>
      <link>https://vibewshield.com/news/apple-lock-screen-alerts-outdated-iphones-web-exploits</link>
      <guid isPermaLink="true">https://vibewshield.com/news/apple-lock-screen-alerts-outdated-iphones-web-exploits</guid>
      <description><![CDATA[Apple is pushing lock screen warnings to older iPhones targeted by active web-based exploits. Here is what developers and users need to know right now.]]></description>
      <pubDate>Fri, 27 Mar 2026 17:22:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Fake VS Code Alerts on GitHub Spread Malware to Developers]]></title>
      <link>https://vibewshield.com/news/fake-vs-code-alerts-github-spread-malware-developers</link>
      <guid isPermaLink="true">https://vibewshield.com/news/fake-vs-code-alerts-github-spread-malware-developers</guid>
      <description><![CDATA[A coordinated campaign is flooding GitHub Discussions with fake VS Code security alerts, tricking developers into downloading malware via Google Drive links.]]></description>
      <pubDate>Fri, 27 Mar 2026 16:51:52 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[European Commission Investigating Breach After Amazon Cloud Account Hack]]></title>
      <link>https://vibewshield.com/news/european-commission-investigating-amazon-cloud-account-hack</link>
      <guid isPermaLink="true">https://vibewshield.com/news/european-commission-investigating-amazon-cloud-account-hack</guid>
      <description><![CDATA[A threat actor breached the European Commission's AWS environment and claims to have stolen 350GB of data. Here's what happened and how to lock down cloud accounts.]]></description>
      <pubDate>Fri, 27 Mar 2026 12:22:19 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[AitM Phishing Targets TikTok Business Accounts Using Cloudflare Turnstile Evasion]]></title>
      <link>https://vibewshield.com/news/aitm-phishing-tiktok-business-cloudflare-turnstile-evasion</link>
      <guid isPermaLink="true">https://vibewshield.com/news/aitm-phishing-tiktok-business-cloudflare-turnstile-evasion</guid>
      <description><![CDATA[Adversary-in-the-Middle phishing campaigns are hijacking TikTok Business accounts by bypassing Cloudflare Turnstile protections. Here's what devs need to know.]]></description>
      <pubDate>Fri, 27 Mar 2026 12:03:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[LangChain, LangGraph Flaws Expose Files, Secrets, Databases in Widely Used AI Frameworks]]></title>
      <link>https://vibewshield.com/news/langchain-langgraph-flaws-expose-files-secrets-databases</link>
      <guid isPermaLink="true">https://vibewshield.com/news/langchain-langgraph-flaws-expose-files-secrets-databases</guid>
      <description><![CDATA[Critical vulnerabilities in LangChain and LangGraph expose sensitive files, secrets, and databases - here's what AI developers need to know and fix now.]]></description>
      <pubDate>Fri, 27 Mar 2026 08:07:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Ajax Football Club Hack Exposed Fan Data and Enabled Ticket Hijack]]></title>
      <link>https://vibewshield.com/news/ajax-football-club-hack-fan-data-ticket-hijack</link>
      <guid isPermaLink="true">https://vibewshield.com/news/ajax-football-club-hack-fan-data-ticket-hijack</guid>
      <description><![CDATA[A hacker breached AFC Ajax systems, exposing 300,000 fan accounts and enabling ticket reassignment via vulnerable APIs and shared keys.]]></description>
      <pubDate>Thu, 26 Mar 2026 20:37:25 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[CISA: New Langflow Flaw Actively Exploited to Hijack AI Workflows]]></title>
      <link>https://vibewshield.com/news/cisa-langflow-flaw-exploited-hijack-ai-workflows</link>
      <guid isPermaLink="true">https://vibewshield.com/news/cisa-langflow-flaw-exploited-hijack-ai-workflows</guid>
      <description><![CDATA[CVE-2026-33017 in Langflow is being actively exploited for RCE - attackers went from advisory to full exploitation in under 24 hours. Here's what you need to know.]]></description>
      <pubDate>Thu, 26 Mar 2026 19:17:43 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Claude Extension Flaw Enabled Zero-Click XSS Prompt Injection via Any Website]]></title>
      <link>https://vibewshield.com/news/claude-extension-zero-click-xss-prompt-injection</link>
      <guid isPermaLink="true">https://vibewshield.com/news/claude-extension-zero-click-xss-prompt-injection</guid>
      <description><![CDATA[A flaw in the Claude browser extension allowed zero-click XSS prompt injection from any website, putting AI-assisted sessions at serious risk.]]></description>
      <pubDate>Thu, 26 Mar 2026 13:11:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[WebRTC Skimmer Bypasses CSP to Steal Payment Data from E-Commerce Sites]]></title>
      <link>https://vibewshield.com/news/webrtc-skimmer-bypasses-csp-steal-payment-data</link>
      <guid isPermaLink="true">https://vibewshield.com/news/webrtc-skimmer-bypasses-csp-steal-payment-data</guid>
      <description><![CDATA[A WebRTC-based skimmer is bypassing Content Security Policy protections to exfiltrate payment data from e-commerce sites. Here is what you need to know.]]></description>
      <pubDate>Thu, 26 Mar 2026 06:53:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[TeamPCP Backdoors LiteLLM Versions 1.82.7-1.82.8 via Trivy CI/CD Compromise]]></title>
      <link>https://vibewshield.com/news/teampcp-backdoors-litellm-trivy-cicd-compromise</link>
      <guid isPermaLink="true">https://vibewshield.com/news/teampcp-backdoors-litellm-trivy-cicd-compromise</guid>
      <description><![CDATA[Threat actor TeamPCP compromised LiteLLM versions 1.82.7-1.82.8 by poisoning Trivy in a CI/CD supply chain attack. Here is what developers need to know.]]></description>
      <pubDate>Tue, 24 Mar 2026 18:21:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Ghost Campaign Uses 7 npm Packages to Steal Crypto Wallets and Credentials]]></title>
      <link>https://vibewshield.com/news/ghost-campaign-7-npm-packages-steal-crypto-wallets</link>
      <guid isPermaLink="true">https://vibewshield.com/news/ghost-campaign-7-npm-packages-steal-crypto-wallets</guid>
      <description><![CDATA[A stealthy npm supply chain attack uses 7 malicious packages to harvest crypto wallet keys and credentials. Here's what developers need to know.]]></description>
      <pubDate>Tue, 24 Mar 2026 12:00:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[TeamPCP Hacks Checkmarx GitHub Actions Using Stolen CI Credentials]]></title>
      <link>https://vibewshield.com/news/teampcp-hacks-checkmarx-github-actions-stolen-ci-credentials</link>
      <guid isPermaLink="true">https://vibewshield.com/news/teampcp-hacks-checkmarx-github-actions-stolen-ci-credentials</guid>
      <description><![CDATA[TeamPCP compromised Checkmarx GitHub Actions pipelines using stolen CI credentials - here is what happened and how to lock down your own pipelines.]]></description>
      <pubDate>Tue, 24 Mar 2026 10:38:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[North Korean Hackers Abuse VS Code Auto-Run Tasks to Deploy StoatWaffle Malware]]></title>
      <link>https://vibewshield.com/news/north-korean-hackers-vs-code-autorun-tasks-stoatwaffle</link>
      <guid isPermaLink="true">https://vibewshield.com/news/north-korean-hackers-vs-code-autorun-tasks-stoatwaffle</guid>
      <description><![CDATA[North Korean threat actors are exploiting VS Code auto-run tasks to silently deploy StoatWaffle malware. Here's what happened and how to protect your dev environment.]]></description>
      <pubDate>Mon, 23 Mar 2026 18:09:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Weekly Recap: CI/CD Backdoor, FBI Buys Location Data, WhatsApp Ditches Numbers & More]]></title>
      <link>https://vibewshield.com/news/weekly-recap-cicd-backdoor-fbi-location-data-whatsapp</link>
      <guid isPermaLink="true">https://vibewshield.com/news/weekly-recap-cicd-backdoor-fbi-location-data-whatsapp</guid>
      <description><![CDATA[This week: a CI/CD pipeline backdoor shakes DevSecOps, the FBI quietly buys location data, and WhatsApp drops phone number IDs. Here's what developers need to know.]]></description>
      <pubDate>Mon, 23 Mar 2026 13:14:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Eight Attack Vectors Found Inside AWS Bedrock - What Attackers Can Do]]></title>
      <link>https://vibewshield.com/news/eight-attack-vectors-aws-bedrock</link>
      <guid isPermaLink="true">https://vibewshield.com/news/eight-attack-vectors-aws-bedrock</guid>
      <description><![CDATA[Researchers uncovered eight attack vectors inside AWS Bedrock. Here's what attackers can exploit and how developers can lock down their AI infrastructure.]]></description>
      <pubDate>Mon, 23 Mar 2026 11:55:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Oracle Patches Critical CVE-2026-21992 Enabling Unauthenticated RCE in Identity Manager]]></title>
      <link>https://vibewshield.com/news/oracle-cve-2026-21992-unauthenticated-rce-identity-manager</link>
      <guid isPermaLink="true">https://vibewshield.com/news/oracle-cve-2026-21992-unauthenticated-rce-identity-manager</guid>
      <description><![CDATA[Oracle patches CVE-2026-21992, a critical unauthenticated RCE flaw in Identity Manager. Here's what happened and how to protect your stack now.]]></description>
      <pubDate>Sat, 21 Mar 2026 10:24:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[CISA Flags Apple, Craft CMS, Laravel Bugs in KEV, Orders Patching by April 3, 2026]]></title>
      <link>https://vibewshield.com/news/cisa-kev-apple-craft-cms-laravel-patch-april-2026</link>
      <guid isPermaLink="true">https://vibewshield.com/news/cisa-kev-apple-craft-cms-laravel-patch-april-2026</guid>
      <description><![CDATA[CISA added Apple, Craft CMS, and Laravel vulnerabilities to its KEV catalog, mandating federal agencies patch by April 3, 2026.]]></description>
      <pubDate>Sat, 21 Mar 2026 08:25:00 GMT</pubDate>
      <category>News</category>
    </item>
    <item>
      <title><![CDATA[Oracle Pushes Emergency Fix for Critical Identity Manager RCE Flaw]]></title>
      <link>https://vibewshield.com/news/oracle-emergency-fix-identity-manager-rce-cve-2026-21992</link>
      <guid isPermaLink="true">https://vibewshield.com/news/oracle-emergency-fix-identity-manager-rce-cve-2026-21992</guid>
      <description><![CDATA[Oracle drops an out-of-band patch for CVE-2026-21992, a CVSS 9.8 unauthenticated RCE bug in Identity Manager and Web Services Manager. Patch now.]]></description>
      <pubDate>Fri, 20 Mar 2026 18:48:47 GMT</pubDate>
      <category>News</category>
    </item>
  </channel>
</rss>