Koi Security
An Evolving GlassWorm Malware is Making the Rounds of Code Repositories
Jeffrey Burt | | Aikido Security, GitHub, GlassWorm, Koi Security, MCP servers, npm, Open VSX, PyPI security, Remote Access Trojan (RAT), Socket
The bad actor can now deploy a RAT, is targeting MCP servers, and is finding new ways to move through Open VSX ...
Security Boulevard
Moltbook is Dangerous, but Scale Doesn’t Match the Hype: Zenity
Jeffrey Burt | | agentic AI risks, AI Security, Koi Security, Moltbook, OpenClaw, sophos, Wiz, Zenity Labs
Zenity security researchers ran a controlled influence campaign to see how active AI agents are on the much-hyped Moltbook and whether they could be manipulated through the platform's functions. What they found ...
Security Boulevard
Palo Alto Networks Moves to Secure Agentic Endpoints with Koi Deal
Palo Alto Networks has agreed to acquire Israeli startup Koi Security, marking a timely strategic push to confront the risks of AI agents operating inside corporate systems with broad access to data ...
Security Boulevard
The Lock, Not the Alarm: How Palo Alto’s Koi Acquisition Rewrites Endpoint Security
The acquisition of Koi Security isn’t just a product play — it’s a declaration that the agentic era has created an entirely new threat surface, and the vendor who governs it first ...
Security Boulevard
Google Chrome Extension is Intercepting Millions of Users’ AI Chats
Jeffrey Burt | | AI chatbots, AI data exfiltration, Anthropic, browser extension threats, Data Brokers, Google Chrome, Google Gemini, Koi Security, malicious extensions, Microsoft Copilot, Microsoft Edge, OpenAI ChatGPT
A Chrome browser extension with 6 million users, as well as seven other Chrome and Edge extensions, for months have been silently collecting data from every AI chatbot conversion, packaging it, and ...
Security Boulevard
ShadyPanda’s Years-Long Browser Hack Infected 4.3 Million Users
Jeffrey Burt | | Google Chrome, Koi Security, Malware Spyware, Microsoft Edge, ShadyPanda, Web Browser Hijacking
A threat group dubbed ShadyPanda exploited traditional extension processes in browser marketplaces by uploading legitimate extensions and then quietly weaponization them with malicious updates, infecting 4.3 million Chrome and Edge users with ...
Security Boulevard
Why Identity and Access Still Represent the Weakest Link
Idan Dardikman, co-founder and CTO of Koi Security, discusses the company’s emergence from stealth and its mission to address one of cybersecurity’s most persistent challenges: securing identity. Dardikman explains that while the ...
Security Boulevard

