Ivanti, an IT software company, has disclosed the active exploitation of a newly patched vulnerability in its Cloud Service Appliance (CSA). The flaw, CVE-2024-8190, allows remote code execution under certain circumstances. The affected CSA 4.6 has been fixed in Patch 519, but it has reached end-of-life status. Ivanti urges customers to upgrade to the supported Ivanti CSA 5.0. The U.S. Cybersecurity and Infrastructure Security Agency has required federal agencies to apply fixes by October 4, 2024.

Claude Code Source Leaked via npm Packaging Error, Anthropic Confirms
Anthropic on Tuesday confirmed that internal code for its popular artificial intelligence (AI) coding assistant, Claude Code, had been inadvertently released due to a human


