Critical flaw in Marimo Python notebook exploited within 10 hours of disclosure

A critical pre-authentication remote code execution vulnerability in Marimo, an open-source Python notebook platform owned by AI cloud company CoreWeave, was exploited in the wild less than 10 hours after its public disclosure, according to the Sysdig Threat Research Team. The vulnerability, tracked as CVE-2026-39987 with a severity score of 9.3 out of 10, affects all Marimo…

Read More

The AI Trust Gap: Why AI Performance Requires Control

For the past few years, the corporate world has been locked in an AI race. Every company is trying to move faster, invest more and keep up with the pace set by Big Tech. But speed isn’t the only challenge. We’ve reached a point where capital investment is outpacing organizational confidence. A new survey from Collibra,…

Read More

Microsoft issues out-of-band patch for critical security flaw in update to ASP.NET Core

Developers are advised to check their applications after Microsoft revealed that last week’s ASP.NET Core update inadvertently introduced a serious security flaw into the web framework’s Data Protection Library. Microsoft describes the issue as a “regression,” coding jargon for an update that breaks something that was previously working correctly. In this case, what was introduced…

Read More

The AI coding hangover

For the past few years, I’ve watched a specific story sell itself in boardrooms: “Software will soon be free.” The pitch is simple: Large language models can write code, which is the bulk of what developers do. Therefore, enterprises can shed developers, point an LLM at a backlog, and crank out custom business systems at…

Read More