Skip to content
AppSec Santa Weekly

#3 — TeamPCP Hits Five Ecosystems, Axios Gets Hijacked, Agentic Security Goes Mainstream

Week of March 25-31, 2026: TeamPCP compromises LiteLLM, Telnyx, Checkmarx KICS. axios npm hijacked (~100M weekly downloads). SonarQube 2026.2 with AI CodeFix. OSV-Scanner v2.3.5 adds Python transitive scanning. Frida 17.9 brings eBPF spawn gating. 22 releases across 6 categories.

| 22 releases 8 min read

Want this in your inbox?

Every Tuesday, no spam.

Subscribe