Security, AI, and other curiosities
Turla STOCKSTAY backdoor disclosed by GTIG with full IOC set targeting Ukraine gov/military; Amazon Q Developer MCP auto-exec flaw (CVE-2026-12957) enables cloud credential theft via poisoned repos