Cryptocnews-Crypto News, Cryptocurrency News, Blockchain News, NFT News
    What's Hot

    Spain Blocks Prediction Markets Kalshi, Polymarket for Potential Gambling Law Violations

    05/26/2026

    Strive’s SATA Briefly Swallows The Entire Bitcoin Mining Daily Supply As BTC Purchases Ramp Up

    05/26/2026

    Smarter Web Company Adds 10 Bitcoin, Lifts Holdings To 2,869 BTC Amid Treasury Push

    05/26/2026
    Facebook Twitter Instagram
    • Business
    • Markets
    • Get In Touch
    • Our Authors
    Facebook Twitter Instagram
    Cryptocnews-Crypto News, Cryptocurrency News, Blockchain News, NFT News
    • Home
    • Business

      Tom Lee’s BitMine Makes Biggest Ethereum Buy Yet in 2026

      05/26/2026

      Render crypto price prediction: why RENDER is rising today

      05/26/2026

      GSR Research Says Ethereum’s Identity Crisis Is Deepening

      05/26/2026

      Vitalik Buterin Signals Shift to ‘Smaller Ship’ at Ethereum Foundation Amid Departures

      05/25/2026

      TrapDoor attack targets crypto wallets, AWS keys and GitHub tokens

      05/25/2026
    • Technology
      1. Business
      2. Insights
      3. View All

      Tom Lee’s BitMine Makes Biggest Ethereum Buy Yet in 2026

      05/26/2026

      Render crypto price prediction: why RENDER is rising today

      05/26/2026

      GSR Research Says Ethereum’s Identity Crisis Is Deepening

      05/26/2026

      Vitalik Buterin Signals Shift to ‘Smaller Ship’ at Ethereum Foundation Amid Departures

      05/25/2026

      Strive’s SATA Briefly Swallows The Entire Bitcoin Mining Daily Supply As BTC Purchases Ramp Up

      05/26/2026

      Smarter Web Company Adds 10 Bitcoin, Lifts Holdings To 2,869 BTC Amid Treasury Push

      05/26/2026

      XRP Shows Growing Upside Momentum Through The Whale Vs Retail Delta – What’s Next?

      05/26/2026

      Self-Custodial Bitcoin Payments Now Show Verified Merchant Details

      05/26/2026

      The next big DeFi exploit will start before the code is deployed

      05/26/2026

      StepFun’s Voice AI Topped Every Benchmark. It Also Hears Your Sighs

      05/26/2026

      Render crypto price prediction: why RENDER is rising today

      05/26/2026

      Bitcoin and Ethereum ETF outflows expose rotation into HYPE, XRP and Solana

      05/25/2026
    • Insights
      1. Bitcoin
      2. Ethereum
      3. Eurozone
      4. Monero
      5. View All

      Render crypto price prediction: why RENDER is rising today

      05/26/2026

      TrapDoor attack targets crypto wallets, AWS keys and GitHub tokens

      05/25/2026

      Celestia (TIA) extends recovery above $0.44 as retail traders fuel rally

      05/23/2026

      Pi Network holds above $0.1500 as exchange outflows hint at recovery

      05/22/2026

      Hyperliquid Launches Prediction Markets as Expansion Continues

      05/26/2026

      Render crypto price prediction: why RENDER is rising today

      05/26/2026

      Zcash Is Only as Private as Its Users, And Its Users Aren’t:

      05/25/2026

      TrapDoor attack targets crypto wallets, AWS keys and GitHub tokens

      05/25/2026

      Strive’s SATA Briefly Swallows The Entire Bitcoin Mining Daily Supply As BTC Purchases Ramp Up

      05/26/2026

      Render crypto price prediction: why RENDER is rising today

      05/26/2026

      TrapDoor attack targets crypto wallets, AWS keys and GitHub tokens

      05/25/2026

      Celestia (TIA) extends recovery above $0.44 as retail traders fuel rally

      05/23/2026

      Render crypto price prediction: why RENDER is rising today

      05/26/2026

      TrapDoor attack targets crypto wallets, AWS keys and GitHub tokens

      05/25/2026

      Celestia (TIA) extends recovery above $0.44 as retail traders fuel rally

      05/23/2026

      Pi Network holds above $0.1500 as exchange outflows hint at recovery

      05/22/2026

      Strive’s SATA Briefly Swallows The Entire Bitcoin Mining Daily Supply As BTC Purchases Ramp Up

      05/26/2026

      Smarter Web Company Adds 10 Bitcoin, Lifts Holdings To 2,869 BTC Amid Treasury Push

      05/26/2026

      XRP Shows Growing Upside Momentum Through The Whale Vs Retail Delta – What’s Next?

      05/26/2026

      Self-Custodial Bitcoin Payments Now Show Verified Merchant Details

      05/26/2026
    • Markets
    • Get In Touch
    Cryptocnews-Crypto News, Cryptocurrency News, Blockchain News, NFT News
    Home»Uncategorized»Perplexity Built a Tool That Checks Your Computer for Infected Software—Without Setting Off the Infection
    Uncategorized

    Perplexity Built a Tool That Checks Your Computer for Infected Software—Without Setting Off the Infection

    adminBy admin05/26/2026No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    Share
    Facebook Twitter LinkedIn Pinterest Email


    In brief

    • Bumblebee is a free, open-source tool that checks developer computers for compromised software, browser extensions, and AI connector configs—without running the infected code.
    • Most scanners work by invoking the software they’re checking, which can accidentally trigger the attacks they’re meant to detect.
    • It’s the first open-source scanner to treat MCP config files—the connectors that give AI tools access to your data—as a security surface.

    Imagine you suspect someone poisoned a bottle of water in your house. To check, you drink from every bottle. That’s roughly how most security scanners work.

    Perplexity just open-sourced a tool called Bumblebee that takes a different approach. It scans developer computers for infected software packages, malicious browser extensions, and compromised AI tool configs—without ever running the code it finds. It reads the code, the ingredient label instead of eating the food.

    On May 11, a hacker group called TeamPCP slipped malicious code into over 160 software packages used by millions of developers worldwide—including packages from Mistral AI, UiPath, and a widely used React tool with 12 million weekly downloads. The attack spread automatically the moment developers installed those packages. Perplexity’s Bumblebee could have prevented that, the company says.

    Why “read-only” is the whole point

    Software packages—especially in the JavaScript world—can run hidden scripts the moment you install them. That’s exactly how the May 11 attack spread so fast. The malicious code fired automatically on install, before anyone noticed anything was wrong.

    A scanner that invokes the package manager to check for infections can trigger those same scripts. You go looking for the worm; the worm runs. Bumblebee sidesteps this by never calling any package manager at all. It reads raw metadata files—the records that describe what’s installed—without touching the software itself.

    The genuinely new piece is that Bumblebee also scans MCP configuration files—the local files that tell AI assistants like Claude or Cursor which external services they’re allowed to connect to.

    MCP connectors give AI tools access to emails, databases, calendars, and code. If an attacker sneaks a malicious connector into that config, your AI assistant could leak credentials or run unauthorized commands in the background. Most security tools aren’t checking for this yet.

    Beyond MCP, it covers browser extensions on Chrome, Edge, Brave, Arc, and Firefox, plus editor plugins in VS Code and its forks. The whole scan happens in one pass, outputs a clean structured list of what it found, and never modifies anything on the machine.

    How Perplexity uses it internally

    Perplexity has been running Bumblebee internally to protect the systems behind its search product, its Comet browser, and its Computer AI agent. When a new threat surfaces, Perplexity Computer drafts a catalog entry for it, a human reviews and approves it, and Bumblebee runs across all developer machines to check for matches.

    Bumblebee started as an internal tool.

    Making Perplexity products more secure for users starts with protecting the developer systems we use to build them.

    Read the full blog: https://t.co/M2IrAYtfCg

    — Perplexity (@perplexity_ai) May 22, 2026

    Teams can run their own catalogs the same way. The tool ships with a built-in threat directory seeded from recent supply-chain attacks, including the May 11 campaign. The group behind that attack—tracked by Google under the alias UNC6780—has been running coordinated software poisoning campaigns since at least March 2026.

    Bumblebee is available free at github.com/perplexityai/bumblebee under Apache 2.0, which means you can run it, tweak it, improve it and fork it without legal repercussions.

    Daily Debrief Newsletter

    Start every day with the top news stories right now, plus original features, a podcast, videos and more.





    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

    Related Posts

    Spain Blocks Prediction Markets Kalshi, Polymarket for Potential Gambling Law Violations

    05/26/2026

    Indonesia Blocks Polymarket After Bets on President’s Early Departure

    05/26/2026

    Render crypto price prediction: why RENDER is rising today

    05/26/2026

    Crypto Industry Fights Senator Warren’s Claim That Coinbase, Ripple Bank Charter Approvals Are Illegal

    05/26/2026
    Add A Comment

    Leave A Reply Cancel Reply

    Top Posts

    Millennials Are Quitting Job to Become Day Traders

    01/20/2021

    Jack Dorsey Says Bitcoin Will Unite The World

    01/15/2021

    Hong Kong Customs Arrest Four in Crypto Laundering Bust

    01/15/2021

    Subscribe to Updates

    Get the latest sports news from SportsSite about soccer, football and tennis.

    Advertisement
    Demo
    Facebook Twitter Instagram Pinterest YouTube
    Top Insights

    Spain Blocks Prediction Markets Kalshi, Polymarket for Potential Gambling Law Violations

    05/26/2026

    Strive’s SATA Briefly Swallows The Entire Bitcoin Mining Daily Supply As BTC Purchases Ramp Up

    05/26/2026
    Get Informed

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    © {2025-2026} Copyright CryptocNews.com
    • Home
    • Business
    • Markets
    • Technology
    • Contact us

    Type above and press Enter to search. Press Esc to cancel.