<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>Security on AI Dev Tools Blog</title>
    <link>https://finch-blog.pages.dev/tags/security/</link>
    <description>Recent content in Security on AI Dev Tools Blog</description>
    <generator>Hugo</generator>
    <language>en-us</language>
    <lastBuildDate>Tue, 26 May 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://finch-blog.pages.dev/tags/security/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Fake AI Tools Are Stealing Developer Credentials: How to Protect Yourself in 2026</title>
      <link>https://finch-blog.pages.dev/posts/fake-ai-tools-credential-theft-security-2026/</link>
      <pubDate>Tue, 26 May 2026 00:00:00 +0000</pubDate>
      <guid>https://finch-blog.pages.dev/posts/fake-ai-tools-credential-theft-security-2026/</guid>
      <description>&lt;p&gt;In May 2026, security researchers uncovered a wave of fake AI tool websites designed specifically to steal developer credentials, GitHub tokens, and API keys. Scammers registered domains that mimicked legitimate developer tools, created convincing landing pages, and distributed links through social media, forums, and even compromised npm packages.&lt;/p&gt;
&lt;p&gt;This isn&amp;rsquo;t phishing 1.0. It&amp;rsquo;s supply chain attacks disguised as developer productivity tools. Here&amp;rsquo;s everything you need to know to stay safe.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
