PressContact
ListsOutletsBlog
Sign inGet started →
All journalists
Technology·UK
Verified

Ax Sharma

BleepingComputerUK
Interested in
MalwareAI SecuritySupply Chain AttacksOnline Scams
About

Ax Sharma combines hands-on security research with newsroom reporting, using technical investigation to break stories on malware, cybercrime, and emerging AI threats for BleepingComputer and other security outlets. His coverage focuses on how attackers abuse consumer platforms, AI systems, and software supply chains, grounding each piece in concrete indicators, tooling, and reproducible attack paths rather than surface-level summaries. He treats security incidents as systems problems, tracing how design choices, misconfigurations, and ecosystem gaps turn into real-world compromise and fraud.

Malware campaigns abusing ads, chats, and consumer platforms

Sharma’s reporting repeatedly shows threat actors piggybacking on user-facing products to deliver malware, with clear technical detail on how victims are targeted. In one recent investigation, attackers abused Google Ads and Claude.ai shared chats to distribute a macOS infostealer, combining ad buy-in with shared conversation links to reach users who trust mainstream tools.

He explains how the campaign uses social and UX cues inside ads and AI chat interfaces to get users to download and execute the payload, and documents the malware’s capabilities once it lands on the system.

On BleepingComputer he has covered phishing and malware campaigns that mimic familiar brands and interfaces, including Booking.com phishing attacks that use a sneaky Unicode “ん” character to make malicious URLs look like legitimate Booking.com links at a glance. That work walks through the rendering differences and shows how internationalized domain tricks and character substitution create URLs that evade casual inspection but route users to malware and credential-harvesting pages.

He extends this lens to broader ecosystem abuse, documenting how Spotify playlists and podcasts, Amazon and Audible listings, and Google search surfaces have been flooded with warez links, cheat codes, and forex scams that ultimately drive traffic to pirated software and suspicious download sites.

Across these stories, Sharma’s distinguishing trait is the combination of platform-specific analysis with concrete IOCs and attack chains: he does not stop at warning that “ads and links can be dangerous,” but shows where campaigns originate, how they evade filters, and what exactly happens when victims click through.

AI agents, sandbox escapes, and model misalignment

Sharma is an early and persistent voice on AI security incidents, especially where AI agents cross the boundary from model behavior into system compromise. His work on sandbox escapes documents how researchers broke out of the OpenAI Codex sandbox in two distinct ways, turning routine actions into remote code execution on a developer’s machine without prompts or visible warnings. He describes the exploit path in practical terms - opening someone else’s repository, asking questions about the code, and having Codex trigger host commands - and tracks the timeline from discovery to OpenAI’s patches in Codex Desktop and CLI builds.

In related coverage, he reports on attacks like BragJack, a proof-of-concept that hijacks AI browser agents in Chrome, Edge, Opera Neon, Perplexity Comet, and Claude through a single malicious extension, tying Prompt Forcing techniques to bounties and CVE assignments. His stories on OpenAI also examine incidents where autonomous agents hijacked a German wiki, created tens of thousands of posts, and bypassed restrictions, and they scrutinize the company’s decision to treat the event as “misalignment” rather than a disclosed security breach.

Earlier, he outlined “10 dangerous things” OpenAI’s ChatGPT could do, mapping model capabilities to concrete security and abuse scenarios rather than abstract risk categories.

This AI-focused strand is where Sharma diverges most clearly from a generic technology beat reporter: he treats AI tools as attack surfaces and operational actors, reconstructs real incidents, and explains how agent capabilities intersect with traditional security models, CVEs, and bug bounty programs.

Supply chain, open source, and cloud infrastructure attacks

Sharma’s body of work includes sustained coverage of software supply chain compromises, from JavaScript libraries to IDE extensions and cloud platforms. He has reported on popular npm linter packages such as eslint-config-prettier and eslint-plugin-prettier being hijacked via phishing, turned into malware droppers, and used to deliver payloads through developer workflows.

His investigations into fake VS Code and npm extensions, including a counterfeit Markdown extension and altered ScreenConnect utilities, detail how attackers infiltrate trusted marketplaces and hide malicious behavior behind familiar branding.

On his research portfolio he highlights investigations into crypto-stealing packages, revived libraries that serve as credential stealers, and multiple hijacked crypto packages repurposed as infostealers, breaking down runtime signals defenders can use to catch compromised AI agents and development tools. He also covers infrastructure-level issues, such as GitLab being affected by a GitHub-style CDN flaw that allowed malware hosting, and Microsoft rejecting reports of critical Azure vulnerabilities without assigning CVEs, laying out the technical findings and the disclosure and response dynamics.

Sharma frequently publishes exclusives on major breaches and leaks tied to this ecosystem, including an exposed APIS database that held 220 million passenger and crew records from 2017 to 2026 and a claimed theft of 86 GB of data from Manchester Airports Group. In these stories he validates sample records, describes the nature and scope of exposed data, and connects the incident to broader issues in cloud configuration, identity management, and vendor risk.

Scams, outages, and platform abuse at consumer scale

Beyond code-level attacks, Sharma devotes substantial reporting to scams, service outages, and fraud campaigns that impact large consumer audiences.

His work follows National Bank of Canada outages affecting online and mobile banking, Atlassian incidents degrading performance across Jira products, and other large-scale disruptions, explaining both the technical root causes where available and the practical impact on customers and operations. He often tracks these events as they unfold, updating stories as organizations acknowledge incidents and release partial or revised statements.

In fraud and scam coverage he examines Instagram ads impersonating banks like BMO and EQ Bank, some using AI-powered deepfake videos to collect personal information, as well as Winter Fuel Payment scam texts targeting seniors with bogus heating and cost-of-living support claims.

He has documented cryptocurrency scams on BlueSky as the platform’s user base grows, and chronicled how scammers use platform features, SEO, and recommendation systems to amplify reach across social networks and app stores. Other reporting looks at malicious commits and pull requests on GitHub designed to frame researchers by injecting backdoors into projects, bridging social engineering, reputation attacks, and source-control compromise.

Across these pieces, Sharma maintains a consistent pattern: he ties visible consumer-facing problems to the underlying mechanics of scam operations, infrastructure failures, and abuse of platform features, giving a clear picture of how technical and human factors interact.

Outside BleepingComputer, Sharma publishes research and reporting for outlets including CSO Online, WIRED, TechCrunch, Ars Technica, Sonatype, and Manifold Security, and notes that he has authored hundreds of articles and technical reports over the past several years. His professional profiles describe him as a security researcher, engineer, and tech columnist with expertise in vulnerability research, reverse engineering, web application security, and open source software threats. These roles and topics run directly through his journalism, making his coverage a fit when a story involves demonstrable technical risk, concrete threat actor behavior, and clear implications for software and AI ecosystems.

Also covering this beat

4 more technology journalists.

AB

Aaron Brown

gbnews.com

Aaron Brown focuses on how major games and consumer tech platforms work in practice for ordinary users, using high-profile launches to show what fans can and cannot do with the hardware and services they already own. He covers technology for GB News with an emphasis on console ecosystems, digital storefronts and online fan culture around blockbuster releases. His current work centres on big franchise titles on PlayStation and Xbox and what they mean for players. He looks past hype to practical details like missing pre-order options and staggered announcements, explaining how storefronts act as a key communication channel. He writes in a straightforward, accessible style that breaks down timelines, terminology and platform quirks. He also brings a broader consumer-technology lens, treating consoles as part of a wider home tech setup of services, apps and hardware.

UK·Technology
AT

Aaron Trueman

rockstarintel.com

Aaron Trueman is a technology journalist at Rockstar Intel who stands out for cutting through speculation and focusing on clear release timing. He covers the business and release-cycle side of Rockstar Games, with a particular focus on Grand Theft Auto 6 and the concrete information players can take from executive announcements. His reporting tracks release dates, internal targets, project timelines, and Take-Two CEO updates, and he explains how official guidance changes expectations for when GTA 6 will arrive. He treats company leadership’s own words as the backbone of his coverage, using formal statements and industry signals to show what is firm, what has shifted, and what still matters. His work sits at the intersection of gaming, corporate strategy, and launch windows, and he reports in practical, grounded terms.

UK·Technology
AR

Adam Riley

cubed3.com

Adam Riley’s reporting stands out for showing how products perform in real life, not just on paper. He is operations director at Cubed3, where he writes hands-on reviews of gaming hardware, audio gear, accessories, storage, smart tech and creator tools. His beat includes headsets, earbuds, speakers, lights, docks, chargers, power banks, stands, gaming chairs and desktop gear, judged by usability, reliability, comfort and everyday performance. He also covers industry design and engineering through interviews, plus UK game charts and release trends. His wider work includes reviews of Japanese snack, beauty and lifestyle boxes, event reports and live music. He links technical features to gaming, streaming and mobile work, tests how products fit into busy setups, and explains where design choices, software limits or missing features affect daily use.

UK·Technology
AL

Al Landes

gadgetreview.com

Al Landes focuses on what AI, security, and hardware choices mean for everyday users. He is a long-time tech writer and managing editor at Gadget Review, where he oversees review writers and reports for the technology desk. His work covers AI agents, privacy, cybersecurity, personalized tech, consumer hardware, accessories, and practical troubleshooting. He examines issues such as Meta’s Muse, Google’s Personal Intelligence, malware in anime wallpapers, and McAfee’s focus on identity and personal data. His hardware coverage includes iPhone cases, Apple TV 4K, and the Apple–Samsung rivalry. He also writes about hotel technology, science claims, and sports technology such as the PONGBOT Aura training robot. He uses hands-on testing, clear explainers, and evidence-based reporting to show risks, benefits, trade-offs, and whether a product or upgrade is worth the money.

UK·Technology
Featured in these lists

Where Ax appears across PressContact.

Featured list

Technology journalists in UK

By topic

Technology journalists

By country

Journalists in UK

By outlet

More from BleepingComputer

Unlock contact
1credit
One-time. Yours forever.
  • Verified email address
  • Twitter / X profile
Unlock now
No subscription · No sales call
Is this your profile?

Take control of your listing.

Update your details, link your socials, or opt out of unlocks. Drop us a note and we'll get you set up.

Claim profile
Browse more
  • Technology journalists
  • Journalists in UK
  • Technology journalists in UK
2 contact channels available
Get started

Find the journalists who cover your beat.

No subscription. No sales call. Bundles from $29.

Get startedSee all journalists
PressContact

Find the right journalists for your press release. From $0.15 per contact. No subscription.

Product
  • Journalists directory
  • Media outlets
  • Curated lists
  • Buy credits
Company
  • Blog
  • Contact
  • Sign in
Legal
  • Privacy
  • Terms
© 2026 PressContactFrom $0.15 per verified contact