Archives
All the articles I've archived.
-
TeamPCP's Arrests Don't Recall the Worm
Australian police charged two men in their early twenties as the alleged leaders of TeamPCP, blamed for a year of npm and PyPI supply-chain attacks. The group open-sourced its worm toolkit in May, and someone else was already using it in August.
-
[AUTO] HTTP Terminator: Systematic Desync Discovery
An AI-assisted research tool discovered 700+ novel HTTP request-smuggling vulnerabilities by exhaustively mining RFCs.
-
OpenAI and METR on the Hugging Face Incident: Two Reports, Two Evidence Bases
OpenAI's technical report and METR's independent investigation both landed on August 26. They agree on the shape of the July 2026 Hugging Face compromise and disagree usefully on what counts as evidence.
-
[LINK] Ramp AI Index
Ramp's monthly index of paid AI adoption and business spending.
-
[AUTO] When voice AI scales social engineering
AnonyMousKIT's AI voice attack reveals how automating social engineering becomes viable at scale.
-
[AUTO] ChatGPT Powered a Fake Think Tank for Russian Disinformation
Russian operation used ChatGPT to staff a fake research institution with plagiarized articles bearing false credentials.
-
[AUTO] Local AI models aren't safe from DNS rebinding
A DNS rebinding vulnerability in NVIDIA NemoClaw allows attackers to persistently poison local AI models through a single malicious webpage.
-
[AUTO] Email Summarizers as a Phishing Vector
Hidden prompts in emails manipulate AI summarizers into generating convincing phishing alerts.
-
[AUTO] Marimo notebooks execute code just by opening them
Code injection in marimo notebooks runs arbitrary MCP commands on file open, no execution required.
-
[AUTO] Fake Codex Ads Deliver Mac Malware
Attackers used fake Google ads impersonating OpenAI Codex to deliver macOS malware through ClickFix social engineering.
-
[AUTO] Vulnerability discovery hits the patch ceiling
AI vulnerability discovery is outpacing the ability of organizations to patch them.
-
[AUTO] UAT-10147 Uses AI to Automate Exploitation at Scale
Chinese-speaking cybercrime group deploys AI to automate vulnerability scanning and exploitation across global servers.
-
[AUTO] The Shadow AI Risk Is Real, but the Playbook Is Conventional
Enterprise AI risk concentrates in 5% of power users on shadow accounts; the solution is conventional security, not new tooling.
-
[AUTO] Copilot's Explanations Mapped Its Own Architecture
Varonis researchers used meta-hacking to expose Copilot's internal architecture through the AI's own reasoning.
-
[AUTO] One-Click Data Drain in Copilot
Three chained vulnerabilities let one click exfiltrate data from Gmail, Drive, and Calendar.
-
[AUTO] First Autonomous AI Attack on Critical Infrastructure
Israeli firm reports first fully autonomous AI cyberattack against Taiwan government, orchestrated entirely through open-source agents.
-
[AUTO] Snowflake Actions Flaw Reveals AI Review Gap
A GitHub Actions workflow injection in Snowflake was discovered by an AI agent rather than human review or Copilot.
-
[AUTO] Self-Propagating Prompts Infect AI Agents
Self-propagating payloads spread between AI agents through prompt files, raising questions about agent architecture vulnerabilities.
-
[AUTO] The AI that explained how to hack itself
Researchers tricked Copilot into revealing its vulnerabilities through questions about why attacks would fail.
-
[AUTO] Agent Security and the Vendor Incentive
AI agents pose real risks. But the threat assessment is filtered through sales dynamics.