Mandiant Report: AI Assistant Hijacked for Supply Chain Attack
A new Mandiant report details how an attacker hijacked an AI coding assistant to spread a worm across repositories, highlighting a new supply chain risk.
A new Mandiant report details how an attacker hijacked an AI coding assistant to spread a worm across repositories, highlighting a new supply chain risk.
OpenAI's internal use of AI agents for coding shows they boost productivity for repetitive tasks but still require significant human oversight to function.
Perplexity's hybrid compute for Mac uses a local LLM as a privacy gate for cloud queries, offering a practical security architecture for sensitive data.
Meta's Muse Spark 1.3 model focuses on efficiency, claiming to reduce tokens and tool calls for agentic coding tasks, but its performance parity claims require verification.
Block's Buzz makes AI agents full Nostr members with their own keys — but mobile and approval gates aren't shipped yet.
Hands-on with Microsoft's MDASH bug hunter in public preview: what it caught, the logic bugs it missed, and whether the 622-patch headline survives a real repo.
BioShocking hijacks an agentic browser's task-reward loop to exfiltrate credentials — here's why prompt guardrails fail and what capability boundary actually stops it.
NVIDIA's open-source NOOA framework brings object-oriented principles to AI agent development, promising more structure but not eliminating complexity.