The Agent That Wouldn't Copy a File
A postmortem on Anthropic's “Instruction Poisoning” block. The refusal ended with an instruction: …
AI tools, cybersecurity and development news aggregated from top sources — saved permanently with unique URLs.
The Agent That Wouldn't Copy a File
A postmortem on Anthropic's “Instruction Poisoning” block. The refusal ended with an instruction: …
Agents Can Scrub Their Own Traces. shell.online's Record Reader Ships Each Turn Off the Host as It Is Written, and Is Still Not an Audit Log
A paper posted to arXiv this week, LLM Agents Can Easily Tamper With Their Own Traces by Jeremy Qin,…
Citrix admins warned to shut down NetScalers over 2 exploited zero-days
Two unpatched Citrix NetScaler zero-day vulnerabilities are reportedly being exploited in attacks, w…
ckBTC vs Wrapped Bitcoin (wBTC): Comparing Cryptographic Trust Models
Digital payments in Web3 have long suffered from high friction, confusing cryptographic keys, and un…
Plugin4Shell Hit 26,000 Agents Before Anyone Noticed. Your Coding Agent’s Plugin Store Is the New npm.
A zero-click RCE vulnerability across Claude Code, Codex, Copilot, and Gemini CLI proves that AI cod…
Chrome cookies: why google.com survives 'delete on close', again
If you set Chrome to delete site data when you close all windows, Chrome 152 still keeps google.com'…
How to challenge/dispute a CVE
I recently stumbled over a CVE for a 3rd party repository, because the maintainer deprecated a funct…
I’m a CISO who’s built many security teams. I want to help you level up your career. Ask me anything.
The editors at CISO Series present this AMA. This has been a long-term partnership between r/cyberse…
Burnout after 2 years in pentesting
I've been working as a pentester for about two years (initially part-time, then switched to full-tim…
Cloudflare fixes Containers cross-tenant flaw exposing customer data
Cloudflare has fixed a vulnerability in Containers and Sandboxes that allowed customers with a Worke…
Anthropic turns Claude into an AI marketplace with 2,000+ plugins and connectors
Anthropic has just announced a new Claude Marketplace, and it brings all AI-related tools into one p…
How useful is threat modeling in real-world security engineering? Do engineers actually use it when analyzing vulnerabilities?
I’ve recently been learning about threat modeling, and I’m trying to understand how it is actually u…