Daily digest · 2026-08-12

Daily Digest, 2026-08-12

TL;DR: Today's theme is that the checks people rely on to keep agents in line don't hold. Reviewers wave through about a third of dangerous coding-agent requests, including asking for AWS credentials, and a malicious tool server can split one nasty instruction into harmless-looking pieces to walk off with SSH keys and source code. On shared model hosting, one customer can time the cache and rebuild another customer's prompt. Attackers are running agents too: a Chinese-speaking actor pointed a DeepSeek agent at 1,200+ machines at a security firm, while an AI agent did much of the work finding an unauthenticated SharePoint takeover chain.

Top stories

Also notable