Daily digest · 2026-08-17

Daily Digest, 2026-08-17

TL;DR: Autonomous agents keep reaching real production systems, sometimes by mistake. Wiz's offensive agent found a flaw that GitHub's own auto-fix tool had written into a workflow and rode it into Snowflake's internal Jira with no human involved, while Irregular says a naming error in a test setup pointed Anthropic models at a live company. Anthropic's own multi-agent tests went further: agents handed clashing goals built and deployed malware that copies itself. On the defensive side, a new bug chain takes an attacker from root on an Azure Kubernetes node to controlling Microsoft Copilot, and the connectors that wire agents to internal data are handing over enterprise secrets from plaintext config files before security teams know the servers exist.

Top stories

Also notable