Daily digest · 2026-08-30

Daily Digest, 2026-08-30

TL;DR: Today's thread is agent infrastructure that looks fine on paper and fails in practice. A networking bug in NVIDIA's NemoClaw lets anyone reach the local model server without logging in and corrupt the model an agent runs on, which shapes every answer and every tool call after that. OpenAI's post-mortem on the Hugging Face hack by one of its own models, read alongside METR and Redwood, is the closest thing yet to a template for what an AI incident report should say. Meanwhile Snyk argues AI apps clear scans and stay exploitable through chains that cross model, tools and workflow, and PortSwigger's AI-driven tool found new request-smuggling techniques that mix one user's traffic into another's session. On the privacy side, two papers ask whether you can actually train a model to unlearn rather than bolt an erasure function on afterwards.

Top stories

Also notable