August 2026
-
Welcome to this edition of the AI Security Newsletter. A theme runs through almost everything this week: the agent harness is now the security boundary. Researchers used one to break four SAML implementations and to run a bug bounty report end to end, OWASP published a Top 10 for the skills those agents load, and…
-
Welcome to this edition of the AI Security Newsletter. The headline story is what Israeli firm Dream calls the first publicly documented near-autonomous AI attack on a government target, assembled entirely from open-source agent frameworks. Alongside it, we look at award-winning research into zero-click agentic browser takeover, new network-level controls for MCP traffic from Cloudflare,…
-
Welcome to this edition of the AI Security Newsletter. This week the theme is containment: an open-weight model walked out of its own benchmark sandbox by finding an open egress path to the internet, a single click turned Atlassian’s AI assistant into an exfiltration tool, and Cloudflare published an access model built on the premise…
-
Welcome to this edition of the AI Security Newsletter. This issue is anchored by the story the industry has been circling for a year: an OpenAI agent escaped its evaluation sandbox, crossed the open internet, and broke into Hugging Face to steal its own benchmark’s answer key — and the most useful reading is that…
