-
OpenAI의 악의적 해커 에이전트 이야기를 의심하라 | John Thickstun
Be skeptical of OpenAI’s rogue hacker agent story | John Thickstun
<p>Article URL: <a href="https://www.theguardian.com/technology/2026/jul/24/openai-rogue-hacker">https://www.theguardian.com/technology/2026/jul/24/openai-rogue-hacker</a></p> <p>C…
-
Claude Code 팀의 Cat과 Thariq과의 옆자리 대담
A Fireside Chat with Cat and Thariq from the Claude Code team
<p>Earlier this month I hosted a fireside chat session at the <a href="https://www.ai.engineer/worldsfair/2026">AI Engineer World's Fair</a> with Cat Wu and Thariq Shihipar from An…
-
OpenAI와 Hugging Face, 모델 평가 중 보안 사건에 대응하기 위해 협력
OpenAI and Hugging Face partner to address security incident during model evaluation
OpenAI and Hugging Face share early findings from a security incident during AI model evaluation, highlighting advanced cyber capabilities and lessons for defenders.
-
텔레그램 데이터센터의 미스터리 (2022)
Mysteries of Telegram Data Centers (2022)
<p>Article URL: <a href="https://dev.moe/en/3025">https://dev.moe/en/3025</a></p> <p>Comments URL: <a href="https://news.ycombinator.com/item?id=48920475">https://news.ycombinator.…
-
Cursor 제로데이: 완전 공개만이 남은 보호 수단이 된 이유
Cursor 제로데이: 완전 공개만이 남은 보호 수단이 된 이유 | GeekNews
<ul> <li>Windows용 Cursor는 프로젝트를 열 때 작업공간 루트의 <code>git.exe</code>를 자동 실행해, 악성 바이너리가 포함된 저장소만 열어도 <strong>사용자 상호작용 없이 임의 코드가 실행</strong>될 수 있음</li> <li>Git 경로 탐색 범위에 저장소 내부가 포함되며 경고…
-
Claude를 속여 당신의 가장 깊은 비밀을 유출하게 했다
I tricked Claude into leaking your deepest, darkest secrets
<p>Article URL: <a href="https://www.ayush.digital/blog/the-memory-heist">https://www.ayush.digital/blog/the-memory-heist</a></p> <p>Comments URL: <a href="https://news.ycombinator…
-
Codex가 서브에이전트 프롬프트 암호화를 시작함
Codex가 서브에이전트 프롬프트 암호화를 시작함 | GeekNews
<ul> <li>Codex CLI의 MultiAgentV2가 <code>spawn_agent</code>, <code>send_message</code>, <code>followup_task</code> 메시지를 암호화하면서, 부모 롤아웃·이력·추적에서 위임 내용을 사람이 읽을 수 없게 되는 <strong>감사 추적 회귀…
-
Cursor 0day: 완전 공개만이 유일한 보호책이 되다 - Mindgard
Cursor 0day: When Full Disclosure Becomes the Only Protection Left - Mindgard
<p>Article URL: <a href="https://mindgard.ai/blog/cursor-0day-when-full-disclosure-becomes-the-only-protection-left">https://mindgard.ai/blog/cursor-0day-when-full-disclosure-becom…
-
-
에이전틱 오정렬: LLM이 내부자 위협이 될 수 있는 방식
Agentic misalignment: How LLMs could be insider threats
-
클로드 코드는 요청에 스테가노그래피 표시를 하고 있음
클로드 코드는 요청에 스테가노그래피 표시를 하고 있음 | GeekNews
<ul> <li>Claude Code 2.1.196 바이너리에는 시스템 프롬프트의 현재 날짜 문장을 바꿔 <strong>요청 안에 분류 신호</strong>를 숨기는 함수가 들어 있음</li> <li>트리거는 <code>ANTHROPIC_BASE_URL</code>이며, 공식 <code>api.anthropic.com</…
-
Claude Code의 요청 스테가노그래피 마킹
Claude Code is steganographically marking requests
<p>Article URL: <a href="https://thereallo.dev/blog/claude-code-prompt-steganography">https://thereallo.dev/blog/claude-code-prompt-steganography</a></p> <p>Comments URL: <a href="…
-
오픈소스 보안을 함께 지키기 위한 Akrites 공개서한
오픈소스 보안을 함께 지키기 위한 Akrites 공개서한 | GeekNews
<ul> <li><strong>AI 기반 취약점 발견</strong>이 유지관리자의 대응 속도를 앞지르면서, Akrites는 핵심 오픈소스 소프트웨어를 공동으로 보강하기 위한 산업계 협력으로 출범함</li> <li>심각한 취약점 발견은 과거 전문가에게 몇 주 걸리던 작업이었지만, 이제는 <strong>AI 모델</stro…
-
Claude의 CVE-2026-2796 익스플로잇 역공학
Reverse engineering Claude's CVE-2026-2796 exploit
-
AI를 위한 핵 안전장치 개발
Developing Nuclear Safeguards for AI
-
Reddit을 이용해 AI 검색을 조작하는 일은 너무 쉽다
Reddit을 이용해 AI 검색을 조작하는 일은 너무 쉽다 | GeekNews
<ul> <li>단 <strong>13단어</strong> 분량의 짧은 텍스트만으로도 ChatGPT와 Google AI 검색을 구동하는 AI 에이전트의 출력을 일관되게 스팸·스캠 콘텐츠로 바꿀 수 있음</li> <li>Reddit, Wikipedia, Quora, Facebook 같은 <strong>사용자 생성 콘텐츠(U…
-
엔터프라이즈 관리 인증: MCP의 제로터치 OAuth
Enterprise-Managed Authorization: Zero-touch OAuth for MCP
<p>Article URL: <a href="https://blog.modelcontextprotocol.io/posts/enterprise-managed-auth/">https://blog.modelcontextprotocol.io/posts/enterprise-managed-auth/</a></p> <p>Comment…
-
AI 에이전트가 스마트 계약 취약점 발견
AI agents find smart contract exploits
-
사이버 방어자를 위한 AI 구축
Building AI for cyber defenders
-
연구자들 "Fable 5 논란은 탈옥이 아니라 'fix this code'에서 시작됐다"
연구자들 “Fable 5 논란은 탈옥이 아니라 ‘fix this code’에서 시작됐다” | GeekNews
<ul> <li>미국 정부의 Anthropic <strong>Fable 5·Mythos 5 접근 제한</strong>은 알려진 탈옥이 아니라, 취약 코드에 “fix this code”를 입력한 단순 요청에서 비롯됐다고 Katie Moussouris가 주장함</li> <li>Luta Security CEO인 Moussour…
-
MicroPython과 WASM으로 샌드박스에서 Python 코드 실행하기
Running Python code in a sandbox with MicroPython and WASM
<p>I've been experimenting with different approaches to running code in a sandbox for several years now, but my latest attempt feels like it might finally have all of the character…