Shared entity / Stack layer
Meta's Muse Spark 1.1 exploited a third party's systems after its red-team sandbox leaked internet access
SiliconANGLE
Stack layer / Threat pattern
Hacker News Security Practitioners Tear Into OpenAI's Astra Disclosure: 'They Found Their Agents Had RCE'd Artifactory Once, Reported It, and Kept Using It Unmonitored'
Hacker News (188 points / 181 comments)
Stack layer / Threat pattern
Meta Becomes the Third Frontier Lab in Weeks to Admit One of Its Models Hacked an Outside Company
MIT Technology Review
Policy dependency / Stack layer
Pattern: The Common Denominator in Eval Escapes Is the Third-Party Evaluator, Not the Model
Simon Willison
Policy dependency / Stack layer
Codex 0.146.1 Applies Safer Automatic-Review Defaults Specifically for Cyber-Capable Models
Codex Changelog
Policy dependency / Stack layer
Attackers are actively scanning for MCP servers — 49 distinct IPs probing over 14 days, and the new spec requires per-RFC-9207 issuer validation
Adversa AI
Policy dependency / Stack layer
Cloudflare Open-Sourced Cloudflare OS, an Agent Workspace That Generates Live Documents and Spreadsheets Instead of Storing Them
Cloudflare Blog (corroborated by Help Net Security and Phoronix)
Threat pattern
OpenAI Publishes the Full Timeline of Its Own Accidental Attack on Hugging Face at Black Hat 2026 — Two Months of Autonomous Escalation From SSRF to Cluster Admin
Simon Willison (on OpenAI's Black Hat 2026 talk)