NewsCline CLI Clinejection Supply Chain Attack — 4000 Developers CompromisedThe Hacker News·high signalXBlueskyLinkedInCopy linkAttacker compromised npm publish token to push Cline CLI v2.3.0 with malicious postinstall script installing OpenClaw. First AI coding tool supply chain attack. 8 hours live, 4000 downloads.SourceSource pageThe Hacker News↳ Follow the threadFollow-up threadPattern: Every Serious MCP Defense Now Reduces to One Rule — Server Output Is Data, Never InstructionsThe Hacker NewsStack layer / Threat patternPattern: The Terminal Emulator Became a Contested Layer in the AI Coding StackGitHubStack layer / Threat patternNVIDIA's Agent-Skill Security Scanner Shipped Two Patches in Ten Hours, Both About LLM Calls Failing Mid-ScanGitHubStack layer / Threat patternZoom patches 'Zoomsday' zero-click RCE chain that researchers weaponized in under 24 hours with fewer than 20 AI promptsSecurity AffairsPolicy dependency / Stack layerSpotify Opened Xirp to Public Beta — an Incumbent Shipping the Meta-Harness Layer Above Claude Code, Codex and Gemini CLISpotify Portal Engineering Blog (corroborated by Product Hunt Aug 11 and Spotify Engineering on X)Stack layer / Threat pattern40+ MCP CVEs and a ZDI scan of 19,000 servers reframe agent security as a permanent line item, not an incidentForkastPolicy dependency / Stack layerRangeBench: 1,148 Multi-Hop Cyber Ranges Show Attack Agents Get a Foothold Then Stall — 24.5–47.0% Never Finish the ChainarXiv 2608.09526Stack layer / Threat patternSystematic Review of 85 Agentic-LLM Security Papers: Attack Work Outpaces Defense 3.9:1 and Action-Layer Risk Gets Only 4.7% of AttentionarXiv 2608.10530