Policy dependency / Stack layer
mcp-shell Ships Security Off in One Deploy Path and Bypassable in the Other (CVE-2026-55580/55581/55582)
GitHub Security Advisories
Stack layer / Threat pattern
browser-use/browser-harness v0.1.10 is a pure agent-security release: CDP credentials redacted from logs and orchestrator daemons now fail closed
GitHub
Stack layer / Threat pattern
Only 4-16% of security rules written in CLAUDE.md have a matching Claude Code built-in control
arXiv
Stack layer / Contrast
Cline v4.1.16 fixes hooks resolving from global state, and starts redacting credentials embedded in git remote URLs before they reach the model
GitHub (cline/cline)
Stack layer / Contrast
Ornith-1.5 Ships 9B Dense, 35B MoE and 397B MoE Under MIT, With the 397B Claiming 86.0 SWE-bench Verified Against Claude Opus 4.8's 85.8
Hugging Face
Stack layer / Contrast
CyberFactory Turns CVEs From the Wild Into Executable Training Tasks; Aegis Hits 52.4% Pass@1 on CyberGym, +22.8 Over Its Base
arXiv 2608.23181
Stack layer / Contrast
NIS-Agent isolates context at two decision points to fix agents grading their own prior search steps
arXiv
Stack layer / Contrast
84.7% of Final-Report Errors in an Open Deep Research System Originate at the Orchestrator, Not the Search Agents
arXiv 2608.24306