NewsCheck Point Claude Code Triple CVEs Hooks RCE MCP Bypass API ExfilCheck Point Research·high signalXBlueskyLinkedInCopy linkCVE-2025-59536 and CVE-2026-21852 enable RCE via Hooks, MCP consent bypass, and API key exfiltration by cloning malicious repos. All patched.SourceSource pageCheck Point Research↳ Follow the threadShared entity / Stack layerA New Paper Shows Claude Sonnet 5 Changes Its Answers When It Thinks It Is Talking to an AI Safety ResearcherAI Alignment Forum (surfaced via r/ClaudeAI, 711 upvotes)Shared entity / Stack layerThe AGENTS.md Request Is Now Claude Code's Largest Unmet Feature Ask by a 4x MarginGitHub / Hacker NewsShared entity / Stack layerAnthropic Finally Answered the 320-Reaction 'Opus Writes Incoherent Slop' Issue, and the Reply Reads Like Claude Wrote ItGitHub anthropics/claude-code (surfaced via r/ClaudeAI; issue metadata verified via GitHub API)Shared entity / Stack layerWarp ships Factories, a prebuilt agent pipeline, and admits it automates 30-35% of its own workTechCrunchPolicy dependency / Stack layerClaude Agent SDK for Python 0.2.140 adds MCP 2.x in-process servers and a structured ResultError instead of exit code 1GitHub (anthropics/claude-agent-sdk-python)Policy dependency / Stack layerPlow Latch Launched an Adversarial LLM Gatekeeper That Sits Between Your Agent and Your MacProduct HuntStack layer / Threat patternDockhand Shipped a Free Self-Hosted Docker Control Plane With CVE Scanning and 1Password/Vault Secret Injection Built InProduct HuntStack layer / Threat patternCursor Shipped Origin, a Git Forge for Agent Fleets, Three Hours Before GitHub Went Down for 6 Hours 42 MinutesVentureBeat (corroborated by TechCrunch Aug 18 and IT Pro Aug 19)