Vibe CodingVibe Coding Security Quantified 69 Vulnerabilities 10.5% Secure CodeTenzai Research·high signalXBlueskyLinkedInCopy linkTenzai tested 5 AI coding tools: 69 vulns found, every tool introduced SSRF, 0 CSRF protection. CMU: 10.5% secure. 2000+ vulns in deployed vibe-coded apps.SourceSource pageTenzai Research↳ Follow the threadPolicy dependency / Stack layerLinux 7.2-rc7 Lands With 400+ Fixes From 230+ Contributors and Torvalds Says AI Code Review Is 'the New Normal'The Register (corroborated by Neowin; surfaced via r/singularity, 167up/44c)Policy dependency / Stack layerSpotify Opened Xirp to Public Beta — an Incumbent Shipping the Meta-Harness Layer Above Claude Code, Codex and Gemini CLISpotify Portal Engineering Blog (corroborated by Product Hunt Aug 11 and Spotify Engineering on X)Stack layer / Threat patternChrome Ships Device-Bound Session Credentials, Cryptographically Tying Sessions to the Machine That Made ThemArs TechnicaStack layer / Threat patternNVIDIA Rewrote Its LLM Routing Proxy in Rust — Switchyard v0.2.0 Lands 193 Commits and Splits Into Five CratesGitHubStack layer / Threat patternNVIDIA ships Nemotron 3.5 Lightning, a 30B MoE built for agent loops, plus NeMo Switchyard routing that cuts task cost to a third of Opus 4.8NVIDIA BlogPolicy dependency / Stack layerSplit your agent's safety into four evolvable artifacts — system prompt, rule bank, safety memory, tool policy — for a 3.1x attack-success reductionarXiv 2608.09885Policy dependency / Stack layerPOLIS 5,280-Episode Study: Provenance-Aware Guards Block Authority Laundering That Local-State Guards Miss in 22 of 96 EpisodesarXiv 2608.09828Policy dependency / Stack layerllama.cpp Gets a Consumer Front Door at llama.app, With a Plugin Hook Into the Pi Coding Agentggml-org / Hacker News