NewsSOUL.md Memory Poisoning Campaign First Agent Identity File AttacksChristian Schneider Blog·high signalXBlueskyLinkedInCopy link30+ malicious ClawHub skills target SOUL.md MEMORY.md identity files, Ship of Theseus incremental rewrite attackSourceSource pageChristian Schneider Blog↳ Follow the threadPolicy dependency / Stack layerPlow Latch Launched an Adversarial LLM Gatekeeper That Sits Between Your Agent and Your MacProduct HuntStack layer / Threat patternCatastrophic Learning: Poisoned Data Can Block a Continual-Learning Model From Acquiring Knowledge It Has Not Seen YetarXiv 2608.18976Stack layer / Threat patternCOPA Treats Prompt-Injection Defense as Lifelong Learning, Cutting Attack Success Up to 6.3xarXiv 2608.19982Stack layer / Threat patternSeed Is a Single-File Agent That Ships With Nothing and Grows Its Own Tools Into a self/ DirectoryGitHub / Hacker NewsStack layer / Threat patternA Malicious Published Claude Artifact Is Ranking on Google for Claude Code Install Queries and Dropping a macOS Infostealerr/ClaudeAIStack layer / Threat patternSecrets Sitting in an Agent's Context Leak Through Ordinary Replies, and Stronger Models Leak MorearXiv 2608.19857Stack layer / Threat patternA Fake LinkedIn Recruiter Shipped a 180-File TypeScript Take-Home With a RAT Inside, and Claude Code Scanned It Cleancodedge.de / Hacker NewsStack layer / Threat patternFACET Grounds Instruction, Solution and Verifier in One Container State to Stop Synthesizing Unsolvable Terminal TasksarXiv 2608.18580