AgentsCVE-2025-59536 Claude Code Project Config RCE Hooks MCP ExfiltrationCheck Point Research·high signalXBlueskyLinkedInCopy linkCheck Point found Claude Code hooks RCE, MCP auto-approve bypass, API key exfiltration via untrusted repo configSourceSource pageCheck Point Research↳ Follow the threadShared entity / Stack layerai-memory v1.27.0 Publishes a Cross-Vendor Handoff Matrix Documenting Exactly Where Every Agent CLI's Lifecycle Hooks Fall ShortGitHubShared entity / Stack layerYadda 3.0.0: Claude Code Rewrote a 12-Year-Old BDD Library in a Day, and the Author Argues Executable Specs Are the Best Agent Contextstephen-cresswell.com / Hacker NewsShared entity / Stack layerHarnessRouter Open-Sourced Its Community Edition and a 'Unified Harness Protocol' — OpenRouter's Trick, Applied to Agents Instead of ModelsHarnessRouter (corroborated by the Product Hunt Aug 16 daily leaderboard and the Y Combinator launch page)Shared entity / Stack layerwmux Now Refuses Browser-Automation Calls That Don't Name Their Workspace, Closing a Cross-Workspace Page HijackGitHubShared entity / Stack layerClaude Code Desktop Shipped an Auto-Continue Checkbox, and r/ClaudeAI Called It the Real Flagship Feature — Not Fabler/ClaudeAI (Anthropic @ClaudeDevs)Shared entity / Stack layerHugging Face: Agents Became the Hub's Primary Users in July, With Claude Code at 44.4% of All Agent TrafficHugging FaceShared entity / Stack layerMemPalace v3.7.0 Adds an Append-Only 'Agent Logstream' So Agents on Different Machines Can Delegate Without a Human RelayGitHubPolicy dependency / Stack layerPattern: Permission Automation Flipped From Opt-In to Default Across Three Vendors in Two WeeksClaude Code Docs / GitHub Changelog / OpenAI Codex Changelog