Fetching from the wire…
Security2026-07-24 · source-backed
A researcher found the token in a Wisenet XNP-9300RW login page, then pulled roughly 500 Hanwha firmware images: 62% were extractable, three contained the same token. Hanwha revoked within 12 hours through its open security-reporting address, which is genuinely good for the category. Credential hygiene in build artifacts is where agent-era attacks start, because agents read artifacts humans never open.
Each link below shares sources, entities, or timing with this story.
10,936 tokens against 1,552,491 for raw HTML across 15 real pages, and the author claims it was the only reader returning real content on every page tested. The concrete cost comparison: $0.27 against $0.52 for five Wikipedia questions, 23% cheaper than WebFetch and 35% cheape...
The payload only exists if you're a robot. That's the part that should scare you. On August 5 a developer doing PSX game research pointed Claude Code at tcrf.net (The Cutting Room Floor, a well-known game-preservation wiki) and got back a page titled "LLM- / AI Agent-Specific...
html-anything is an agentic HTML editor where a local agent writes markup across 75 skills and 9 surfaces (magazine, deck, poster, tweet, prototype, data report) inside a sandbox. GitHub Both are single-maintainer projects competing on feel rather than model access, which is t...
MIT-licensed alpha. Each "coworker" gets a real browser with its own logins, its own files and only granted tools, with every action decided before it happens and recorded after. Runs on Docker Compose against your own PostgreSQL, no model ships in the box, admin credentials e...
A single PR title. A hidden HTML comment in an issue body. No jailbreak, no social engineering, no user interaction required. Your credentials get exfiltrated through GitHub's own infrastructure before you ever see the notification. Security researcher Aonan Guan (Wyze Labs) a...
Orca Security discovered "RoguePilot" — a passive prompt injection attack where malicious instructions hidden in GitHub Issues via HTML comment tags are automatically fed to GitHub Copilot when a developer opens a Codespace. The injected prompt exfiltrates the GITHUB_TOKEN, en...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.