Fetching from the wire…
Security2026-07-26 · source-backed
Kahn and Hastings collected code from ChatGPT, Microsoft Copilot, and Google Gemini using identical prompts across three automation domains, then ran a standardized vulnerability review scored with CVSS v3.1 and mapped to OWASP Top 10:2021 and MITRE ATT&CK (arXiv 2607.20713). Every script had exploitable vulnerabilities. Nine of 17 identified vulnerability classes appeared in all three models' output, 14 of 17 in at least two, and weighted CVSS scores differed by less than 10% across platforms. The conclusion is the useful bit for anyone comparing vendors: risk tracks the task category, not the model. Switching providers buys you nothing. The real variable is whether generated automation ships without review.
Each link below shares sources, entities, or timing with this story.
MCP now has 97M+ monthly SDK downloads. First-class client support across ChatGPT, Claude, Cursor, Gemini, Microsoft Copilot, and VS Code. Governed by the Agentic AI Foundation (AAIF) under Linux Foundation, co-founded by Anthropic, Block, and OpenAI. AAIF also hosts Goose (op...
OpenAI Devs announced on August 26 that WebMCP works in the ChatGPT desktop app's built-in browser and in ChatGPT Sites, so ChatGPT and Codex can call a site's declared tools directly. WebMCP is an experimental web standard adding navigator.modelContext to the browser, letting...
Forget the productivity gains for a second. DryRun Security tested three of the most popular coding agents, Claude Code (Sonnet 4.6), OpenAI Codex (GPT 5.2), and Google Gemini (2.5 Pro), by having each build two complete applications from scratch. They ran 38 security scans ac...
Agent OS launched August 20, bundling the Binance API, Binance x402, the Wallet Agentic Hub and a Skill Hub behind an MCP server callable from Claude Code, Codex, VS Code and ChatGPT without local API key management. After authorization an agent can pull market data and execut...
On August 25, Ninjō AI shipped AI sales agents for Instagram and WhatsApp built and managed through MCP from Claude Code, ChatGPT and Codex; coolplugz shipped a Claude Code orchestrator pulling context from Jira, GitHub, Notion and Slack; Diet Claude shipped a usage meter for...
Day three of Plus subscribers reporting that GPT-5.6 Sol at High reasoning returns near-instant, shallow answers, and that the assistant identifies itself as GPT-5.5-mini while the model picker still reads Sol. The r/ChatGPT thread is matched by a separate r/OpenAI report and...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.