Claude Mythos is actually scary

YouTube
Cracks in the Bedrock: Escaping the AWS AgentCore Sandbox

Unit 42 uncovers critical vulnerabilities in Amazon Bedrock AgentCore's sandbox, demonstrating DNS tunneling and credential exposure.

Unit 42

Anthropic pointed Claude Code at Linux kernel source files one at a time, framed as a security puzzle. It found a heap overflow in NFS code hiding since March 2003. Four more kernel bugs followed. 500+ validated vulnerabilities in weeks. Linux Foundation set aside $12.5M to help maintainers cope. Nobody found a volunteer to maintain a Google Drive library for 3.5 years. The bottleneck was never the bugs.

#LinuxKernel #OpenSource #SecurityResearch #AISecurity

๐Ÿšจ NEWS ๐Ÿšจ

The Apache Software Foundation Launches $10M Responsible AI Initiative with Initial $1.75M Donation; Anthropic and Alpha-Omega seed fund the effort https://news.apache.org/foundation/entry/the-apache-software-foundation-launches-10m-responsible-ai-initiative-with-initial-1-75m-donation

#AIworkloads #artificialintelligence #opensource #AIsecurity

Hacking AI Agents

Learn how to exploit AI agents using prompt injection, tool hijacking, and memory poisoning based on the OWASP Agentic Top 10.

Another talk announcement for BSides Luxembourg!

๐Ÿค–๐Ÿ” ๐—”๐—œ ๐—”๐—ก๐—— ๐—–๐—ฅ๐—ฌ๐—ฃ๐—ง๐—ข๐—š๐—ฅ๐—”๐—ฃ๐—›๐—ฌ ๐—™๐—ข๐—ฅ ๐—˜๐—ฉ๐—”๐—ฆ๐—œ๐—ฉ๐—˜ ๐— ๐—”๐—Ÿ๐—ช๐—”๐—ฅ๐—˜ โ€“ zhassulan zhussupov aka @cocomelonckz ๐Ÿงฌ๐Ÿ”ฅ

Modern malware doesnโ€™t just hideโ€”it adapts.

This talk explores how AI and advanced cryptography are reshaping offensive tradecraft, enabling malware to rewrite itself, adapt to environments, and evade behavioral detection. From polymorphic code to stealthy encryption techniques, this is the next evolution of โ€œthinkingโ€ malware.

zhassulan zhussupov aka @cocomelonckz is a cybersecurity researcher, author, and speaker known for deep expertise in malware development, reverse engineering, and offensive security, with multiple published works and global conference talks.

๐Ÿ“… Conference Dates: 6โ€“8 May 2026 | 09:00โ€“18:00
๐Ÿ“ 14, Porte de France, Esch-sur-Alzette, Luxembourg
๐ŸŽŸ๏ธ Tickets: https://2026.bsides.lu/tickets/

๐Ÿ“… Schedule Link: https://pretalx.com/bsidesluxembourg-2026/schedule/

#BSidesLuxembourg2026 #AISecurity #Malware #Cryptography #RedTeam #CyberSecurity

cedric (@cedric_chee)

Project Glasswing์ด ํ”„๋Ÿฐํ‹ฐ์–ด AI์˜ ์‚ฌ์ด๋ฒ„ ์—ญ๋Ÿ‰์„ ๋‹จ์ˆœํ•œ ๋งˆ์ผ€ํŒ…์ด ์•„๋‹Œ ์‹ค์งˆ์  ๊ธฐ์ˆ ๊ณผ ์ฑ…์ž„ ์žˆ๋Š” ๋ฒ”์œ„ ์„ค์ •์ด ์žˆ๋Š” ๋“€์–ผ์œ ์ฆˆ ์ธํ”„๋ผ๋กœ ๋‹ค๋ฃจ๋Š” ์ƒˆ๋กœ์šด ๋‹จ๊ณ„์˜ ์‹ ํ˜ธ๋ผ๋Š” ํ‰๊ฐ€๋ฅผ ๋‹ด๊ณ  ์žˆ๋‹ค. AI ์‚ฌ์ด๋ฒ„ ๋ฐฉ์–ด์™€ ๊ด€๋ จํ•œ ์ค‘์š”ํ•œ ๊ธฐ์ˆ ์  ํ๋ฆ„์„ ์‹œ์‚ฌํ•œ๋‹ค.

https://x.com/cedric_chee/status/2041746011459297624

#aisecurity #cybersecurity #dualuse #frontierai

cedric (@cedric_chee) on X

Project Glasswing is not just marketing puffery -- the technical details and responsible scoping are substantive. It signals a new phase where frontier AI cyber capability is treated as dual-use infra requiring coordinated defense. Skepticism is healthy (especially on motives and

X (formerly Twitter)

Engadget (@engadget)

Anthropic์ด AI๋ฅผ ํ™œ์šฉํ•ด AI ๊ธฐ๋ฐ˜ เคธเคพเค‡เคฌเคฐ ๊ณต๊ฒฉ์„ ๋ง‰๊ธฐ ์œ„ํ•œ โ€˜Project Glasswingโ€™์„ ๊ณต๊ฐœํ–ˆ๋‹ค. AI ๋ณด์•ˆ ๋ฐฉ์–ด๋ฅผ ๊ฐ•ํ™”ํ•˜๋ ค๋Š” ์ƒˆ๋กœ์šด ์—ฐ๊ตฌยทํ”„๋กœ์ ํŠธ๋กœ, ๊ณต๊ฒฉ ํƒ์ง€์™€ ๋Œ€์‘ ์ž๋™ํ™” ์ธก๋ฉด์—์„œ ์˜๋ฏธ ์žˆ๋Š” ๋ฐœํ‘œ๋‹ค.

https://x.com/engadget/status/2041635087825920152

#anthropic #cybersecurity #aisecurity #projectglasswing #ai

Engadget (@engadget) on X

Anthropic launches Project Glasswing, an effort to prevent AI cyberattacks with AI https://t.co/42RbPepaK3

X (formerly Twitter)

Unit 42 Research Exposes Risks in Amazon Bedrock's Multi-Agent AI Systems

Unit 42's latest research reveals a hidden threat: multi-agent AI systems on Amazon Bedrock can be vulnerable to new and alarming risks, including prompt injection attacks that practitioners can't afford to ignore. Learn how to safeguard your AI applications from these emerging threats.

https://osintsights.com/unit-42-research-exposes-risks-in-amazon-bedrocks-multi-agent-ai-systems

#AmazonBedrock #MultiagentAiSystems #Unit42 #AiSecurity #PromptInjection

Unit 42 Research Exposes Risks in Amazon Bedrock's Multi-Agent AI Systems

Unit 42 reveals risks in Amazon Bedrock's multi-agent AI systems, exposing new attack surfaces and prompt injection threats, learn how to secure your AI applications now.

OSINTSights
Anthropic has unveiled a preview of Mythos, a powerful new AI model, as part of a new cybersecurity initiative. The model will be used by a select group of high-profile companies for defensive cybersecurity work, marking Anthropic's entry into security-focused AI applications. https://techcrunch.com/2026/04/07/anthropic-mythos-ai-model-preview-security/ #AIagent #AI #GenAI #AISecurity
Anthropic debuts preview of powerful new AI model Mythos in new cybersecurity initiative | TechCrunch

The new model will be used by a small number of high-profile companies to engage in defensive cybersecurity work.

TechCrunch