Claude Mythos is actually scary

Claude Mythos is actually scary

Cracks in the Bedrock: Escaping the AWS AgentCore Sandbox
https://unit42.paloaltonetworks.com/bypass-of-aws-sandbox-network-isolation-mode/
Read on HackerWorkspace: https://hackerworkspace.com/article/cracks-in-the-bedrock-escaping-the-aws-agentcore-sandbox
Anthropic pointed Claude Code at Linux kernel source files one at a time, framed as a security puzzle. It found a heap overflow in NFS code hiding since March 2003. Four more kernel bugs followed. 500+ validated vulnerabilities in weeks. Linux Foundation set aside $12.5M to help maintainers cope. Nobody found a volunteer to maintain a Google Drive library for 3.5 years. The bottleneck was never the bugs.
๐จ NEWS ๐จ
The Apache Software Foundation Launches $10M Responsible AI Initiative with Initial $1.75M Donation; Anthropic and Alpha-Omega seed fund the effort https://news.apache.org/foundation/entry/the-apache-software-foundation-launches-10m-responsible-ai-initiative-with-initial-1-75m-donation
#AIworkloads #artificialintelligence #opensource #AIsecurity
Hacking AI Agents
https://pwn.guide/free/web/hacking-ai
Read on HackerWorkspace: https://hackerworkspace.com/article/hacking-ai-agents
Another talk announcement for BSides Luxembourg!
๐ค๐ ๐๐ ๐๐ก๐ ๐๐ฅ๐ฌ๐ฃ๐ง๐ข๐๐ฅ๐๐ฃ๐๐ฌ ๐๐ข๐ฅ ๐๐ฉ๐๐ฆ๐๐ฉ๐ ๐ ๐๐๐ช๐๐ฅ๐ โ zhassulan zhussupov aka @cocomelonckz ๐งฌ๐ฅ
Modern malware doesnโt just hideโit adapts.
This talk explores how AI and advanced cryptography are reshaping offensive tradecraft, enabling malware to rewrite itself, adapt to environments, and evade behavioral detection. From polymorphic code to stealthy encryption techniques, this is the next evolution of โthinkingโ malware.
zhassulan zhussupov aka @cocomelonckz is a cybersecurity researcher, author, and speaker known for deep expertise in malware development, reverse engineering, and offensive security, with multiple published works and global conference talks.
๐
Conference Dates: 6โ8 May 2026 | 09:00โ18:00
๐ 14, Porte de France, Esch-sur-Alzette, Luxembourg
๐๏ธ Tickets: https://2026.bsides.lu/tickets/
๐ Schedule Link: https://pretalx.com/bsidesluxembourg-2026/schedule/
#BSidesLuxembourg2026 #AISecurity #Malware #Cryptography #RedTeam #CyberSecurity
cedric (@cedric_chee)
Project Glasswing์ด ํ๋ฐํฐ์ด AI์ ์ฌ์ด๋ฒ ์ญ๋์ ๋จ์ํ ๋ง์ผํ ์ด ์๋ ์ค์ง์ ๊ธฐ์ ๊ณผ ์ฑ ์ ์๋ ๋ฒ์ ์ค์ ์ด ์๋ ๋์ผ์ ์ฆ ์ธํ๋ผ๋ก ๋ค๋ฃจ๋ ์๋ก์ด ๋จ๊ณ์ ์ ํธ๋ผ๋ ํ๊ฐ๋ฅผ ๋ด๊ณ ์๋ค. AI ์ฌ์ด๋ฒ ๋ฐฉ์ด์ ๊ด๋ จํ ์ค์ํ ๊ธฐ์ ์ ํ๋ฆ์ ์์ฌํ๋ค.

Project Glasswing is not just marketing puffery -- the technical details and responsible scoping are substantive. It signals a new phase where frontier AI cyber capability is treated as dual-use infra requiring coordinated defense. Skepticism is healthy (especially on motives and
Engadget (@engadget)
Anthropic์ด AI๋ฅผ ํ์ฉํด AI ๊ธฐ๋ฐ เคธเคพเคเคฌเคฐ ๊ณต๊ฒฉ์ ๋ง๊ธฐ ์ํ โProject Glasswingโ์ ๊ณต๊ฐํ๋ค. AI ๋ณด์ ๋ฐฉ์ด๋ฅผ ๊ฐํํ๋ ค๋ ์๋ก์ด ์ฐ๊ตฌยทํ๋ก์ ํธ๋ก, ๊ณต๊ฒฉ ํ์ง์ ๋์ ์๋ํ ์ธก๋ฉด์์ ์๋ฏธ ์๋ ๋ฐํ๋ค.
Unit 42 Research Exposes Risks in Amazon Bedrock's Multi-Agent AI Systems
Unit 42's latest research reveals a hidden threat: multi-agent AI systems on Amazon Bedrock can be vulnerable to new and alarming risks, including prompt injection attacks that practitioners can't afford to ignore. Learn how to safeguard your AI applications from these emerging threats.
https://osintsights.com/unit-42-research-exposes-risks-in-amazon-bedrocks-multi-agent-ai-systems
#AmazonBedrock #MultiagentAiSystems #Unit42 #AiSecurity #PromptInjection