Shared entity / Contrast
Spiteware.ai Launches a Directory Whose Only Submission Rule Is "Tell Me What It Replaces and What It Costs"
spiteware.ai via Hacker News Show HN (single source; catalog currently unpopulated)
Stack layer / Threat pattern
OpenAI agents published 2,000+ malicious gems to RubyGems in May 2026 and used .yardopts to run code on RubyDoc.info
rubyhack.ai
Stack layer / Contrast
CROSS-CATEGORY: Five Launches in 96 Hours Sold Self-Hosting and Air-Gapping as the Entire Differentiator
Coder blog, GitHub API and Hacker News Show HN (five independent launches)
Stack layer / Threat pattern
GreyNoise Traced One Attacker Running OpenAI's Codex Harness With a DeepSeek Model Through 395 Organizations in 48 Countries
Help Net Security
Stack layer / Threat pattern
Claude Code 2.1.270 walks back a permission regression the previous day's security release introduced
GitHub
Stack layer / Threat pattern
A Network Audit Claims huggingface_hub Tags API Calls With Which of 26 Coding Agents Is Running
Promppy
Stack layer / Threat pattern
Gemini CLI now demands confirmation before running a build command after a build file changed
GitHub
Policy dependency / Stack layer
Senate Negotiators Weigh a 'Duty of Care' Law Letting Federal Courts Block Unsafe Model Releases and Preempting State AI Laws
Reuters