Policy dependency / Stack layer
CROSS-CATEGORY: Three Independent Agent-Action Gates Shipped in 48 Hours, All Judging the Command Against Stated Intent
Product Hunt, github.com/AGGIB/Stroq and rewarelabs.com (three independent sources; the 72% figure is Reware's own)
Stack layer / Threat pattern
Vibe Coding Cut Task Time 27% and Raised Security Vulnerabilities in the Same Trial
arXiv 2609.09560
Policy dependency / Stack layer
Paul Christiano Joins the OpenAI Foundation Board and Its Safety and Security Committee
OpenAI Blog
Policy dependency / Stack layer
Retrieval that crosses into your dependencies' source, not just your repo, adds up to 6.3% pass@1 and survives version changes
arXiv 2609.09987
Stack layer / Threat pattern
qwen-code 0.23.2 turns the CLI into a remotely accessible shell with one command and a QR pairing code
GitHub
Stack layer / Contrast
humans& Released Persimmon, a 550B User Simulator That Fools LLM Judges About 20% of the Time in Group Chats
humans&
Stack layer / Threat pattern
Comments help LLM code generation only when they leak correct solution content, and comments from a different problem cut pass@1 by 20.8%
arXiv 2609.09242
Stack layer / Threat pattern
Google's Agent Development Kit for Python Carries a CVSS 10.0 Unauthenticated RCE via Test Session Replay
OffSeq Threat Radar