Fetching from the wire…
Security2026-06-07 · source-backed
These aren't theoretical. Security researchers disclosed 10 IPI payloads seen in the wild, built for financial fraud, data destruction, and API-key theft by poisoning web content agents crawl, summarize, or index for RAG. Related 2026 work finds attack success rates above 85% against state-of-the-art defenses when adaptive strategies are used, and Google reported a 32% rise in injection payloads embedded in web content. Source: Infosecurity Magazine "Goal hijacking," redirecting an autonomous agent's entire objective, is flagged as the most dangerous variant. If your agent ingests untrusted retrieved content, treat every fetched page as hostile input.
Each link below shares sources, entities, or timing with this story.
This one annoyed me, in the good way. Researchers took 206 real developer-agent sessions from 13 developers, extracted each developer's preferences from their actual interaction traces via rule-based bootstrapping plus evidence-grounded refinement, then replayed everything aga...
A single PR title. A hidden HTML comment in an issue body. No jailbreak, no social engineering, no user interaction required. Your credentials get exfiltrated through GitHub's own infrastructure before you ever see the notification. Security researcher Aonan Guan (Wyze Labs) a...
On June 16–17, Google extended its A2A interoperability push with a standard for how agents discover available resources and tools, the same week Microsoft's Work IQ went GA with A2A plus remote MCP. It's a multi-vendor race to standardize the plumbing. Design against the inte...
A $150M investment to help systems integrators and consultancies accelerate enterprise AI deployment (OpenAI). It builds the channel and go-to-market layer OpenAI needs to compete against Microsoft, Google, and Anthropic for enterprise agents, where deployment support, not mod...
Per SSOJet, that cross-company contributor base is the unusual part. OSS coding agents usually orbit one vendor. This one's becoming shared infrastructure, which makes it the self-hostable default to watch against proprietary agents. If you want a coding agent you can run and...
OpenAI Devs announced on August 26 that WebMCP works in the ChatGPT desktop app's built-in browser and in ChatGPT Sites, so ChatGPT and Codex can call a site's declared tools directly. WebMCP is an experimental web standard adding navigator.modelContext to the browser, letting...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.