Tag: Developer Tools
-
Bitwarden CLI Was a Supply Chain Bomb. Checkmarx Lit the Fuse.
The Checkmarx supply chain breach reached Bitwarden’s CLI in 93 minutes on April 22. Here’s how bw1.js stole CI/CD secrets and why security-tool supply chains fail in the…
-
LMDeploy CVE-2026-33626: SSRF Weaponized in 13 Hours
LMDeploy SSRF bug CVE-2026-33626 was exploited 13 hours post-disclosure. Full attack chain, AWS credential blast radius, and why AI inference servers are unusually dangerous SSRF targets.
-
Full Context Sets the Accuracy Ceiling for AI Agent Memory. It Costs 26,000 Tokens Per Query. Here Is the Tradeoff Map.
Full context memory sets the accuracy ceiling at a cost of 26,000 tokens per query. Vector-only memory scores 66.9% at 1.44s p95 latency. Graph memory reaches 68.4% at…
-
98.4% of Claude Code Is Operational Infrastructure. A New arXiv Paper Maps All of It.
A source-code analysis of Claude Code’s 512,000-line TypeScript codebase finds 98.4% is operational infrastructure, not AI. Here is the five-layer compaction pipeline, the 17% comprehension decline finding, the…
-
MCPShield Maps 23 Attack Vectors Across MCP’s 97-Million-Download Ecosystem. No Existing Defense Covers More Than 34%.
A formal arXiv paper published April 8 maps 23 MCP attack vectors across 7 threat categories and finds no single existing defense covers more than 34% of the…
-
Obsidian’s Plugin Model Delivered a Cross-Platform RAT. The Sovereignty Tradeoff Just Came Due.
Elastic Security Labs disclosed REF6598 on April 14, a targeted social engineering campaign that weaponizes Obsidian’s community plugin ecosystem to deliver a cross-platform RAT called PHANTOMPULSE. The attack…
-
ToolHijacker Prompt Injection Hijacks LLM Agent Tool Selection 96.7% of the Time. Every Published Defense Failed.
ToolHijacker, published at NDSS 2026, is the first prompt injection attack designed to hijack the tool selection layer of LLM agents. A single malicious tool document fools the…
-
GLM-5.1 Ran Autonomously for 8 Hours Across 6,000 Tool Calls. How It Beat Claude Opus 4.6 on SWE-Bench Pro and Lost on Verified.
Z.ai released GLM-5.1 open-source under MIT on April 7, 2026. The 744B-parameter MoE scored 58.4 on SWE-Bench Pro, beating Claude Opus 4.6 and GPT-5.4. It also ran 655…
-
Claude Code “String to Replace Not Found in File”: The Three Root Causes, the Diagnostic Protocol, and the Structural Fix
Claude Code’s Edit tool fails with “String to replace not found in file” for three distinct mechanical reasons, not one. Tab-to-space normalization, stale-buffer races with format-on-save, and CRLF…
-
One Developer Improved 15 LLMs at Coding by Changing the Edit Tool. Grok Went From 6.7% to 68.3%.
Security researcher Can Boluk changed the edit tool in his open-source coding agent and re-ran a benchmark across 16 models. Grok Code Fast 1 jumped from 6.7% to…
-
An AI Agent Rejected by Matplotlib Published a Hit Piece on the Maintainer. The SOUL.md File That Caused It Is 25 Lines Long.
An OpenClaw agent autonomously researched a matplotlib maintainer’s personal information, constructed a psychological profile, and published a 1,100-word hit piece after he rejected its pull request. The operator’s…
-
Perplexity Computer Is a Productized Router on Top of Research That Has Been in the Open for Two Years. Here Is What It Actually Does.
Perplexity launched Computer on February 25, 2026 as a 19-model orchestration harness priced at $200 per month. For ML engineers, the marketing number is not the interesting part.…
-
Every Grok 4.20 Explainer Named the Four Agents. xAI’s Documentation Names Zero of Them.
xAI shipped Grok 4.20 multi-agent in February 2026. Every explainer published since then describes four named agents called Grok, Harper, Benjamin, and Lucas debating in parliament. Those names…
-
North Korea’s Contagious Interview Operation Expanded to Five Package Ecosystems. One Staging Server Connects All 1,700 Packages.
Socket’s security research team disclosed on April 7 that North Korea’s Contagious Interview operation has expanded from npm into PyPI, Go Modules, crates.io, and Packagist simultaneously. A single…
-
512,000 Lines of Claude Code Leaked. The Feature Hidden Inside Changes Everything.
Anthropic accidentally shipped its entire Claude Code source to npm. Inside the 512,000 lines is KAIROS, an unreleased always-on agent that watches your codebase, consolidates its memory while…
-
512,000 Lines of Claude Code Leaked. The Feature Hidden Inside Changes Everything.
A missing .npmignore entry shipped Claude Code’s entire source to npm. I use the tool daily, so I read the code. Buried under compaction bugs and a Tamagotchi…
-
Zuckerberg Shipped Code for the First Time in 20 Years. He Used a Competitor’s AI.
Mark Zuckerberg shipped three diffs to Meta’s monorepo in March 2026, his first code in roughly twenty years. He used Claude Code CLI, a competitor’s product. Garry Tan…
-
OpenClaw Has 104 CVEs and 1,184 Malicious Packages. The Architecture Cannot Be Patched.
OpenClaw has accumulated 104 CVEs, 1,184 confirmed malicious packages in its skill marketplace, and 135,000 instances exposed to the public internet. The problems are not bugs that patches…
-
Axios Compromised on npm: How a Hijacked Maintainer Account Turned 100 Million Weekly Downloads Into a RAT Delivery Network
On March 31, 2026, an attacker compromised the npm account of the primary Axios maintainer and published two poisoned versions of the HTTP client used by 100 million…
-
MCP Hit 97 Million Installs in 16 Months. Here Is How the Protocol Actually Works Under the Hood.
The Model Context Protocol reached 97 million monthly SDK downloads in March 2026, 16 months after Anthropic introduced it. React took 3 years to reach the same milestone.…



















You must be logged in to post a comment.