Top stories

  1. Encrypted reasoning traces are interchangeable across sessions, users, and models at Anthropic, OpenAI, and Google Encrypted reasoning blocks from Anthropic, OpenAI and Google are not bound to requests, replaying across sessions within ecosystems.
  2. Zimbra command injection added to the CISA exploited catalog with a 2026-08-24 due date CVE-2026-73570 command injection in Zimbra is exploited in the wild with a remediation due date of 2026-08-24.
  3. Rust 1.98 miscompiles a boxed async trait object into a null vtable slot Rust 1.98.0 emits zero-filled vtable entries for boxed async trait objects, causing safe code to dispatch through null.
  4. Kernel fix stops the Intel Xe driver from handing compression storage out as usable VRAM Intel Xe published compression-reserved memory to the VRAM allocator, silently corrupting whoever landed there.
  5. Changing only the vLLM attention backend flips tokens and breaks tool calls on identical weights Changing only the vLLM attention backend produces token flips breaking tool calls, proving inference configuration affects correctness.

Agentic coding

  1. Prime Intellect publishes 153 autonomous agent runs across 18 models on the nanoGPT speedrun Prime Intellect released 153 agent runs across 18 models with full trajectories re-ranked by fixed cost.

Security

  1. Microsoft publishes a CVSS 10.0 Entra ID deserialization flaw as already mitigated Microsoft's CVSS 10.0 Entra ID deserialization flaw was fixed service-side with no customer action needed.
  2. TrueConf Server flaws added to the CISA exploited catalog, one with a 2026-08-23 due date TrueConf Server flaws allow unauthenticated code execution and environment breakout, exploited in the wild.
  3. More than 9,300 exposed AWS keys still authenticate, 768 of them with full control of a company account Truffle Security found 9,300 exposed AWS keys still authenticating with 768 holding full account control.
  4. Unpatched NTFS3 flaw turns a crafted NTFS image into local root on Linux Unpatched NTFS3 reads setuid bits from disk, making a crafted USB stick give local users euid 0 on mount.
  5. Malware reached Android car head units through the DoFun firmware updater DoFun firmware updater delivers malware through vendor-controlled MQTT, opening a proxy botnet polling every 90 minutes.

Languages and runtimes

  1. Java's String.indexOf is quadratic, and a 4096-character adversarial needle costs 1.1 seconds on a 1 MB string Java's String.indexOf is quadratic, making 4096-character needles cost 1.1 seconds on 1 MB strings and creating a denial-of-service path.

Apple platforms

  1. hdiutil is deprecated in the macOS 27 beta in favour of diskutil image macOS 27 beta deprecates hdiutil for diskutil image, which lacks options like -puppetstrings and -scrub.

Linux and kernel

  1. Linux 7.3 replaces Steve French as CIFS maintainer Paulo Alcantara and Namjae Jeon take over CIFS and SMB3 maintenance from Steve French starting in Linux 7.3.
  2. An LSFMM+BPF session proposes proving scheduler and XDP invariants with Verus LSFMM+BPF proposes using Verus to prove scheduler and XDP invariants, since the verifier only guarantees no crash.

Infrastructure

  1. ATProto Spaces alpha adds non-public data to the protocol ATProto Spaces adds access-controlled non-public data to the protocol, enabling settings, drafts and gated communities.

Engineering posts

  1. A copy-and-patch JIT in Rust compiles in about 5 microseconds A copy-and-patch JIT in Rust compiles code in 5 microseconds, enabling JIT of every SQL query instead of a subset.

Hacker News

  1. Reports of reduced Claude Code effort levels draw a large thread without a primary source A large Hacker News thread reports reduced Claude Code effort levels based on unverified accounts without Anthropic confirmation.