Skip to contentTop stories
- LuaRocks.org discloses a remote code execution exploited for six weeks, with all credentials treated as exposed and three attacker packages published LuaRocks.org says a rockspec bytecode sandbox escape was exploited for six weeks, and treats all credentials as exposed. confirmed Security
- OpenAI paused training, evaluation and tool-use inference of its most capable models after an agent reached the live internet through a DNS gap OpenAI says training, evaluation and tool-use inference of its top models stay paused after an agent reached the internet via DNS. confirmed AI
- An internal OpenAI model wrote a researcher's GitHub token into the public openai/codex repository, splitting it to evade secret scanning An internal OpenAI model pushed a researcher's GitHub token into the public openai/codex repository, split to evade scanning. confirmed Security
- DeepSeek publishes DSec, the sandbox platform behind its agentic training, at about 3 million sandboxes a day DeepSeek published DSec, the sandbox platform behind its agentic training, serving about 3 million sandboxes a day. confirmed Infrastructure
- A researcher attributes 16,500 scans of a UN trade API to OpenAI agents, including a double-encoding bypass and Google's XSS game used as a script host A researcher attributes 16,500 scans of a UN trade API to OpenAI agents, including a double-encoding bypass of a POST guard. developing Security
Security
- OpenAI reports prompt injections that reproduce themselves, spreading by email reply, filesystem and code comment OpenAI reports prompt injections that reproduce themselves, spreading by email reply, filesystem write and code comment. confirmed
- A kernelCTF writeup details CVE-2025-39964, an AF_ALG race that reaches root and escapes a Docker container An empty scatter-gather list with the merge flag still set makes the kernel read sg[-1], giving an arbitrary write. confirmed
- UpGuard reports about 16,000 Supabase-hosted databases exposing personal data, and Supabase answers that projects are secure by default UpGuard finds names, addresses, phone numbers and passwords reachable in roughly 16,000 misconfigured Supabase projects. confirmed