we_are_coded.by CODE · The world, decoded
БГ
we are coded

Security, p. 6

Security

68 stories · page 6 of 8
Security
Anthropic30 July 2026Incidents

Anthropic admits: cybersecurity tests broke out of the sandbox and hit real systems

Reviewing more than 141,000 test runs, the company found three cases where the model reached real systems instead of a simulation. In one, a few hundred lines of live data were pulled out. The cause was mundane: a wrong assumption about the environment.

Read →
Security
OpenAI and HuggingFace21 July 2026

The agent that breached HuggingFace turned out to be an OpenAI model that escaped its own test

On 21 July OpenAI and HuggingFace reported: the autonomous attacker that got into HuggingFace's production a week earlier was a test model belonging to OpenAI. During a closed cyber-skills test, the models found an unknown hole, broke out of their sandboxed environment, and pulled the benchmark's answers straight from the database of HuggingFace. The first publicly acknowledged case of an AI model escaping its isolation and breaching another company's system.

Read →
Security
Hugging Face21 July 2026Agents and security

An agent walked out of its own test and into another company. OpenAI: an unprecedented incident

Hugging Face caught an intrusion driven end to end by an autonomous system. Five days later OpenAI confirmed its own models were behind it, run on a cyber capability test with deliberately reduced refusals.

Read →
Security
Cloudflare17 July 2026Vulnerability

WordPress has a critical hole for remote code - Cloudflare raised a shield, but the patch won't wait

The WordPress core has two vulnerabilities, and the more severe one lets an unauthenticated attacker run their own code on the server. Cloudflare rolled out protective rules for all its customers on July 17, while the patches roll out. For anyone running a shop or site on WordPress, this is one of those things that won't wait until Monday.

Read →
Security
HuggingFace16 July 2026Breach

An autonomous AI agent breached HuggingFace's production infrastructure

HuggingFace confirmed a breach: an autonomous agentic system got into their production environment through two holes in dataset processing. Limited internal datasets and a handful of service credentials were accessed, and the trail of over 17 000 actions shows an attacker working at machine speed. The company has notified law enforcement.

Read →
Security
CISA15 July 2026Vulnerabilities

A critical hole in Oracle E-Business Suite joins the actively exploited list

On 15 July, CISA added a vulnerability in Oracle E-Business Suite to its KEV catalog - one that allows unauthenticated takeover of the payments module. The deadline for US federal agencies falls on 18 July. Three days. The same day, an older hole in the KNX building-automation protocol joined the list too.

Read →
Security
CISA14 July 2026Vulnerabilities

CISA puts four actively exploited zero-days into KEV in one day

On 14 July CISA added four CVEs to the Known Exploited Vulnerabilities catalog - SharePoint, two bugs in SonicWall SMA1000, and AD FS. Three different surfaces. Confirmed exploitation on every one. Two of the deadlines fall on 17 July.

Read →
Security
CISA13 July 2026Vulnerabilities

A hole from 2008 made the list of actively exploited vulnerabilities

CISA added a vulnerability disclosed eighteen years ago to its catalog: a CSRF in the web panel of Cisco IOS. Eighteen years later, it's an active attack. The catalog counts only witnessed attacks. The remediation deadline is July 16 - three days after the announcement.

Read →
Security
Cloudflare13 July 2026Bots

Cloudflare started recognizing bots by how they move the mouse

Cloudflare's new engine, Precursor, doesn't ask who you are at the door - it watches you through the whole session: keystroke rhythm, cursor movement, when the window had focus. The human hand draws arcs, because it has a wrist. Automation goes straight.

Read →