🇰🇵 We built a fake company. We recruited DPRK IT workers. We recorded everything.
📹 The full story is finally out: hours of footage, IOCs, things we never showed at DEF CON and even a familiar face from Season 1.
Smile, You’re on Camera: Episode 2.
After evaluating one of our upcoming models, Astra, we're treating it as our first "critical" model for cybersecurity under our Preparedness Framework.
This is a scenario we've planned for, and we're putting additional controls in place to ensure Astra's further development happens safely and securely.
We're working hard to make Astra broadly available, and get its advanced cyber capabilities into the hands of defenders.
https://t.co/9lMIvdeMMJ
New in Claude Code: your sessions can now message each other.
Instead of having to re-explain yourself in another session, you can now tell Claude to do it. It sends a summary (not your history or files), and the other session picks it up mid-task.
🚨 BREAKING: OpenAI and Anthropic disclosed today that AI agents targeted real people and systems during separate cybersecurity tests.
🔹AISI says Anthropic’s Mythos 5 submitted malware to a real GitHub project, created fake accounts, sent malicious emails, and pressured maintainers to approve the code.
🔹OpenAI says one of its models breached a real website after a testing misconfiguration exposed the environment to the internet.
These incidents are separate from the Hugging Face breach.
We're detailing two new incidents that occurred during external cyber evaluations conducted by independent evaluation partners.
We outline what happened, how the activity was contained, and how we’re working with evaluators to strengthen our approach to third-party testing.
https://t.co/ZL3n6mxYMS
Russian threat actor Midnight Blizzard is conducting widespread traffic manipulation attacks at hotels worldwide. Result: delivering malware or redirecting auth flows at their discretion, globally.
Since early May 2026, we saw this subcluster manipulate DNS and HTTP traffic from networks served by captive portals to redirect user traffic through actor-controlled infrastructure. We’re calling the campaign CaptiveCrunch.
“We have observed notable commonalities in the equipment and management systems used across multiple affected networks.”
We break down the malware & techniques, but the most important part is how dynamic all of it is: Midnight Blizzard is using AI to support a significant portion of these operations. They are moving and changing quickly.
Feedback welcome on the suggested mitigations: https://t.co/cVGbdQEpXQ
Help spread the word to VIPs in governments, diplomatic entities, non-governmental organizations (NGOs) in the US and Europe (probably also those traveling to Black Hat)