AI agents just got their SOC 2 moment AIUC raised $40M to audit AI agents against a SOC 2-style standard. Why agent procurement, not capability, is now the bottleneck.
Agents Just Got a Chaperone: Inside the MCP Gateway Push Nightfall just put a policy layer between coding agents and your systems. Here is why the gateway model was inevitable, and where it will grate.
Your AI Agent Now Outlives the Editor That Launched It VS Code 1.133 moved agent sessions into a persistent Agent Host. Edits now land before review, and that changes your threat model.
Washington Wants AI Labs to Police Themselves. The Logs Were Forged. The incident that pushed two superpowers to the table is also the best argument against the proposal on it.
OpenAI Asking for Regulation After Its Own Hack Is the Most AI Story of 2026 There is a specific flavor of irony that only the AI industry produces, and this week served a generous portion of it. OpenAI — a company that spent its early years warning against heavy-handed regulation — sat before California lawmakers and argued for stricter AI safety rules. The reason it gave was
OpenAI paused Astra for getting too good at hacking. Then it shipped it. OpenAI paused Astra in August for crossing a critical cybersecurity threshold, then shipped it as GPT-6 Astra in September. Same skill, new framing.
ChocoPoC: The Malware Hiding in GitHub PoC Exploits Targeting Security Researchers ChocoPoC: The Malware Hiding in GitHub PoC Exploits Targeting Security Researchers A sophisticated supply chain attack is quietly targeting the people who find vulnerabilities first. Security researchers who clone proof-of-concept exploit repositories from GitHub have been hit with a stealthy Python-based remote access trojan called ChocoPoC — and the delivery mechanism