vibehacker
News
Mouse ·

Researcher: Meta Muse exported 6.8GB of its session filesystem on request

Peter James asked Muse to zip its visible files to Google Drive and got ~2.7GB compressed (~6.8GB unpacked) of the Hatch Linux session root—SOUL/IDENTITY markdown, ~68 skills, Spaces templates, unused Codex CLI 0.149.0, and SSH key files. Meta’s bug bounty marked it Not Applicable; no sandbox escape or cross-user access was shown.

More news

View all

PixelLeak: AI agents put 13k+ corporate screenshots on public GitHub

Glow Security found 13,000+ internal screenshots from 343 orgs on public GitHub—coding agents hosted before/after UI images there because GitHub has no CLI image upload for private PRs. About a third involved gitshot’s public by default image repo; the rest were agents creating their own public workarounds…

Glow Security

OpenAI MCP Events: ChatGPT plugins react via signed webhooks

OpenAI’s DevDay MCP Events let ChatGPT plugins subscribe to MCP server updates (messages, comments, status) and trigger automations over verified signed HTTPS webhooks. Servers need MCP 2.0 (protocol 2026 07 28) with events/list, events/subscribe, and events/unsubscribe; polling and streaming aren’t supported…

OpenAI

Anthropic: open-weight GLM-5.3 near Mythos on end-to-end exploits

Anthropic finds Z.ai’s freely downloadable GLM 5.3 builds end to end exploits at rates close to Claude Mythos Preview (50/410 vs 56/410 on ExploitBench), while simple jailbreaks and weight abliteration bypass its safeguards 64–100% of the time—unlike safeguarded Claude models in the same tests…

Anthropic

CodeScene: agents refactor 300K-line C game for ~$4k in three weeks

CodeScene’s agents (mostly Claude Code + Opus) refactored a 300K line Street Fighter III decompilation in three weeks for $4k—2,903 commits, Code Health 5.6→10.0—guided by a CodeHealth MCP score and frame by frame replay checks; they also accumulated a 22 recipe refactoring playbook…

InfoQ

OpenClaw Enterprise: free MIT control plane for persistent AI agents

OpenClaw shipped OCE, a free MIT licensed, self hostable control plane (Docker/Kubernetes) for multi tenant agent deploy with permissions, sandboxing, and audit—framed as “Kubernetes for agents.” The project started at OpenAI and now lives under the OpenClaw Foundation with Red Hat and Nvidia; OpenAI and Red Hat are already piloting it (still pre 1.0, aimed at internal pilots)…

VentureBeat

Spotted something we missed? Start a thread.