RC RANDOM CHAOS

The Wire

Curated cybersecurity and tech news — AI-summarized, source attributed.

aitech-culture

GPT-5.5 Codex System Prompt Bans Mentions of Goblins, Gremlins, and Pigeons

Simon Willison highlights a peculiar directive surfaced from OpenAI Codex's base_instructions for GPT-5.5: the model is told never to reference goblins, gremlin

via Simon Willison ·
aitech-culture

Japan Airlines pilots humanoid robots for baggage handling at Haneda

Japan Airlines will deploy humanoid robots at Tokyo's Haneda Airport starting May 2026 in a trial running through 2028, aimed at offsetting a domestic labor sho

via Ars Technica ·
vulnerabilityai

LiteLLM pre-auth SQLi flaw under active exploitation, secrets harvested

A critical SQL injection vulnerability in LiteLLM, tracked as CVE-2026-42208, is being actively exploited to extract API keys and provider credentials from the

via BleepingComputer ·
aiopen-source

Microsoft's VibeVoice ASR runs locally on Mac, transcribes an hour in under 9 minutes

Microsoft quietly released VibeVoice in January 2026, an MIT-licensed speech-to-text model in the Whisper lineage with speaker diarization baked into the model

via Simon Willison ·
supply-chainopen-source

pip 26.1 ships lockfiles and dependency cooldowns

Python's default package installer gets two long-requested capabilities in 26.1. The new `pip lock` command resolves a dependency tree and writes it to a `pyloc

via Simon Willison ·
cybersecuritymalware

Ransomware Crews Turn on Each Other, Spilling Rivals' Stolen Data

Infighting among ransomware operators has escalated into open data warfare, with competing crews dumping each other's exfiltrated victim caches onto leak sites.

via Dark Reading ·
aiopen-source

Talkie: a 13B language model trained only on pre-1931 English text

Nick Levine, David Duvenaud, and Alec Radford have released talkie-1930-13b, a 13B-parameter language model trained on 260B tokens of pre-1931 English text, alo

via Simon Willison ·
policy

V. vulnificus costs man a leg and forearm in 72 hours as climate expands its range

A patient arrived at hospital with a Vibrio vulnificus infection so advanced that his right leg required above-the-knee amputation and his forearm needed extens

via Ars Technica ·
malwarecybersecurity

VECT 2.0 ransomware bug shreds files over 128KB instead of encrypting them

Check Point researchers found a fatal flaw in VECT 2.0, a ransomware-as-a-service offering pushed on BreachForums and recently aligned with TeamPCP — the crew b

via BleepingComputer ·
aitech-culture

Yglesias on vibecoding: leave the AI to the pros

Matthew Yglesias, quoted by Simon Willison, lands on a sharp position five months into the vibecoding era: he doesn't want to do it himself. He'd rather have pr

via Simon Willison ·
aicybersecurity

Anthropic's Mythos and the Shifting Baseline of AI-Driven Vuln Hunting

Anthropic's Claude Mythos Preview can reportedly find vulnerabilities in operating systems and internet infrastructure and turn them into working exploits witho

via Schneier on Security ·
cybersecuritymalware

Carding Crew Publishes Three-Tier OPSEC Manual Borrowing From Intel Tradecraft

A cybercrime forum post analyzed by Flare lays out a structured operational security framework for high-volume carding crews, framing OPSEC less as hygiene and

via BleepingComputer ·