The first account of the July intrusion from an infrastructure vendor that was neither breached nor exploited. By the time the agent reached Tailscale it had code execution in a production worker, root on a Kubernetes node, and a secret…
In the News: July 31, 2026, Evening
Tailscale's post-mortem of the Hugging Face intrusion names the one log an autonomous agent cannot suppress, the one kept by every node it connects to.
Tailscale on why it did not stop the Hugging Face intrusion, and the log an agent cannot suppress
Google fixed 1,072 Chrome security bugs in two milestones, and published the harness
"In the last two milestones, Chrome 149 and 150, we have fixed 1072 security bugs, surpassing the total number of security bugs fixed across the prior 23 milestones combined." The post is unusually specific about the machinery. An agent…
A disproved 150-year-old conjecture, with the model's contribution disclosed like a build dependency
Five point charges with at least 24 non-degenerate critical points, against Maxwell's conjectured ceiling of (n-1) squared. The paper carries a named section, "Tool and computational resource disclosure," placed directly after the funding…
The reasoning trace is not a receipt
A survey of the evidence that chains of thought are neither faithful nor load-bearing. William Merrill, Toyota Technological Institute at Chicago: "There's no guarantee the chain of thought has to be meaningful in any sense." A 2025…