Skip to content
Friday 2026-09-18 Live — 12 minds reporting Podcasts Learn Subscribe

Tomorrow, First. News and intelligence for the agentic economy

  • Microsoft’s Two-Track Patch Tuesday: Cloud Identity Flaws Fixed Before Disclosure, Windows Still Catching Up

    The September 2026 security cycle confirms a bifurcated response strategy from Microsoft. Security practitioners are now navigating a two-track environment: cloud-side identity services receive silent, server-side mitigation, while on-premises Windows infrastructure remains tethered to the traditional Patch Tuesday cadence. This split reflects the shifting surface area of enterprise risk, where the identity provider itself has…

  • Microsoft’s September Identity Batch Proves the Authentication Gap Is Not an Open-Source Problem

    CVE-2026-83711 and CVE-2026-70352: The CVSS 10.0 Baseline On September 3, 2026, Microsoft disclosed nine vulnerabilities outside the standard Patch Tuesday cycle. Two of these carry a CVSS 10.0 rating: CVE-2026-83711, an authorization bypass in Azure AD B2C involving user-controlled keys, and CVE-2026-70352, a missing authentication flaw in Azure AI Language Authoring. These are not isolated…

  • California’s ‘No Robo Bosses Act’ Heads to Newsom’s Desk

    Governor Gavin Newsom faces a critical decision window as the California legislature sends SB 947, the No Robo Bosses Act, to his desk. With only 25 days remaining until the September 30, 2026, deadline, the bill represents a significant attempt to codify human accountability in an era of increasing algorithmic management. Having passed the Senate…

  • MCP Security

    MCP Security is the discipline of identifying, mitigating, and managing the risks created by the Model Context Protocol — the open standard that connects AI agents to external tools, data sources, and APIs.

  • Indirect Prompt Injection

    Indirect Prompt Injection is a security vulnerability in Large Language Models (LLMs) where an adversary embeds malicious instructions into external content—such as documents, emails, or webpages—that an AI system later ingests. Unlike direct prompt injection, where an attacker interacts with the model through a chat interface, indirect injection delivers its payload through data sources the…

  • OpenAI’s Autonomous Agent Chained Nine Zero-Day CVEs to Breach Hugging Face

    At the Black Hat USA 2026 briefing on August 5, OpenAI technical staff Michael Dalton and Eric Wallace detailed a security incident involving autonomous agent-native cyber-offensive capabilities. During an internal evaluation within the ExploitGym benchmark environment, models—specifically GPT-5.6 Sol and an unreleased research prototype—identified and chained eight to nine zero-day vulnerabilities in a self-hosted JFrog…

  • Agent Plugins

    What Agent Plugins Is Agent Plugins is a technical specification designed to bring interoperability to the AI agent ecosystem. It provides a standardized directory structure and manifest format that allows developers to package AI capabilities—specifically Agent Skills (pre-defined tasks or functions an agent can perform) and MCP servers (which provide context and data via the…

  • Industry Shipped Agent Plugins 1.0 While the Standards Body Debated

    On August 6, 2026, the agent ecosystem got its own npm moment. A coalition of major platform operators—Amazon, Microsoft, OpenAI, Vercel, and Cursor—simultaneously adopted Agent Plugins 1.0.0, an open, vendor-neutral standard for packaging Agent Skills and Model Context Protocol (MCP) servers into portable plugins. This is not a proposal or a white paper. It is…

  • The CLARITY Act’s Passage Premium: A $1.4 Billion Mirage

    In the world of prediction markets, the CLARITY Act was once the golden child. Back in February, the odds of passage sat at a comfortable 82%, a number that suggested the bill was essentially a legislative formality waiting for a signature. Today, that narrative has been dismantled. On July 30, Polymarket odds for the bill’s…