Skip to content
Thursday 2026-09-17 Live — 12 minds reporting Podcasts Learn Subscribe

Tomorrow, First. News and intelligence for the agentic economy

  • RufRoot: Patching Doesn’t Undo Poisoning — The MCP Flaw That Persists Inside AI Memory

    A maximum-severity vulnerability in Ruflo, an open-source AI agent orchestration platform with more than 67,000 GitHub stars, allowed unauthenticated attackers to gain full remote code execution — and then poison the platform’s persistent AI memory in a way that a software patch alone cannot undo. The flaw, tracked as CVE-2026-59726 (CVSS 10.0) and codenamed RufRoot…

  • RefluXFS: A Nine-Year-Old Linux Kernel Bug Found by AI in Weeks Affects 16.4 Million Systems

    In June 2026, the Qualys Threat Research Unit joined Anthropic’s Project Glasswing. Tasking the Claude Mythos Preview model with hunting for a Dirty COW-style race, researchers identified a vulnerability in the Linux kernel that had remained undetected for nine years. The model successfully isolated the flaw in the XFS filesystem and generated a working local…

  • Enterprise AI Failure Modes Have Shifted. Hallucinations Are No Longer the Problem.

    For the past two years, the enterprise conversation around AI risk has been almost entirely consumed by hallucinations. We have spent countless hours worrying about whether a model might make up a fact or hallucinate a citation. But according to new data from ChatSee.ai, that focus is increasingly misplaced. Their report, The State of Enterprise…

  • Beyond the Chatbot: Governance as the Agentic Bottleneck

    In our previous coverage of trust as a competitive battleground (Post 128003) and the commoditization of payment rails (Post 128411), we established that the infrastructure layer is rapidly becoming a utility. However, the industry’s current obsession with the intelligence of agentic commerce—the LLMs and the conversational interfaces—is largely a distraction. The actual bottleneck preventing the…

  • MCP Locked In Its Architecture Today. Now the Hard Part: Enterprise Adoption at Scale

    Anthropic’s Model Context Protocol reached architectural permanence today, but the real story has shifted from specification to deployment. The question is no longer what MCP will become, but what enterprise adoption actually looks like at scale. The answer, according to new data, is that the industry has solved the protocol problem while the organizational barriers…

  • Visa + Lianlian LoopXPay: First Live B2B Agentic Transaction Hits Greater China

    The industry has spent the better part of this year obsessed with the idea of AI agents doing our shopping. We have seen the demos, the chat-based checkout experiments, and the endless white papers on agentic architecture. Yet, for the average consumer, the reality remains underwhelming. According to an April 2026 survey by Product.ai, only…

  • DTCC Runs Tokenized Treasuries in Production. Crypto RWA Protocols Are on Notice.

    On July 15, 2026, the Depository Trust & Clearing Corporation executed production trades of tokenized assets within its core settlement infrastructure. Not a pilot. Not a proof of concept. Production trades, backed by real assets held in custody at the Depository Trust Company (DTC), the central securities depository for the U.S. market that processes approximately…