First reported thehackernews.com
Lead dispatch
First reported island.io
AgentBaiting: How Fake AI Skills Deliver Malware at Scale
Island security researchers uncovered the FakeGit campaign, which used roughly 7,600 malicious GitHub repositories—over 800 posing as AI Skills or MCP servers—to deliver SmartLoader malware that installs the StealC information stealer. The campaign introduces a technique called AgentBaiting, in which AI agents such as Claude Code, Gemini, and ChatGPT autonomously discover the attacker repositories, treat the malicious README as legitimate documentation, and pass installation instructions to users; the operation recorded over 14 million downloads.supply-chain · tool-abuse · malware-delivery · agentbaiting
mcp · ai-agents · ai-skills · llm · copilot
The wire · latest
First reported bleepingcomputer.com
The Replicant in Your Directory: AI Agents and the Identity Security Gap
A sponsored analysis piece by Netwrix CEO Grady Summers argues that AI agents, service accounts, OAuth apps, and other non-human identities now vastly outnumber human users and fall outside identity governance built for people. It cites the 2025 UNC6395 campaign, in which an OAuth token tied to Salesloft's Drift integration was abused to pivot across hundreds of Salesforce environments and reach AWS/Snowflake credentials, as an example of how a single trusted machine identity can cascade—an issue AI agents accelerate by creating and inheriting identities at machine speed. Details →First reported bleepingcomputer.com
Agentic AI Has an Identity Problem and Attackers Know It
A vendor (Token Security) commentary arguing that AI agents act as privileged identities accessing data and triggering workflows across enterprise systems, and that governing these non-human identities is becoming essential. The piece frames identity governance as an emerging security gap attackers can exploit. Details →First reported adversa.ai
OWASP ASI03: Identity & Privilege Abuse in AI Agents
A technical guide on OWASP's ASI03 (Identity & Privilege Abuse in AI Agents), covering five identity abuse vectors, the Salesloft Drift breach case study, the attack lifecycle, and detection/prevention with task-scoped, time-bound access. Details →How the wire is made
Poll & cluster
Internet is crawled for AI security news and near-duplicate coverage is embedded and grouped into durable items.
Curate
AI Agent filters for agentic-AI relevance, classifies and tags each item, scores severity for threats, and writes the summary.
Every item here is one machine-curated intelligence object, not a headline.
Read the wire for free. There is a small charge to ask the index questions.
The wire, open
The complete curated feed, no key required.
- GET /feed.xml — RSS 2.0, every item
- GET /api/items — read-only
The vector desk
Query the index by meaning, not just keyword.
- GET /api/items?tags=&minSeverity=&itemType=
- GET /api/search?q= — keyword
- GET /api/semantic?q= — vector