Falco Steps In Before Coding Agents Call Tools
Prempti is a new Falco experiment that evaluates coding-agent tool calls before Claude Code and similar agents execute them.
Vulnerabilities, prompt injection, model safeguards, and containment design.
Prempti is a new Falco experiment that evaluates coding-agent tool calls before Claude Code and similar agents execute them.
Microsoft RAMPART and Clarity Agent move agent safety from late-stage review into CI tests, design records, and pull request evidence.
Claude Managed Agents added self-hosted sandboxes and MCP tunnels, redrawing the enterprise boundary between orchestration, execution, and audit.
AWS Security Agent full repository code review targets trust boundaries and data flows that traditional SAST often misses.
Cursor Composer 2.5 shows the coding-agent race shifting from benchmark scores toward long-task failure points, targeted feedback, and reward-hacking detection.
The TanStack npm incident reached OpenAI Codex and ChatGPT Desktop certificate rotation, showing how AI development tools now inherit supply-chain trust risk.
A LinkedIn profile prompt injection changed automated recruiting messages. The deeper issue is what happens when resumes and profiles become agent input.
Meta Incognito Chat runs AI conversations through WhatsApp Private Processing. The key shift is not deleted history, but verifiable private inference.
OpenAI brought personal finance into ChatGPT. The real story is not budgeting, but how AI products handle permission boundaries around sensitive money data.
Google GTIG disclosed the first zero-day exploit attempt it assesses was developed with AI, shifting how defenders should think about discovery and weaponization speed.
Microsoft found exposed AI apps, 15% unauthenticated MCP servers, and Mage AI and kagent cases where defaults became real attack paths.
Airia Form Review Step adds human review and audit trails before AI-extracted document data becomes a system-of-record entry.