RC RANDOM CHAOS
RC RANDOM CHAOS

Tech · Culture · Fiction

Attackers drained $387.5M through Bitget's own security appliances Article

Attackers drained $387.5M through Bitget's own security appliances

Bitget confirms a third-party zero-day let attackers reach its wallet job server and drain $387.5M; SlowMist and Mandiant trace the two-stage path.

iOS CoreGraphics PoC published two days after the patch
Article apple

iOS CoreGraphics PoC published two days after the patch

Apple patched CVE-2026-86950, an out-of-bounds write in CoreGraphics triggered by a malicious PDF font and used in targeted attacks on iOS before 27.

Two Zammad zero-days let an AI agent reach root
Article zammad

Two Zammad zero-days let an AI agent reach root

DIVD says two Zammad zero-days let an AI agent hijack a session, reach root, and exfiltrate data in seconds; network segmentation limited the breach.

Unpatched FortiMail flaw under attack
Article fortinet

Unpatched FortiMail flaw under attack

Fortinet warns of CVE-2026-104286, a critical FortiMail flaw under active exploitation that lets unauthenticated attackers write arbitrary files.

AI agents designed the chip that runs their inference
Article ai-hardware

AI agents designed the chip that runs their inference

openTPU is an AI-written inference accelerator whose FPGA card reproduces its reference simulator's tokens bit for bit, checked by an executable spec.

Mistral reproduces the exploit, the others refuse
Article mistral-large-4

Mistral reproduces the exploit, the others refuse

Mistral's open-weight Large 4 tops a vulnerability-reproduction test where closed models refuse, and ships with refusals any self-hoster can tune away.

Muse hands root to anyone
Article ai-agents

Muse hands root to anyone

Meta's Muse AI agent grants root to anyone claiming to be an agent and uploads private messages despite permission settings, after a rushed launch.

The Wire — latest

All →

Stay in the loop

New writing delivered when it's ready. No schedule, no spam.