PROMIT NOW · ALL SIX LENSES · 2026-02-27

◆ DAILY BRIEFING

Friday, February 27, 2026

6 angles · 272 sources · 10,287 words · ~52 min end to end

  1. Engineer 45 sources · 9 min

    A self-propagating npm worm (SANDWORM_MODE) is actively injecting malicious MCP servers into Claude, Cursor, Windsurf, and VS Code Continue — hijacking your AI coding assistant's tool-calling capability to exfiltrate crypto keys, raid password managers, and propagate through your repos.

    Your AI coding assistants are under active attack from a self-propagating npm worm injecting malicious MCP servers, Claude Code has confirmed RCE flaws triggered by merely opening a cloned repo, Cisco…

    Read full briefing →
  2. Security 46 sources · 8 min

    A maximum-severity Cisco SD-WAN zero-day (CVE-2026-20127) has been silently exploited since 2023 — CISA issued an emergency directive and Five Eyes partners published joint hunting guidance, signaling nation-state caliber activity.

    Your Cisco SD-WAN may have been owned since 2023 by a nation-state actor using a firmware downgrade trick, a self-propagating npm worm is injecting itself into your developers' AI coding assistants to…

    Read full briefing →
  3. Data Science 46 sources · 7 min

    OpenPipe's ART framework trains a 14B-parameter agent that beats o3 at 96% accuracy for $0.85/1K runs vs.

    A 14B model trained with RL for $80 now beats o3 at 64x lower cost, three MIT-licensed Chinese frontier models just dropped, and an NBER study of 6,000 executives says 80% see zero AI productivity imp…

    Read full briefing →
  4. Product 46 sources · 9 min

    The AI agent era just went from theoretical to shipping: Perplexity, Anthropic, and Cursor all launched autonomous agent products in the same week, while Salesforce admitted its $800M ARR Agentforce is cannibalizing legacy revenue — not expanding it.

    The AI agent era shipped this week — not as a demo, but as five competing production platforms — and Salesforce's earnings proved that AI features cannibalize legacy revenue rather than expanding it.…

    Read full briefing →
  5. Leader 46 sources · 11 min

    The AI industry just split into two economies running at different speeds: Nvidia's $96.6B free cash flow and ~$600B in untapped hyperscaler debt capacity are cementing infrastructure as a winner-take-all game, while enterprise SaaS is entering a cannibalization trap where AI products grow revenue but destroy margins — Salesforce's Agentforce hit $800M ARR yet organic growth decelerated to 8%.

    The AI economy has bifurcated: infrastructure owners (Nvidia with $96.6B free cash flow, hyperscalers with $600B in borrowing capacity) are capturing monopoly economics, while the application layer fa…

    Read full briefing →
  6. Investor 43 sources · 8 min

    Amazon's $50B OpenAI investment ($15B firm, $35B contingent on IPO/AGI) at a $730B pre-money valuation is repricing the entire AI sector — but the real story is the widening chasm between AI infrastructure profits (Nvidia: $120B annual profit, 55.6% margins) and AI application-layer stagnation (80% of enterprises report zero productivity impact, Salesforce organic growth slowed to 8% despite $800M Agentforce ARR).

    The AI sector just split into two economies: infrastructure (Nvidia's $120B profit, $600B in Big Tech borrowing capacity) is printing historic returns, while the application layer faces a reckoning —…

    Read full briefing →