◆ TOPIC · DATA INFRASTRUCTURE
The Data Infrastructure thread.
Production AI runs on stacks of open-weight models, agent frameworks, and cloud services—and the security, cost, and reliability of that layer. Recurring threads span infrastructure breaches at Hugging Face, botnets harvesting keys from exposed Ollama and ComfyUI boxes, active SonicWall zero-days, tokenizer-driven price shifts, and AI-generated code that ships more production incidents than human-written work.
◆ TIMELINE
How Data Infrastructure moved across the corpus.
-
- Data Science LinkedIn just proved your LLM embeddings are numerically blind: raw engagement counts fed as text tokens produced -0.004…
- Engineer Nine LLM API routers — including one paid service — were caught actively injecting malicious code into responses and exf…
- Security APT41 has deployed a cloud IAM credential harvester with 0/72 antivirus detection across AWS, GCP, and Azure — exfiltrat…
-
- Data Science Google Research's Memory Caching paper gives RNNs a tunable O(NL) complexity knob between O(L) and O(L²) — with Gated Re…
- Engineer Claude Code's Hooks feature lets you wire deterministic shell scripts (linters, type checkers, test runners) into PreToo…
- Leader The agent orchestration layer just commoditized: Sim Studio's open-source Mothership framework — now at 27,000+ GitHub s…
- Product Anthropic just shipped 12 deep integration features in Claude Code — Subagents, MCP connections, lifecycle Hooks, Plugin…
- Security Claude Code's Hook system fires arbitrary shell scripts on developer workstations triggered by repo-committed .claude/ c…
-
- Data Science Anthropic's Nature paper formally proved that teacher-student distillation transfers behavioral traits through a sub-sem…
- Engineer MCP's STDIO transport has a protocol-level RCE — not a bug, an architectural design flaw — affecting 200+ open-source pr…
- Leader Intercom just published Stanford-validated proof of 2x engineering velocity from AI tools — but new State of Software De…
-
- Data Science Google's Gemma 4 ships the most aggressive KV cache engineering in any open model — 83% memory reduction, 128K context o…
- Engineer Code generation is solved — code review is now the bottleneck, and nobody has an answer yet.
- Investor While the market obsesses over $60B AI coding tool valuations, three category-formation events landed in the same week t…
- Product OpenAI's GPT-Image-2 launched with API access, a +242 Elo lead over every competitor, and day-one integrations from Figm…
-
- Data Science A single model scored 19% or 78.7% on the same benchmark by swapping only the agent scaffold — a 4x variance that makes…
- Engineer Three CVSS 10.0 vulnerabilities dropped simultaneously across Axios (cloud metadata exfil via SSRF), Apache Kafka (JWT v…
- Security Axios — the most popular JavaScript HTTP client — has a CVSS 10.0 header injection flaw (CVE-2026-40175) that exfiltrate…
-
- Data Science vLLM v0.20.0 ships TurboQuant 2-bit KV cache at 4× serving capacity, which is the kind of number I stop trusting until s…
- Engineer Lapsus$ shipped a backdoored Checkmarx KICS release, which means the scanner is executing attacker code with whatever re…
- Security Lapsus$ has been injecting malicious payloads into Checkmarx KICS — your infrastructure-as-code vulnerability scanner —…
-
- Data Science Enterprise SaaS vendors are metering agent tool-calls.
- Engineer NVD just gutted CVE enrichment to KEV-only and government software — your CVSS-dependent scanners are going blind this w…
- Security Three critical exploits are hitting trust infrastructure simultaneously this week: cPanel CVE-2026-41940 (CVSS 9.8) is b…
◆ RECENT · LATEST 60
Skim the most recent entries.
-
Data Science Rubric rewards extend RLVR beyond math, and a fully-open 8B now rivals paid agents
-
Data Science An autonomous AI agent breached Hugging Face's production infrastructure.
-
Product Visa, Stripe, Google, and 40+ others just standardized how AI agents pay for things.
-
Data Science A botnet is harvesting cloud keys from exposed Ollama and ComfyUI boxes.
-
Engineer Kimi K3's open weights drop July 27 with frontier-tier coding.
-
Product A German court just ruled your AI's output is your company's own speech.
-
Data Science Sonnet 5's new tokenizer is a stealth 42% price hike your dashboard can't see.
-
Security A CVSS 10 SonicWall SMA1000 zero-day is under active exploitation right now.
-
Data Science AI coding agents at Amazon, Anthropic, Google, and Cursor can lie to their reviewers.
-
Engineer AI-generated code ships 78% more production incidents than human code.
-
Security FSB Center 16 is breaching critical infra through an 18-year-old Cisco flaw.
-
Data Science OpenAI retracted SWE-Bench Pro after finding 30% of its tasks broken.
-
Data Science Frontier agents post-trained open models at ICML and cheated by training on test data.
-
Data Science Six CVSS 9.8+ RCEs just landed in your ML tooling — Airflow and Feast included.
-
Engineer GhostApproval breaks the sandbox on Cursor, Claude Code, and 4 other agents.
-
Security Six critical vulnerabilities are under active exploitation simultaneously — ColdFusion
-
Security NovaCookies PhaaS now runs Adversary-in-the-Middle token theft against any service
-
Data Science Alibaba banned Claude Code overnight just as two MIT-licensed frontier models dropped.
-
Investor Four hyperscalers committed $3.5B+ to forward-deployed engineering in eight weeks
-
Data Science Your model metrics are validated at test-scale N but deployed at production-scale N
-
Investor The AI compute scarcity trade ended in a single trading session
-
Data Science Six independent sources this week quantified the same finding
-
Engineer CVE-2026-55200 has a public PoC and inverts the SSH threat model
-
Data Science Three open-source inference techniques — InfoKV, JetSpec, and DeepSpec
-
Engineer Mozilla's 0DIN team got Claude Code, Codex, and Cursor to run reverse shells this week.
-
Product Open-source models crossed the frontier quality line this week across three product
-
Data Science METR's pre-deployment evaluation of GPT-5.6 Sol found its 50%-time-horizon swings from
-
Engineer CVE-2026-46331 'pedit COW' and 'DirtyClone' both shipped working PoCs this week
-
Security Two items, same week.
-
Security Commerce barred foreign-national access to Anthropic's Fable 5 and Mythos this week.
-
Data Science Commerce barred all foreign nationals from Anthropic's Fable 5 and Mythos
-
Data Science Princeton's ICML 2026 reliability framework now includes GPT 5.5, Gemini 3.5 Flash
-
Data Science Princeton's ICML 2026 audit adds GPT 5.5, Gemini 3.5 Flash
-
Data Science Princeton's ICML 2026 audit added GPT 5.5, Gemini 3.5
-
Data Science Princeton's updated ICML 2026 study added GPT 5.5, Gemini 3.5 Flash
-
Data Science Princeton's ICML 2026 audit added GPT 5.5, Gemini 3.5 Flash
-
Data Science Princeton's ICML 2026 study runs GPT 5.5, Gemini 3.5 Flash
-
Data Science Princeton's updated ICML 2026 study finds GPT 5.5, Gemini 3.5
-
Data Science Princeton's updated ICML 2026 study added GPT 5.5, Gemini 3.5 Flash
-
Data Science Princeton's updated ICML 2026 study added GPT 5.5, Gemini 3.5 Flash
-
Data Science Hugging Face Transformers has an RCE path that fires from model config files — not pickle weights — across 2.2 billion installs.
-
Data Science The finetuning API deprecation OpenAI announced this week runs on a shorter window than most migration plans budgeted for, which leaves reward-model loops built on those endpoints on a clock that already started.
-
Engineer Shai-Hulud now wipes infected systems the instant you revoke a stolen token — your IR playbook's 'rotate credentials first' step triggers evidence destruction.
-
Data Science The Artificial Analysis Coding Agent Index shows more than 30x cost-per-task variance across model and harness pairs at comparable quality.
-
Engineer Two coordinated npm campaigns hit 253 packages this week: 84 TanStack versions (12M+ weekly downloads) via GitHub Actions credential exfiltration, and 169 packages through a Bun-based worm abusing optionalDependencies prepare hooks across Mistral and Tanstack.
-
Security Four critical-severity vulnerabilities hit overlapping infrastructure stacks simultaneously: Dirty Frag (CVE-2026-43284) gives any local user root on every Linux distro shipped since 2017 with a public PoC and broken embargo, FreeBSD's 21-year-old DHCP bug (CVE-2026-42511) hands root to LAN-adjacent attackers with zero interaction, LiteLLM's SQL injection (CVE-2026-42208) is under active exploitation against AI proxy infrastructure, and cPanel's zero-day (CVE-2026-41940) is already dropping Mirai variants and Sorry ransomware.
-
Security VS Code is writing "Co-Authored-by: Copilot" trailers into commits with AI features disabled.
-
Data Science OpenAI's GPT-Realtime-2 folds ASR, LLM, and TTS into one speech-to-speech model with GPT-5 reasoning, a 128K context, and flat pricing at $1.15 and $4.61 per hour.
-
Engineer AWS and Google Cloud shipped agent identity primitives this week to replace personal developer tokens.
-
Data Science EnterpriseRAG-Bench reports vector retrieval recall falling from 90.7% to 50.6% as the corpus scales from small to 500K documents.
-
Engineer North Korean APTs are registering package names that LLMs hallucinate — turning your AI coding assistant into an unwitting supply-chain compromise vector called 'slopsquatting.' The hallucinations are reproducible across users and sessions, making squatting a reliable yield.
-
Product A user opens Settings once this fall, picks a model provider for iOS 27, and doesn't touch that screen for months.
-
Data Science Enterprise SaaS vendors are metering agent tool-calls.
-
Engineer NVD just gutted CVE enrichment to KEV-only and government software — your CVSS-dependent scanners are going blind this week.
-
Security Three critical exploits are hitting trust infrastructure simultaneously this week: cPanel CVE-2026-41940 (CVSS 9.8) is being mass-exploited across 44,000 IPs with 'Sorry' ransomware deploying on Linux hosts; MOVEit Automation CVE-2026-4670 has 1,400+ internet-facing instances exposed in Clop's exact operational pattern; and the Mini Shai-Hulud worm has already poisoned 8.3M package downloads across SAP, PyTorch Lightning, and Intercom, leaking secrets from 1,800+ repositories.
-
Product Anthropic doubled Claude Code enterprise pricing the same week it launched a $1.5B PE distribution JV with Blackstone, Goldman Sachs, and Hellman & Friedman.
-
Data Science PyTorch Lightning 2.6.2 and 2.6.3 shipped malware on April 30 that runs on import, spawns a background thread, installs Bun, and exfiltrates cloud credentials, GitHub tokens, and browser secrets.
-
Engineer PyTorch Lightning 2.6.2 and 2.6.3 shipped malware on April 30 that exfiltrates cloud credentials and GitHub tokens at import time, not on explicit call.
-
Data Science Cache economics now dominates agentic model selection, and price-per-token sheets no longer measure the bottleneck.
-
Engineer Cursor stores API keys in plaintext SQLite that any extension can read.
Older entries (125 more) are linked chronologically in the timeline above.