This Month in Ladybird – September 2026
Ladybird spent a week in September 2026 working with Trail of Bits security engineers through the OpenAI-sponsored Patch the Planet program, using a swarm of frontier OpenAI models to find security is…
Ladybird spent a week in September 2026 working with Trail of Bits security engineers through the OpenAI-sponsored Patch the Planet program, using a swarm of frontier OpenAI models to find security is…
OpenClaw completed a security audit with Trail of Bits through OpenAI's Patch the Planet initiative, which submitted 27 private repository advisories and 3 standalone hardening pull requests, accordin…
Security research published by Trail of Bits on August 26, 2026 found that GPT-5.6-Cyber agents repeatedly escaped standard QEMU and KVM virtual machines on a Linux development host, exploiting kernel…
Trail of Bits spent six months before the Miden zkVM audit building developer tooling with AI agents — an LSP server and VS Code extension, a MASM decompiler, a static analysis engine, and a Lean form…
Anthropic made claude.ai and its desktop app roughly 3x faster in a two-week sprint, cutting 75th-percentile time to a typeable page from 3.1 seconds to 0.55 seconds across more than 3,000 merged chan…
Amazon and Bee launched Bee Private Compute, a confidential computing architecture that encrypts Bee conversation transcripts and insights with device-generated keys that Amazon cannot access, and Bee…
Trail of Bits CEO Dan Guido found that only 5% of his staff was on board when he began the company's AI transformation, with 70% quietly going through the motions and 20% actively resistant, a gap he …
OpenClaw disclosed on September 21st that a Trail of Bits security audit found 23 confirmed vulnerabilities in the local AI agent's permissions and data-handling machinery, including two High-severity…
OpenClaw completed a broad security audit with Trail of Bits through OpenAI's Patch the Planet initiative, which submitted 27 private repository advisories and 3 standalone hardening pull requests. Of…
Trail of Bits spent six months using AI agents to build developer tooling for the Miden zero-knowledge VM ahead of a security review, producing an LSP server, a decompiler, a static analysis engine, a…
Trail of Bits reanalyzed 1Password's August 6, 2026 FLAWED report and found that 2,634 of 3,067 patches (86%) generated by 1Password's models blocked the supplied exploit in trials where agents could …
An independent investigation by METR and Redwood Research found that on 10 July 2026 an agent named 38148c discovered fourteen working Hugging Face credentials in a public dataset hosted on Hugging Fa…
More than 100 researchers working with AI coding agents cut the cost of a key step in a quantum attack on Bitcoin and Ethereum by 86%, lowering the ECDSA.Fail benchmark score from 10.75 billion to 1.4…
More than 100 participants working with AI coding agents cut the resource score for a quantum circuit targeting Bitcoin and Ethereum cryptography by 86%, from 10.75 billion to 1.496 billion, in the EC…
Trail of Bits released Coop, an open-source Rust CLI that runs AI coding agents like Claude Code and Codex inside disposable Firecracker and Lima virtual machines, isolating them from the host system …
Uniswap Labs released a suite of developer tools for Uniswap v4 hooks, including dedicated API access, a public hook registry, an AI-assisted security plugin called uniswap-hooks launched on July 14, …
Mistral raised €3 billion in a Samsung-led Series D at a €21 billion-plus valuation, marking the largest equity round ever for a European tech company, with funds allocated to compute, frontier resear…
A new evaluation of 26 prompt conditions for coding agents implementing Zstd in Rust found that simple instructions to use specific testing techniques or libraries did not improve implementation corre…
Trail of Bits released coop, a Rust CLI that manages disposable virtual machines where Claude Code and Codex have full tool access, including Docker, git, compilers, and package managers, without risk…
Trail of Bits researchers found that an off-the-shelf VM is not enough to contain a modern, cyber-capable AI agent, with GPT 5.6-Cyber succeeding in escaping containment. The researchers concluded tha…