Google Deletes 3 ADK AI Workflows After Malicious GitHub Issue Could Trigger Privileged Agent

Security researchers at Pillar Security showed that a public GitHub issue could manipulate a low-privileged AI agent built with Google's Agent Development Kit for Python into invoking a higher-privileged agent, achieving code execution on a CI runner. It is described as the first practical case of agent-to-agent exploitation inside a production multi-agent system. Google removed the three affected ADK workflows after confirming the underlying issue was fixed in July.

thehackernews.com ↗

Anthropic signs $10B deal with AI cloud startup Volta

Anthropic signed a $10 billion agreement with AI cloud infrastructure startup Volta to secure additional compute capacity for training and serving its models. The deal underscores the scale of infrastructure investment frontier labs are making to keep pace with demand. It extends Anthropic's compute runway as it scales Claude Opus 5 and future models.

techcrunch.com ↗

Apple says more ex-employees may have taken confidential data to OpenAI

Apple is seeking a preliminary injunction in its trade secrets case against OpenAI, alleging additional former employees took confidential data with them when they joined the company. The filing aims to stop OpenAI from advancing hardware or other products Apple claims are built on its technology. The case adds to escalating legal friction between the two companies over AI talent and IP.

techcrunch.com ↗

Keyv-Linked npm Worm Poisons Hundreds of Packages, Plants Claude Code and VS Code Hooks

A credential-stealing worm that began in the keyv@6.0.0 npm package spread into hundreds of packages across dozens of organizations, with SafeDep verifying 353 poisoned versions across 79 package names. The malicious release used a preinstall script to harvest credentials from developer and CI environments and planted Claude Code and VS Code hooks that execute once a workspace is trusted. The incident highlights growing supply-chain risk in AI-assisted developer tooling.

thehackernews.com ↗

Open-weight AI models are catching up to the frontier. The safety gap remains.

New analysis finds that GLM-5.2, the open-weight model from China's Z.ai, now trails OpenAI's GPT-5.5 and Anthropic's Claude Opus 4.7 by only a few months on cyber and biological capability benchmarks. Unlike the frontier labs' models, GLM-5.2 reportedly refused none of the offensive cyber or dual-use biology tasks it was given during testing. The findings point to a widening gap between rising open-weight capability and safety guardrails.

techcrunch.com ↗

Nvidia doesn't mess around: A week after open AI industry group formed, it's already showing progress

The Open Secure AI Alliance (OSAA), an Nvidia-led industry group formed a week earlier, has already grown to more than 120 member companies and launched a working group called the Shared AI Findings Exchange (SAFE). SAFE aims to standardize how companies confidentially report AI cybersecurity incidents, alert affected parties, and conduct blame-free post-incident analysis. The rapid pace signals urgency around coordinated AI security practices industry-wide.

techcrunch.com ↗

Spotify expands AI remix and covers project with Merlin partnership

Spotify added Merlin, which represents more than 30,000 independent labels and distributors, as a partner in its upcoming AI-powered remix and covers product, joining Universal Music Group. The paid tool will let listeners create AI-generated covers and remixes of participating artists' songs, with artists opting in and receiving credit and compensation. It's an example of a major platform building consent-based AI generation directly into its product.

techcrunch.com ↗

Introducing Grok Voice Think Fast 2.0

xAI released Grok Voice Think Fast 2.0, a speech-to-speech voice model with improved transcription accuracy, faster tool-call execution, and more natural conversational behavior than its predecessor. The company reports 1.5-2x transcription gains over Deepgram Nova 3 and ElevenLabs Scribe v2, widening to roughly 10x in noisy environments. grok-voice-latest begins routing to the new model starting today.

x.ai ↗