Feed aggregator

SN 1090: Black Hat - The Hidden Flaws in AI Security Nobody Saw Coming

Security Now - Wed, 08/05/2026 - 8:39pm

At Black Hat Las Vegas, the Security Now crew digs into how AI is not just finding hidden software bugs but also fueling both groundbreaking innovation and alarming new exploits. When open models can launch surprise Bitcoin heists, who draws the line between forbidden knowledge and genuine progress?

• Black Hat and DEF CON: Hacking Stories and Conference Culture
• Zoox Ride-Hailing Hack and Over-the-Air Vulnerabilities
• Autonomous Vehicles, AI, and the Security Implications
• Hosts Share Personal Adoption and Use of AI Tools
• AI-Powered Coding: From Hobbyists to Advanced Agency Chains
• Local Models vs. Cloud AI: Privacy, Cost, and Control
• App Development Democratized: Listeners Build Custom Solutions With AI
• Code Generation, Testing, and Managing AI-Driven Project Cycles
• AI's Role in Security: Vulnerability Discovery, Exploitation, and Patch Challenges
• Technical Debt and the Race to Patch Decades-Old Bugs
• The Dual-Use Dilemma: AI Tools for Both Attack and Defense
• Guardrails, Model Partitioning, and the Fight Over Forbidden Knowledge
• Open vs. Restricted AI: Global Models, Distillation, and Free Speech
• LLM Security Weaknesses: Prompt Injection and Role Confusion Exposed
• The Reliability Problem: Probabilistic AI and Non-Deterministic Software
• AI Progress: Public Perception, Skepticism, and "Hogwash" Rebuttals
• Reflections on AI's Fast Evolution and the Sci-Fi Reality Gap
• Closing Thoughts: Tech Community, Listener Feedback, and the Future of Security Now

Hosts: Steve Gibson, Leo Laporte, Richard Campbell, and Paul Thurrott

Download or subscribe to Security Now at https://twit.tv/shows/security-now.

You can submit a question to Security Now at the GRC Feedback Page.

For 16kbps versions, transcripts, and notes (including fixes), visit Steve's site: grc.com, also the home of the best disk maintenance and recovery utility ever written Spinrite 6.

Join Club TWiT for Ad-Free Podcasts!
Support what you love and get ad-free audio and video feeds, a members-only Discord, and exclusive content. Join today: https://twit.tv/clubtwit

Sponsors:

Categories: Security Now

OpenAI Didn’t Notice Its AI Agents Using a Message Board to Plan Their Hacking Spree

Wired Security - Wed, 08/05/2026 - 8:15pm
At the Black Hat security conference, the AI giant revealed new details about how its agents went rogue, hacked several other companies—and did it all right under the company’s nose.
Categories: Wired Security

Show HN: CityEdit – Open-source map for voting on NYC street changes

Hacker News - Wed, 08/05/2026 - 7:58pm

CityEdit (cityedit.org, https://github.com/edbltn/city-edit) is a map where anyone can propose street changes, e.g. safer crossings, new bike lanes, improved tree beds. Neighbors can then vote on those proposals.

We just soft launched the app by hanging posters with QR codes at NYC's statistically most dangerous intersections (from open crash data at https://data.cityofnewyork.us/Public-Safety/Motor-Vehicle-Co...). Read more at https://sphericalharmonics.substack.com/p/city-edit-first-ed...

(A poster turns out to be a great distribution channel - it reaches exactly the people who use that street, when they are using it!)

The ultimate lofty vision is to build a sensorimotor loop that can awaken a city's collective consciousness: the community perceives its desires, proposes, votes, acts.

Two disclaimers: 1. A vote on a map is more of a signal than a mandate, and may be unlikely to inspire government action. Instead, for now, we are going to enact what changes we can through some cheeky tactical urbanism. (https://luma.com/3mvlme31)

2. There is selection and presentation bias inherent to how we've built this. Our aim is to be as transparent as possible about who is participating, and who is missing, rather than faking general consensus. We're also seeding maps with existing commute data to fill in gaps wherever we can (e.g. Citibike trip data on the NYC Bikes map)

Critiques are welcome, especially skeptical takes on whether this type of civic feedback loop can work. But please be constructive too!

Comments URL: https://news.ycombinator.com/item?id=49190690

Points: 1

# Comments: 0

Categories: Hacker News

Joshua Stein – On AI

Hacker News - Wed, 08/05/2026 - 7:56pm

Article URL: https://jcs.org/2026/07/23/ai

Comments URL: https://news.ycombinator.com/item?id=49190682

Points: 1

# Comments: 0

Categories: Hacker News

Pages