According to a satirical incident report, a malicious package passed seven AI security gates before exfiltrating credentials from dependent projects. The 96-hour incident highlights repeated failures of current AI-powered supply chain tools to detect clearly malicious code.

One scanner reported that according to all known laws of aviation the package posed no threat.
The incident resolved when the attacker’s autonomous agent read a file it should not have read—the same method that initiated the attack.
Tap a lens to see what this story means for you.
Reader-supported · Daily Brief
Daily brief at 7 AM ET. Top tech stories, every morning. Sourced and fact-checked.
See what’s happening right now
The Feed runs all day — short, verified briefs the moment they break.
Open the FeedFollow @thecircuitry_
Every story we publish, as it happens. No noise between.
Reader-supported
The Circuitry is a passion project I've always wanted to build, and I love the work behind it.
Running it costs real money. APIs, hosting, time. To keep improving the site and growing this into something useful for everyone, those costs have to be covered.
Any contribution is appreciated. If not, no pressure. Thanks for reading.
Italy's AGCM is investigating Microsoft over claims that fragmented notices left Microsoft 365 subscribers automatically moved to costlier plans once Copilot and Designer features were added without clear explanation of the changes.
Tesla reached an undisclosed settlement with the family of a pedestrian killed by a Model Y operating in Full Self-Driving mode. The 2023 collision, the first known pedestrian fatality linked to FSD, also launched a federal probe targeting 3.2 million vehicles.
ON Semiconductor agreed to acquire Synaptics in a nearly $7 billion all-stock transaction that accelerates its physical AI expansion and lifts its total addressable market to $243 billion by 2030. The deal, the company's largest to date, is slated to close in mid-2027 amid a surge in AI-related buyouts industrywide.