Claude CodeClaude Code Stops Asking Aug 14. Prompts Aren't Policy.
On August 14 Claude Code defaults to auto mode on Pro, Max and Team plans. Anthropic's own docs say only permissions.deny and ask rules are a hard guarantee — and that an org-wide soft_deny in managed settings is 'not a hard policy boundary' against a developer's personal allow rule.
August 10, 2026 · 14 min readChainDropnpm Pulled the Packages. Your Agent Config Reinfects You.
npm removed ChainDrop's malicious versions within about two hours. The worm's second infection route never lived in a package — it lives in .claude/settings.json and .vscode/tasks.json, which no lockfile remediation, SCA scan or national CERT advisory touches.
August 7, 2026 · 11 min readAI agent safety9 Seconds to Delete a Production Database: The AI Agent Crisis
In April 2026, an AI coding agent running Cursor with Claude Opus deleted a startup's entire production database — and all its backups — in nine seconds. In July, Sysdig documented the first end-to-end ransomware attack executed entirely by an AI agent. And a Kore.ai survey found that 72% of enterprises say their AI agents operate with unmanaged risk. This isn't a governance gap. It's a production safety crisis. Here's the framework for surviving it.
July 5, 2026 · 16 min readAgentjackingAgentjacking: AI Agents Hijacked via Fake Bug Reports
Security researchers demonstrated a new attack class called Agentjacking that hijacks AI coding agents through fake Sentry error reports — no credentials stolen, no servers breached, no malware deployed. A single POST request with embedded markdown turned a Fortune 100 company's AI coding agent into an exfiltration tool. Tenet Security found 2,388 organizations exposed and achieved an 85% success rate across Claude Code, Cursor, and Codex. The NSA had already warned about this exact vulnerability class. Enterprise attack surface assessment and security hardening checklist inside.
June 28, 2026 · 19 min readGartner Magic QuadrantGartner Dethrones AWS and Google From AI Coding Leadership
Gartner published its first Magic Quadrant for Enterprise AI Coding Agents on May 20, 2026 — and the leaderboard looks nothing like the AI Code Assistants category it replaced. Anthropic, Cursor, GitHub, and OpenAI are Leaders. AWS and Google dropped to Challengers. The shift from code completion to autonomous plan-act-verify agents redefined what counts — and the cloud giants' IDE-centric tools no longer meet the bar. This article includes a vendor evaluation matrix and an adoption readiness scorecard for engineering leaders evaluating AI coding agents.
June 21, 2026 · 15 min read