The glaring hole in Congress’s plan for an AI kill switch
Congress introduced a bipartisan bill requiring AI companies to immediately shut down all advanced AI programs, but the legislation cannot enforce kill switches on open-weight models that run on private hardware and can be modified by users. Open-source AI models from Chinese companies like DeepSeek and Kimi K3 operate outside the bill's reach, while criminal variants with removed safety guardrails have been sold on underground forums since 2023.
Read full story →Google scraped the web to build itself. A court just said others can scrape Google.
A federal judge dismissed Google's lawsuit against SerpApi on July 20, preventing Google from stopping the scraping of its search results. SerpApi collects Google search results and resells them as structured data without permission.
Visa used Mythos to hunt for bugs in its own payment network, then open-sourced the harness that made it possible
Claude Mythos identified exploit chains in Visa's payment infrastructure spanning 200+ countries and 160 currencies by stitching together minor vulnerabilities that traditional penetration testing would have found only late. Visa open-sourced the harness governing the security hunt as a GitHub reference implementation for other security teams to inspect and adapt.
AI writes half our code now. It still fails security tests 44% of the time.
AI models generate compilable code consistently but introduce security vulnerabilities in 44 percent of outputs. Veracode's 2026 report tested over 100 models across four snapshots and found this security failure rate remained unchanged over one year.