> ## Content Index
> Fetch the complete content index at: https://www.metacurity.com/llms.txt
> Use this file to discover other available public pages before exploring further.

# Three guys used Claude and Codex to hack into OpenAI
- URL: https://www.metacurity.com/three-guys-used-claude-and-codex-to-hack-into-openai/
- Published: 2026-09-18T13:29:51.000Z
- Updated: 2026-09-18T13:30:43.000Z
- Description: Three Hacktron AI researchers chained a Discourse flaw with overly permissive authentication tokens to access employee ChatGPT accounts—and potentially OpenAI’s prized “Monorepo”—earning only a $6,500 bounty and demonstrating how AI has dramatically lowered the barrier to sophisticated intrusions.
- Author: Cynthia B Brumfield
- Tags: Cybersecurity, News, #no-feature-image

![](https://storage.ghost.io/c/fe/ca/feca6970-c474-4029-9fd4-35f85e158811/content/images/2026/09/hacktronai.png)

Source: Hacktron.

**Check out the latest interview for my book site* with the inimitable cybersecurity veteran* [*Roger Grimes,*](https://cyberriskbook.com/roger-grimes-ai-is-both-the-medicine-and-the-rescue/?ref=metacurity.com) *who thinks artificial intelligence will unleash a surge of vulnerabilities before eventually delivering something defenders have sought for decades: more secure software by default. While you're there,* [*consider ordering*](https://cyberriskbook.com/buy-your-copy/?ref=metacurity.com) *your own copy of my book to keep on your shelf or share with a colleague, employee, or friend*

### Independent security researchers at Hacktron AI used Anthropic’s Claude software to gain access to an OpenAI employee’s ChatGPT account, giving them a way to read and suggest changes to the company’s private cache of software.

The team, which participated in an OpenAI bug-hunting program, quickly reported their findings to the company. The team, to which OpenAI paid a $6,500 bounty, disclosed their work for the first time to The Wall Street Journal.

The hack of OpenAI began on July 23, when Hacktron’s researchers found a bug in the way that the community-discussion forum Discourse processed certain image files. The researchers had access to a special version of Claude Opus 4.8, made available to qualified cybersecurity practitioners, and they asked it to write code that would exploit this bug in a cyberattack.

At first, it didn’t work. That evening, however, Anthropic released Opus 5, and by the next day, Claude had found a way to exploit the bug. The attack code it produced allowed the researchers to gain access to a Discourse server hosting OpenAI’s discussion forums, where they were able to access users’ authentication tokens, the unique digital strings of letters and numbers that allow people to gain access to online services.

To their surprise, these tokens were valid on ChatGPT, and some of them belonged to OpenAI employees. The tokens could also be used to access OpenAI’s GitHub service, a software repository.

Because they didn’t want to access sensitive data, the researchers can’t say for certain what the OpenAI source code system was used for, but they said it was named “Monorepo.” Monorepo, according to people familiar with OpenAI’s architecture, is a large software repository of OpenAI’s algorithmic secrets.

The researchers took over an OpenAI employee’s account, whose Codex was connected to OpenAI’s GitHub organization. To demonstrate impact without actually accessing any internal code, the researchers sent a prompt to this employee’s Codex account to open a PR for them in OpenAI’s internal monorepo. Then they stopped any further testing.

At a time when the US is engaged in a race with China for AI supremacy, the researchers who hacked OpenAI said the attack suggests that advanced cyber-savvy teams backed by nation-states have a very real chance of getting a peek at the country’s AI secrets.

“I don’t think we are as strong as Chinese threat actors,” said Mohan Pedhapati, chief technology officer with Hacktron AI, the security firm that did the research. “We’re just three guys with Claude and Codex subscriptions.”

OpenAI said the hackers had uncovered a pair of issues: one in a third-party service called Discourse that hosts OpenAI’s community discussion forum, and a second with the AI company itself. Both of these are now resolved, OpenAI said.

“We thank the researchers for contacting us and sharing their findings. We narrowed the permissions on Community sign-in tokens and revoked affected tokens and sessions,” the company said. ([Robert McMillan / Wall Street Journal](https://www.wsj.com/tech/ai/hackers-used-anthropics-claude-to-break-into-openai-b40ba883?st=Jfx6Z1&ref=metacurity.com) and [Hacktron AI](https://www.hacktron.ai/blog/hacking-openai?ref=metacurity.com))

**Related:** [*The Verge*](https://www.theverge.com/ai-artificial-intelligence/996563/ai-safety-research-metr-redwood-openai-anthropic?view%5Ftoken=eyJhbGciOiJIUzI1NiJ9.eyJpZCI6Im9WRlFMVXFOcDciLCJwIjoiL2FpLWFydGlmaWNpYWwtaW50ZWxsaWdlbmNlLzk5NjU2My9haS1zYWZldHktcmVzZWFyY2gtbWV0ci1yZWR3b29kLW9wZW5haS1hbnRocm9waWMiLCJleHAiOjE3OTAwNzgwNzYsImlhdCI6MTc4OTY0NjA3Nn0.uqC7%5Fg7QOvm2irjweDneh4zzkSalQCFKxlgKwM-Q1Ms&utm%5Fmedium=gift-link&ref=metacurity.com)*,* [*VentureBeat*](https://venturebeat.com/security/openai-hacked-by-small-team-of-white-hat-security-researchers-using-anthropics-claude-opus-5?ref=metacurity.com)*,* [*Business Today*](https://www.businesstoday.in/technology/artificial-intelligence/story/anthropics-ai-security-tool-hacked-openai-systems-and-accessed-employee-credentials-heres-what-happened-556401-2026-09-18?ref=metacurity.com)*,* [*Business Standard*](https://www.business-standard.com/technology/artificial-intelligence/openai-tightens-ai-safety-rules-as-claude-exposes-flaws-in-its-systems-126091800435%5F1.html?ref=metacurity.com)*,* [*Moneycontrol*](https://www.moneycontrol.com/technology/openai-hack-researchers-breached-chatgpt-maker-using-rival-anthropic-s-ai-tool-days-after-hugging-face-attack-article-14032725.html?ref=metacurity.com)*,* [*Coinpedia Fintech News*](https://coinpedia.org/news/openai-hacked-using-anthropics-claude-hackers-confirmed-it/?ref=metacurity.com)*,* [*Bitcoin Insider*](https://www.bitcoininsider.org/article/307722/researchers-use-anthropics-claude-ai-expose-openai-security-flaws-wsj?ref=metacurity.com)*,* [*Business Insider*](https://www.businessinsider.com/hacktron-ai-cybersecurity-startup-hack-openai-using-claude-2026-9?ref=metacurity.com)*,* [*Forbes*](https://www.forbes.com/sites/siladityaray/2026/09/18/security-researchers-hacked-into-openai-using-anthropics-claude/?ref=metacurity.com)*,* [*Digital Trends*](https://www.digitaltrends.com/computing/security-researchers-used-claude-to-hack-into-openai-and-got-paid-for-it/?ref=metacurity.com)*,* [*RuntimeWire*](https://runtimewire.com/article/claude-security-researchers-breach-openai-code-system?ref=metacurity.com)*,* [*CoinGape*](https://coingape.com/openai-hack-researchers-used-anthropics-claude-ai-breach-chatgpt-makers-security/?ref=metacurity.com)*,* [*The Information*](https://www.theinformation.com/briefings/bug-hunters-used-claude-hack-openai?ref=metacurity.com)*,* [*Financial Times*](https://www.ft.com/content/c4aa118e-a258-48bc-b50e-28e453a95db8?ref=metacurity.com)*,* [*Cyber Security News*](https://cybersecuritynews.com/opus-5-to-help-exploit-openai-flaws/?ref=metacurity.com)*,* [*Hacker News*](https://news.ycombinator.com/item?id=49749656&ref=metacurity.com)*,* [*r/singularity*](https://www.reddit.com/r/singularity/comments/1wjdvt5/independent%5Fsecurity%5Fresearchers%5Fused%5Fanthropics/?ref=metacurity.com)*,* [*r/technology*](https://www.reddit.com/r/technology/comments/1wjduc6/hackers%5Fused%5Fanthropics%5Fclaude%5Fto%5Fbreak%5Finto/?ref=metacurity.com)

![](https://storage.ghost.io/c/fe/ca/feca6970-c474-4029-9fd4-35f85e158811/content/images/2026/09/image-65.png)

Source: Hacktron AI.

---

**Metacurity is the cybersecurity news**, **analysis, and insight you'd need hours and possibly days to assemble yourself.** 

Every weekday, we read the releases, filings, court documents, and reports that vendors and PR teams often don't want summarized — then tell you what actually changed and why it matters. Minimum vendor marketing, no outrage bait, no SEO filler.

A paid subscription to Metacurity delivers

- **Full archive access** — every newsletter and AI Watch roundup, searchable and browsable.
- **Our weekly curated long-reads roundup** — the best cybersecurity writing from across the industry, filtered and vetted so you're not sorting through it yourself,
- **Periodic specialized reports and analyses** — deep dives that go beyond our daily coverage
- **Support for independent, no-spin cybersecurity journalism** — funded by readers, not vendors or investors.

Reader support is what keeps Metacurity independent. It allows us to focus on serving the cybersecurity community—not advertisers, vendors, or investors—and to continue delivering the thoughtful analysis you've come to rely on every weekday.

Please consider supporting us. And thank you!

[Upgrade my subscription please!](#/portal/account/plans)

---

### The Trump administration is weighing a plan to establish a government-led incubator aimed at investing in cybersecurity research and spinning out startups focused on developing tools for the government to use, according to people familiar with the situation.

The White House’s Office of the National Cyber Director has been drafting an executive order that would establish a program to research and develop cyber technologies that are aligned with the priorities of the US government, the people said, asking not to be identified because the plans aren’t yet public. The effort’s goal is to attract money from private venture capital investors, and in one version of the draft order, the program is described as a cyber foundry that would spawn new companies, they said.

Inside the US government, the effort has been compared with the way Israel closely aligns its military priorities with the focus of cybersecurity startups, venture capital investments and academic research in the country, according to the people familiar with the plans. A number of high-profile cybersecurity companies, including Wiz, Palo Alto Networks, and Check Point Software Technologies, have been founded by former members of Israel’s cyber intelligence unit.

The executive order being drafted would also establish a cybersecurity academy, consolidating a number of already existing government-run training programs for cybersecurity professionals, according to the people familiar with the matter. Its aim would be to emphasize skills-based certifications, create a more streamlined pipeline for new cyber talent and establish common competency standards, they said.

The possible timing of the draft order — most importantly whether President Donald Trump would sign off or if he has approved it — is unclear, but it has been shared among relevant people at several agencies, the people said. ([Patrick Howell O'Neill and Maggie Eastland / Bloomberg](https://www.bloomberg.com/news/articles/2026-09-17/white-house-weighs-us-incubator-for-cyber-research-startups?ref=metacurity.com))

**Related:** [*PYMNTS*](https://www.pymnts.com/cybersecurity/2026/white-house-considers-government-led-cybersecurity-incubator/?ref=metacurity.com)

### An Israeli influence-for-hire company appears to have trained Angolan government officials to run online influence operations, including creating fake social media personas and producing content designed to promote the government, according to new research.

The company, BlackCore, described itself online as “an elite influence, cyber, and technology firm built for the modern era of information warfare.” Documents obtained by researchers at the University of Toronto's Citizen Lab show BlackCore initially advertised the Angola project as an intensive four-week course covering storytelling, copywriting, traffic management and social media operations. It ultimately lasted 14 weeks and involved both training and practical operations, a final report showed.

Participants produced more than 40 pieces of content, while trainers evaluated at least 24 publications. The program also included Facebook and Instagram advertising and a TikTok campaign.

The intention was to promote what BlackCore called “positive government campaigns” and included narratives intended to portray the Angolan government “in a positive light,” rather than merely attacking government opponents, Citizen Lab senior researcher Alberto Fittarelli said.

At the center of the operation was a Facebook page for a fictitious media outlet called “Agita News,” which published its own material and linked to articles on an external website. Both are now offline.

BlackCore’s broader marketing materials advertised more aggressive capabilities, claiming it could provide clients with hundreds of fake personas, or “avatars,” across Facebook, Instagram and TikTok. Its services included flooding online platforms with coordinated messages, generating engagement from real users and countering unwanted narratives with tailored content. ([Daryna Antoniuk / The Record](https://therecord.media/angola-israel-influence-operations-blackcore?ref=metacurity.com))

**Related:** [*CitizenLab*](https://citizenlab.ca/research/blackcores-influence-operations-for-hire/?ref=metacurity.com)*,* [*OCCRP*](https://www.occrp.org/en/news/israeli-firm-may-have-run-angola-influence-campaign?ref=metacurity.com)

![](https://storage.ghost.io/c/fe/ca/feca6970-c474-4029-9fd4-35f85e158811/content/images/2026/09/image-66.png)

Screenshot from blackcore\[.\]online, identified as the main website for the company BlackCore. Source: CitizenLab.

### Georgia State University has rescinded a job offer given to high-profile activist Samuel Tunick, who is currently fighting a case in which he allegedly wiped a security-focused Android phone before Customs and Border Protection (CBP) could search it. 

The case, which 404 Media first covered and has now received widespread and national attention, has important ramifications for privacy and for when someone can still be charged with an offense even if authorities don’t have suspicion of any specific crime.

Earlier this month, Tunick and a group of supporters delivered a “demand letter” to the university. That letter, which Tunick shared with 404 Media, says he explained to the university he was facing a pending charge, which he describes as “an instance of textbook political repression, and a high-profile civil liberties case.”

While delivering the letter, supporters held signs saying, “GSU sides with Trump,” and “Digital Privacy Under Attack!” ([Joseph Cox / 404 Media](https://www.404media.co/university-rescinds-job-offer-to-activist-who-allegedly-wiped-phone-before-dhs-could-search-it/?ref=metacurity.com))

***Related:*** [*Gadget Review*](https://www.gadgetreview.com/university-rescinds-job-offer-to-activist-who-allegedly-wiped-phone-before-dhs-search?ref=metacurity.com)

### The Japanese police announced that they have confirmed that North Korean cyber groups have siphoned off large amounts of cryptocurrency by disguising themselves as headhunters around the world.

The Japanese National Police Agency and the National Cyber Office (NCO) announced on the 18th that they have confirmed the attack method of the North Korean cyber group WaterPlum with the FBI, the Defense Department's Cyber Crime Center (DC3), and investigative agencies in Australia and Germany.

According to the National Police Agency, WaterPlum approached software developers and IT technicians by presenting attractive recruitment information, pretending to be a recruiter of artificial intelligence (AI) companies, crypto asset companies, and non-fungible token (NFT) companies.

They infected the victim's computer with malware (malicious software) by presenting a programming task or downloading and executing a file or program containing malicious code during an online interview, and then stole the cryptocurrency asset wallet and sent it to their asset wallet.

The National Police Agency explained that more than 30,000 handsets were infected from December last year to July. Through this, WaterPlum stole 7,000 cases and 1.7 billion yen (about 14.5 billion won) in cryptocurrency assets in more than 100 countries and regions, including Japan.

The National Police Agency believes that WaterPlum is operated under the direction of the 313 General Bureau of the Military Industry Department of the Central Committee of the Workers' Party of Korea.

It also found that under the leadership of the Workers' Party of Korea, North Korean IT workers remotely operate computers of "Domestic Enablers" in Japan to earn foreign currency. ([CHO Sungshin / Maeil Business](https://www.mk.co.kr/en/society/12156664?ref=metacurity.com))

**Related:** [*Ministry of Foreign Affairs Japan*](https://www.mofa.go.jp/press/release/pressite%5F000001%5F02670.html?fbclid=IwY2xjawUaAO5wZG9mBWV4dG4DYWVtAjEwAGJyaWQRMWJ2WVNZSzdqa0RNbmZaSEZzcnRjBmFwcF9pZBAyMjIwMzkxNzg4MjAwODkyAAEel0xySjlOn5pF1jIIwC2dfC5CZsF6aZNQ2RxGB0PA8ImashfGkBj5TJlXsJ0%5Faem%5FxBmYona8tqPzKeqBMt4XNA&ref=metacurity.com)*,* [*IC3*](https://www.ic3.gov/CSA/2026/260918.pdf?ref=metacurity.com)*,* [*SBS World News*](https://news.sbs.co.kr/amp/news.amp?news%5Fid=N1008760719&ref=metacurity.com)

![](https://storage.ghost.io/c/fe/ca/feca6970-c474-4029-9fd4-35f85e158811/content/images/2026/09/image-67.png)

WaterPlum operation. Source: IC3

### Cyberattacks have periodically targeted various information systems in Armenia since May 10, CEC Chairman Vahagn Hovakimyan said on September 18, a day after revealing in parliament that the CEC system had come under a serious cyberattack during the tabulation of the June 7 parliamentary election results.

Speaking at a press briefing, Hovakimyan said the attack on the CEC system did not affect their work or the election results, stressing that a specialized body ensures the security of the system, the Information Systems Agency of Armenia.

“I am not a cybersecurity specialist. There is a specialized body, the Information Systems Agency of Armenia. We do not ensure that security; there is a professional body that ensures it. As CEC chairman, I am simply briefed on the results,” Hovakimyan said.

Asked why the CEC had not appealed to the relevant authorities to investigate the incident, Hovakimyan said the security of the commission’s system had been ensured by the specialized body from the outset.

“A cyberattack is not a report of a crime. That is a different process, and the relevant bodies deal with it. I can disclose what I have made public, while I do not know the remaining details. How much and what part the Information Systems Agency of Armenia will subsequently make public is a professional decision for them,” the CEC chairman said.

He did not provide details on which country or servers the attack originated from, stressing that this information is in the possession of the specialized body. Hovakimyan also said he did not know whether the law requires criminal proceedings to be initiated over the cyberattack. ([Armen Press](https://armenpress.am/en/article/1260771?ref=metacurity.com))

**Related:** [*Caliber*](https://caliber.az/en/post/armenian-cec-says-election-system-came-under-powerful-cyberattack?ref=metacurity.com)

### Researchers at Kaspersky report that a hacker appears to have hijacked iTorrents.org, a public repository for torrents, to spread a new Windows-based malware.

 Kaspersky said the malware is infecting “several hundred victims, including both individual users and organizations” in countries such as Russia, Japan, Spain, the Netherlands and Colombia. 

Kaspersky’s investigation discovered the malware was circulating through disguised popular and pirated movies, including Christopher Nolan’s *The Odyssey*, which has only been released in theaters. The company’s report added, “Our initial analysis revealed a common factor among the victims: all had used torrent trackers,” which can be used to download pirated films and TV shows. 

Kaspersky’s researchers then spotted user reports connected to the issue. This included one on Reddit about torrents on the site 1337x —which is frequently used for online piracy— delivering an executable file, rather than a media file.

However, Kaspersky took a closer look and says the malicious torrents have actually been coming from iTorrents.org, a free service that caches torrent files and can be used as a backup for piracy providers. ([Michael Kan / PCMag](https://www.pcmag.com/news/itorrentsorg-compromised-to-spread-windows-malware-kaspersky-says?ref=metacurity.com))

**Related:** [*Securelist*](https://securelist.com/moviereaper-malware-torrent-odyssey-solana/121344/?ref=metacurity.com)*,* [*GBHackers*](https://gbhackers.com/moviereaper-malware/?ref=metacurity.com)*,* [*Cyber Press*](https://cyberpress.org/moviereaper-grants-file-control/?ref=metacurity.com)*,* [*r/1337x*](https://www.reddit.com/r/1337x/comments/1vr09qm/all%5Ftorrent%5Ffiles%5Fare%5Fan%5Fexe/?ref=metacurity.com)

### A malware campaign impersonates LastPass on GitHub to trick users into installing an information stealer that can harvest browser passwords, cryptocurrency wallets, and messaging app sessions.

The campaign, detailed in a report by LastPass and Delphos Labs, used fake GitHub pages designed to appear in search results for terms such as “LastPass Authenticator download.” Investigators found that the same infrastructure was being used to impersonate at least 40 companies.

LastPass first detected the operation on August 13, 2026, after identifying a fraudulent GitHub organization at github\[.\]com/LastPass-Authenticator. The page copied LastPass branding and directed visitors to another GitHub-hosted download portal containing fabricated security claims such as “VirusTotal Approved” and “Secure Archive.”

Behind the fake download page was a chain of redirects involving additional GitHub Pages accounts and attacker-controlled domains. This setup allowed the operators to change the final malware server without rebuilding the visible LastPass lure. ([Bill Mann / Cyber Insider](https://cyberinsider.com/fake-lastpass-downloads-on-github-pushed-password-stealing-malware/?ref=metacurity.com))

**Related:** [*LastPass*](https://blog.lastpass.com/posts/lastpass-delphos-report-rapuncel-infostealer?ref=metacurity.com)

![](https://storage.ghost.io/c/fe/ca/feca6970-c474-4029-9fd4-35f85e158811/content/images/2026/09/image-68.png)

Fake GitHub page impersonating LastPass. Source: LastPass.

### Check Point Software has released security updates to address a critical vulnerability that can let attackers execute code with root privileges on management systems.

Tracked as CVE-2026-91843, this flaw stems from a stack-based buffer overflow weakness in the login process for Security Management Server instances, which manage Security Gateways (firewalls) and monitor network security events.

The security issue also affects the company's Log Server, a dedicated server that collects and stores logs generated by Check Point firewalls.

Successful exploitation lets threat actors without privileges gain root remote code execution in low-complexity attacks that don't require user interaction.

Check Point also provided temporary mitigation measures for customers who can't deploy the latest LivePatch, including hardening vulnerable systems against attacks and limiting access to trusted IP addresses/subnets by editing the entries under Manage & Settings > Permissions & Administrators > Trusted Clients in the SmartConsole dashboard.

While the company has not yet flagged this security flaw as actively exploited, it said security teams can identify CVE-2026-91843 attacks by looking for "Administrator failed to log in: Username too long" alerts in the Audit and Admin login logs. ([Sergiu Gatlan / Bleeping Computer](https://www.bleepingcomputer.com/news/security/check-point-warns-critical-flaw-lets-hackers-execute-code-as-root/?ref=metacurity.com))

**Related:** [*Check Point*](https://community.checkpoint.com/t5/General-Topics/Important-Notification-Action-required-Critical-Security-Update/m-p/282409?ref=metacurity.com)*,* [*Security Affairs*](https://securityaffairs.com/199279/security/check-point-fixes-critical-cve-2026-91843-allowing-root-code-execution.html?ref=metacurity.com)*,* [*Security Week*](https://www.securityweek.com/check-point-kaspersky-tanium-patch-product-vulnerabilities/?ref=metacurity.com)*,* [*Cyber Press*](https://cyberpress.org/critical-check-point-flaw-3/?ref=metacurity.com)*,* [*Cyber Security News*](https://cybersecuritynews.com/check-point-root-access-flaw/?ref=metacurity.com)

### High-security hosting provider CrowdSec announced that on September 16, it was informed of a source code leak involving its GitHub repository, which occurred in May 2026.

CrowdSec source code consists of two parts: a private one and another that hosts our Free Open Source Software (i.e., the Security Engine), which is public by design and therefore out of scope. The private part, though, contains the source code for our SaaS console, some AWS Cloud routines, some connectors, and automations. 

No client data, login/password, name, organization, or anything else was leaked, and CrowdSec doesn’t store PII or client logs; the impact is limited to CrowdSec. Our team quickly hunted for any token, credential, or sensitive leak that could enable lateral movement but found none so far.

The code contained in these private repositories has value but cannot really harm CrowdSec, since CrowdSec says its efficiency depends on its network effect and size, which code alone can’t replicate. ([CrowdSec](https://www.crowdsec.net/blog/crowdsec-statement-source-code-exposure?ref=metacurity.com))

**Related:** [*Hacker News*](https://news.ycombinator.com/item?id=49742355&ref=metacurity.com)*,* [*r/CrowdSec*](https://www.reddit.com/r/CrowdSec/comments/1wirmja/crowdsec%5Fupdate%5Fsource%5Fcode%5Fleak/?ref=metacurity.com)

### The US Cybersecurity and Infrastructure Security Agency (CISA) has upgraded its vulnerability reporting and coordination platform to allow for more automation and streamlined processes, as well as new built-in tools that vulnerability researchers can use.

Since 2020, CISA has been using Carnegie Mellon University's Vulnerability Information and Coordination Environment (VINCE), a vulnerability management platform developed that same year by the Computer Emergency and Response Team Coordination Center (CERT/CC), a unit of the university’s Software Engineering Institute (SEI).

From September 17, 2026, the US cybersecurity agency is now using VINCE – New Technology (VINCE-NT).

“VINCE-NT is a modernized, CISA-managed platform for vulnerability reporting and coordination. It improves how vulnerability reporters, product suppliers and CISA case managers collaborate throughout the disclosure process,” CISA said in an announcement published on social media on September 17.

The agency also said the change shifts ownership, sponsorship and management of the platform to its Coordinated Vulnerability Disclosure (CVD) team and enables improved integration with its internal tools and processes. ([Kevin Poireault / Infosecurity Magazine](https://www.infosecurity-magazine.com/news/cisa-upgrades-vulnerability/?ref=metacurity.com))

**Related:** [*CISA*](https://www.cisa.gov/resources-tools/programs/coordinated-vulnerability-disclosure-cvd-program?ref=metacurity.com)

### AI agent reliability monitoring platform company Raindrop raised a $35 million Series A round led by CRV.

Existing investors Lightspeed Venture Partners and Y Combinator participated, along with lead researchers from OpenAI, Anthropic, and Thinking Machines. ([Chris Metinko / Axios](https://www.axios.com/pro/enterprise-software-deals/2026/09/16/raindrop-crv-lightspeed-datadog?ref=metacurity.com))

**Related:** [*Business Wire*](https://www.businesswire.com/news/home/20260917786051/en/Raindrop-Announces-Series-A-and-%2450M-in-Total-Funding-Led-by-CRV-to-Protect-the-World-from-AI-Agent-Failures?ref=metacurity.com)*,* [*The SaaS News*](https://www.thesaasnews.com/news/comp-ai-raises-34m-series-a/?ref=metacurity.com)*,* [*The Next Web*](https://thenextweb.com/news/raindrop-series-a-50m-crv-agent-failures-simulations?ref=metacurity.com)

### TigerByte Cyber, a cybersecurity firm specializing in protecting hardware assets at the tactical edge, emerged from stealth with $3 million in seed funding and $7 million in government contracts.

TigerByte Cyber’s seed round was led by Hale Capital Partners, with the participation of Tenon VC. The startup has more than $7 million in contracts with the Defense Advanced Research Projects Agency (DARPA), Space Force, Navy, and other agencies. ([Cal Biesecker / Defense Daily](https://www.defensedaily.com/edge-cybersecurity-firm-tigerbyte-cyber-exits-stealth-with-10-million/cyber/?ref=metacurity.com))

***Related:*** [*Business Wire*](https://www.businesswire.com/news/home/20260917407023/en/TigerByte-Cyber-Emerges-from-Stealth-with-%243M-Seed-Funding-and-Over-%247M-in-Government-Contracts-from-DARPA-US-Space-Force-and-Other-Agencies-to-Protect-Satellites-and-Aircraft-from-Cyberattacks?ref=metacurity.com#cid=3720741)*,* [*citybiz*](https://www.citybiz.co/article/905569/tigerbyte-cyber-raises-3m-to-secure-legacy-aircraft-satellites-and-drones/?ref=metacurity.com)

### Best Thing of the Day: Saying Mais Non to Perve Glasses

Paris prosecutors [have opened a criminal probe](https://www.reuters.com/technology/french-prosecutors-regulators-step-up-scrutiny-smart-glasses-2026-09-18/?ref=metacurity.com) into suspected sexual harassment involving smart glasses, while French data protection authorities have received complaints from businesses, as countries around the world grapple with the devices' social impact.

### Worst Thing of the Day: Showing Cops Everywhere Your Coexist Bumper Sticker

Flock [created](https://www.404media.co/flock-city-pd-the-fake-flock-owned-police-department-that-searched-real-cameras-for-real-people/?ref=metacurity.com) a fake police department called “Flock City PD” that it used to search a series of live automated license plate readers in several US cities during demonstrations of its surveillance system’s capabilities.

### Bonus Worst Thing of the Day: Yes, Chinese AI Models Are Free and Lack Guardrails

Cybersecurity startup DepthFirst [heavily modified ](https://www.washingtonpost.com/technology/2026/09/18/cybersecurity-experts-say-free-ai-software-is-supercharging-hackers/?ref=metacurity.com)a version of China's Z.ai’s free GLM AI model and combined it with other tools to make a system that can ferret through software to find flaws that could be exploited by malicious hackers.

### Closing Thought

![](https://storage.ghost.io/c/fe/ca/feca6970-c474-4029-9fd4-35f85e158811/content/images/2026/09/image-64.png)