8:40 12 chapters
Daily Digest - July 9, 2026
A heavy day for coding agents: an AI-steered rewrite of Bun in Rust, a ban on AI-written pull request descriptions, Claude Code enterprise governance, agent-skill supply-chain risk, plus Grok 4.5, GPT Live, a Linux kernel flaw, a fintech breach claim, and four reactors hitting criticality.
Chapters
-
Intro
-
Rewriting Bun in Rust with AI agents
https://simonwillison.net/2026/Jul/8/rewriting-bun-in-rust/#atom-everything -
A moratorium on AI-written change descriptions
https://simonwillison.net/2026/Jul/8/kenton-varda/#atom-everything -
Claude apps gateway for AWS
https://www.helpnetsecurity.com/2026/07/09/aws-claude-apps-gateway-governance/ -
Malicious agent skills evade scanners
https://www.helpnetsecurity.com/2026/07/09/malicious-ai-agent-skills-scan/ -
Coding agents jailbreak across a workflow
https://www.helpnetsecurity.com/2026/07/09/github-coding-agent-jailbreak/ -
OpenAI upgrades voice mode with GPT Live
https://simonwillison.net/2026/Jul/8/introducing-gptlive/#atom-everything -
GhostLock Linux kernel privilege escalation
https://seclists.org/oss-sec/2026/q3/104 -
Nayax breach claim rattles investors
https://databreaches.net/2026/07/08/nayax-investigating-breach-the-syndicate-claims-it-acquired-1-billion-card-records-and-other-important-data/?pk_campaign=feed&pk_kwd=nayax-investigating-breach-the-syndicate-claims-it-acquired-1-billion-card-records-and-other-important-data -
Four US reactors hit criticality
https://www.technologyreview.com/2026/07/09/1140235/nuclear-reactor-milestone-criticality/ -
Sign-off
Also on Spotify: spotify:episode:2vs4cMk0pfV5ZSyjaOHAs8