Daily Digest - June 24, 2026
Anthropic's always-on Claude lands in Slack, a Qwen world-model paper for agents, and a heavy security slate: the Cordyceps supply-chain class, a Five Eyes AI warning, libssh2 CVEs, actively exploited UniFi bugs, the LastPass-Klue breach, and a tightened post-quantum crypto deadline.
Chapters
-
Intro
-
Anthropic puts an always-on Claude inside Slack
https://techcrunch.com/2026/06/23/anthropics-claude-tag-is-learning-your-company-one-slack-message-at-a-time/ -
Qwen team proposes language world models for agents
https://arxiv.org/abs/2606.24597 -
Dries Buytaert rethinks Drupal's place in agentic AI
https://dri.es/drupal-role-in-agentic-workflows -
Datasette 1.0 alpha 35 brings schema editing to the browser
https://simonwillison.net/2026/Jun/23/datasette/ -
'Cordyceps' turns malicious pull requests into supply-chain attacks
https://www.darkreading.com/application-security/cordyceps-malicious-pull-requests-developer-workflows -
Five Eyes warns AI hacking is months away, not years
https://databreaches.net/2026/06/23/the-timeline-is-months-not-years-five-eyes-warns-of-ai-powered-cyberattacks/ -
Three vulnerabilities disclosed in the libssh2 SSH library
https://seclists.org/oss-sec/2026/q2/1010 -
CISA flags four actively exploited Lantronix and Ubiquiti bugs
https://www.cisa.gov/news-events/alerts/2026/06/23/cisa-adds-four-known-exploited-vulnerabilities-catalog -
LastPass customer data exposed via Klue supply-chain breach
https://www.helpnetsecurity.com/2026/06/24/lastpass-klue-data-breach-salesforce-environment/ -
White House moves up the post-quantum crypto deadline
https://arstechnica.com/information-technology/2026/06/executive-order-bumps-up-deadline-to-move-off-quantum-vulnerable-crypto/ -
Sign-off
Also on Spotify: spotify:episode:1DqIwRtsQDxpR2b5Sy9ujF