daily

2026-07-08
1

Better wheelchair access at Clone Beach

Wexford Local · original → · 9/10 · Local Wexford: beach access and heritage festival in Castletown
[image →]The Ahare River and Biodiversity Group met at the entrance to Clone Beach, Castletown, where it launched the National Heritage Week ” Castletown River and Nature Festival ” for 2026. By Dan…
[image →]
The Ahare River and Biodiversity Group met at the entrance to Clone Beach, Castletown, where it launched the National Heritage Week ” Castletown River and Nature Festival ” for 2026.

By Dan Walsh

The Ahare River and Biodiversity Group met at the entrance to Clone Beach, Castletown, where it launched the National Heritage Week ” Castletown River and Nature Festival ” for 2026.

It happens from Friday, August 21st to Sunday, August 23rd, so that is the weekend for your diary.

There will be an exciting line up for year’s events with a Bat Walk and bat box making workshop on Friday and is our ” Wild Child ” event.

On Sunday will celebrate ” Water Heritage ” with a Family Funday on Clone beach. There will be some nature seashore exploring and lots of fun and games for all the family.

Cathy Lee, Chairperson of The Ahare River and Biodiversity Group told Wexford Local.com; “At last year’s Water Heritage event, it was very disappointing when we had to tell people that the festival was not wheelchair accessible or suitable for those with mobility issues.

“While small children were able to be lifted on to the beach an elderly wheelchair bound gentleman got stuck in the sand on his approach to the beach.

“Recognising the man’s distress, four people from the event came forward and lifted the gentleman on and off the beach, which enabled him to enjoy the festival atmosphere,” stated Ms. Lee.

To address beach access going forward, a meeting has taken place involving Wexford County Council and The Ahare River and Biodiversity Group on Clone Beach in the presence of Enda Brennan and Conor Kinsella from the Coastal Team along with Caroline Holden ability officer from Wexford County Council.

Cathy Lee and Natalie Lytovka represented the river group, and they raised the access concerns of the community and together explored possible solutions.

Cathy Lee responds; “We are delighted that with the support of Wexford County Council the pedestrian bridge over the estuary will be reinstalled with ramp access aligning with the existing path to the beach. This will involve a mixture of ground works and beach mats.

“This not only enables wheelchair users to access the beach but also people with mobility issues and families with young children and buggies. A beach wheelchair will also be made available for the festival weekend courtesy of Wexford County Council.”

Local woman Niamh Walsh who was present at the launch and who is also wheelchair bound said she was so excited to be able to attend this year’s festival as she had not been on Clone since she was a child.

The Ahare River and Biodiversity Group extends a “big Thank You” to the team at Wexford County Council for their great support, not forgetting Matthew McGrath who campaigned tirelessly to gain access to his local beach at Ballymoney.

2

Taoiseach says Sinn Féin’s unity Bill is ‘not credible’

Breaking News Ireland · original → · 8/10 · Irish politics: Sinn Féin unity bill debate affects citizens broadly
Taoiseach Micheál Martin has labelled a unity Bill tabled by Sinn Féin as “not credible” and said it took an approach that had failed numerous times. Sinn Féin leader Mary Lou McDonald has tabled a…

Taoiseach Micheál Martin has labelled a unity Bill tabled by Sinn Féin as “not credible” and said it took an approach that had failed numerous times. Sinn Féin leader Mary Lou McDonald has tabled a Bill that would require a Green Paper on Irish unity to be published within 18 months, as well as provide for the convening of a Citizens’ Assembly. The Government is opposing the Planning for Constitutional Change Bill, which Sinn Féin described as a “political test” for the coalition parties. Tánaiste and Fine Gael leader Simon Harris said he did not doubt the “bona fides” of Ms McDonald and her party on tabling the Bill, but said constitutional change “cannot be driven by deadlines or arbitrary timelines”. McDonald said now was the “time to write the next chapter, the chapter of reunification”, as former Sinn Féin leader Gerry Adams watched from the Dáil’s public gallery. “Reunification is of course about removing the border, but not only that, it is about so much more,” she said at the second stage of the Bill. “It is about seizing the moment and the opportunity to create a new deal for the people of Ireland, for every person on this island, a new deal for Protestants and unionists, which protects their British identity and replaces the bad treatment and abandonment from Westminster with real ownership, inclusion and respect as a full citizen, to have a real stake in the future where that British identity is secure.” Martin said the Bill would “do little to achieve its objective” and takes an approach “which has failed repeatedly over the past 100 years”. “Instead of waving flags in people’s faces and talking about the inevitable march of history, we need people to be open about the scale of the obstacles to overcome and the spirit of a peace agreement, which is the bedrock upon which we can build our future,” he told TDs. He said sectarian murder and destruction had “deepened” division and those who had sought unification by peaceful means had “failed to create a vision for the future”. He said the proposal for a policy statement on Irish unity centred around “the assumptions of ‘one more push’ or ‘demography is destiny’, which have always failed”. He said of the Bill: “All analysis and proposals about the economy, education systems, health services, public service pay, the replacement of sterling, legal systems, policing, legacy, culture, identity, and constitutional structures must be completed in a year and a half. This is obviously not credible.” He added: “Please let’s move beyond the new slogan that all we need is government advocacy and a Citizens’ Assembly, and then we’ll be ready. “A policy of ‘one more push’ and hoping for an unpopular government in London will achieve nothing. “If we can share a common understanding of the facts then we can discuss our future on an informed basis, rather than simply singing the old songs and expecting something new to happen.” Sinn Féin’s chief whip told Martin that he was “no Albert Reynolds and no Bertie Ahern”, and asked him to reflect on the words of Charles Stewart Parnell that “no man has a right to fix the boundary of the march of a nation”. The Government confirmed it would oppose the Bill after a Fianna Fáil TD suggested many of his colleagues would back the proposals if there had been a free vote on the matter. Ahead of the vote, McDonald called for support for the Bill and highlighted that Harris said his party would bring forward a “blueprint” for Irish unification by November, and said it would be “kind of astonishing” if Fianna Fáil was to vote against legislation “whose sole purpose is to prepare for referendums on Irish unity”. At a briefing earlier, Fianna Fáil TD Pat “the Cope” Gallagher said he had not been “told officially what we’re doing”, but would support the Bill if he was to be given a free vote. He added: “I would be anxious that we could move forward, that this vote would be carried. I’m not so sure what might happen. “I haven’t been told officially what we’re doing, but I’ve been loyal since I came in here in 1981 and I’m hardly going to change now – but I will try and use my influence to ensure that we could move on with the Green Paper within 18 months or 24 months, or whatever it may be.” He said “a lot” of his colleagues would feel the same way, but added: “I’m waiting to hear the statement by the leader of my party, what the views are there, and we’ll wait and see what happens.” Sinn Féin deputy leader and Northern Ireland First Minister Michelle O’Neill said a vote against the legislation would send a “really negative message” to those in the region and “really set back the project of our nationhood”. Its leadership is due to speak to Andy Burnham, who is widely expected to become the next UK prime minister in the coming weeks. Asked if she expected Burnham’s premiership to materially differ from Keir Starmer’s, Ms O’Neill said: “The short answer would be no, I don’t expect anything to be any different. “This will be my seventh prime minister that I’ve been dealing with in 10 years. It underlines the chaos of Westminster. “It underlines why more than ever we need this legislation passed and why we need to plan for the future, because I’m very certain that citizens in the North will be much better served in a new constitutional arrangement, a united Ireland, a better future for all of us.”

3

Chat Control 1.0 and 2.0 Explained

Hacker News · original → · 8/10 · EU policy: Chat Control regulations affecting citizen privacy
Chat Control 1.0 and 2.0 Explained There is not one proposed “Chat Control” law — there are two, and they are moving through the EU institutions in parallel. This is why the news can seem…

Chat Control 1.0 and 2.0 Explained There is not one proposed “Chat Control” law — there are two, and they are moving through the EU institutions in parallel. This is why the news can seem contradictory: one Chat Control was "stopped" in March 2026, yet another is still being negotiated, and the first is now being revived. This page untangles the two. Chat Control 1.0 Regulation (EU) 2021/1232 — the "temporary" law Expired 4 April 2026 — revival in progress- What is it? - A temporary derogation from the ePrivacy Directive that allowed (but did not require) providers to scan private messages of unsuspected users for potential child sexual abuse material. - Is scanning mandatory? - No — voluntary. In practice used mainly by unencrypted US services such as Gmail, Facebook/Instagram Messenger, Skype, Snapchat, iCloud Mail, and Xbox. - Does it touch encrypted messages? - No. End-to-end encrypted communications were never scanned but providers could deploy client-side scanning under this law. - Status today - Legally expired since 4 April 2026 after Parliament refused to extend it. The Council is now attempting an unprecedented fast-track revival via a formally "new" law with identical content. Chat Control 2.0 CSA Regulation (CSAR) — the permanent proposal In trilogue negotiations — no agreement- What is it? - A proposed permanent regulation that would make detection and reporting of child sexual abuse material a legal requirement for digital platforms. - Is scanning mandatory? - That is the core of the fight. The original proposal mandated scanning of private communications; the Council’s 2025 position shifted to “voluntary” suspicionless detection plus broad risk-mitigation duties that incentivise scanning anyway. The Parliament’s position is that scanning of private communications must be limited to individual users or a specific group of users suspected of links to child sexual abuse, and that a court order is required; implementation of the order would then be mandatory. - Does it touch encrypted messages? - Potentially yes — inclusion of end-to-end encrypted messengers remains contentious between Parliament and the Council. - Status today - Five trilogue rounds have failed to produce a deal. The supposedly final trilogue on 29 June 2026 collapsed over suspicionless scanning; negotiations continue under the Irish presidency. Timeline: Chat Control 1.0 The temporary, voluntary scanning regime — adopted in 2021, rejected by Parliament in March 2026, expired in April 2026, and now the subject of an unprecedented revival attempt. Temporary derogation adopted Regulation (EU) 2021/1232 creates a temporary exception to the ePrivacy Directive, giving providers a legal basis to voluntarily scan private messages for child sexual abuse material. Originally set to expire 3 August 2024. First extension With the permanent regulation (Chat Control 2.0) nowhere near agreement, the derogation is extended until 3 April 2026. Commission proposes second extension The Commission proposes extending the derogation by another two years, to April 2028. LIBE committee rejects the extension In a surprise vote, the Parliament's civil liberties committee rejects the draft extension by 38 votes to 28. Parliament adopts a protective position The plenary votes 458–103 for a compromise: extend to 2027, but only with targeted and proportionate detection of known content, no end-to-end encrypted communications, and limiting scanning to suspected users or groups identified by the competent judicial authority. Trilogue on the extension collapses The Council rejects Parliament's conditions and shows no flexibility in negotiations; talks on the extension break down. Parliament rejects the extension outright 311 MEPs vote against extending the derogation (228 in favour, 92 abstentions). The critical Amendment 34, rejecting automated assessment of unknown photos and texts, passes by a single vote (307–306). Chat Control 1.0 expires The legal ground for voluntary, indiscriminate scanning ends. Google, Meta, Microsoft, and Snap state they will continue scanning private messages regardless. Council moves to resurrect the expired law EU ambassadors agree to push a temporary revival — unprecedented, as Parliament's rejection was considered final. Because an expired regulation cannot be extended, the Council proposes a formally new law with identical content via an expedited procedure. Council adopts its position The Council adopts its position on the "new" regulation via written procedure. Urgency procedure approved Parliament voted 331–303 (11 abstentions) to fast-track the expired derogation, skipping the responsible Committee. A binding vote follows on Thursday, 9 July, where an absolute majority of 361 MEPs is needed to stop it. Timeline: Chat Control 2.0 The permanent CSA Regulation — proposed in 2022, deadlocked for years, and still unagreed after five rounds of trilogue negotiations. Encryption remains the red line. Commission proposes the CSA Regulation Home Affairs Commissioner Ylva Johansson unveils a proposal for a permanent regulation making detection and reporting of child sexual abuse material a legal requirement for platforms — including a requirement to bypass end-to-end encryption. Parliament adopts a protective mandate No scanning of end-to-end encrypted services, detection limited to visual material, judicial warrants targeted at specific suspects, and no mandatory age verification. Germany breaks the Council deadlock After years of Council deadlock, Germany announces it will vote against mandatory suspicionless scanning. The Danish presidency drops detection orders and shifts to risk assessment and mitigation obligations for providers, while proposing to make the voluntary suspicionless scanning (interim regulation) permanent. Council endorses its position The Council adopts the softened Danish compromise, opening trilogue negotiations. Critics note the text still allows “voluntary” suspicionless detection and imposes broad risk-mitigation duties, including mandatory age verification, that could reshape private messaging in practice. Four trilogue rounds Negotiations between Parliament, Council, and Commission take place on 9 December 2025, 26 February, 16 April, and 11 May 2026 — without agreement on the core issues. Council's own lawyers raise the alarm The Council Legal Service states that the "voluntary" scanning proposal still constitutes generalised scanning of communications — incompatible with Article 7 of the EU Charter absent reasonable suspicion and prior judicial authorisation. "Final" trilogue fails The fifth trilogue, billed as the last with adoption targeted for July, produces no deal. Negotiators cannot agree on making suspicionless scanning permanent, as requested by Council. Progress is reported on excluding mandatory age verification, but agreement is postponed and talks continue under the incoming Irish presidency. Timeline Temporary derogation adopted Regulation (EU) 2021/1232 creates a temporary exception to the ePrivacy Directive, giving providers a legal basis to voluntarily scan private messages for child sexual abuse material. Originally set to expire 3 August 2024. Commission proposes the CSA Regulation Home Affairs Commissioner Ylva Johansson unveils a proposal for a permanent regulation making detection and reporting of child sexual abuse material a legal requirement for platforms — including a requirement to bypass end-to-end encryption. Parliament adopts a protective mandate No scanning of end-to-end encrypted services, detection limited to visual material, judicial warrants targeted at specific suspects, and no mandatory age verification. First extension With the permanent regulation (Chat Control 2.0) nowhere near agreement, the derogation is extended until 3 April 2026. Germany breaks the Council deadlock After years of Council deadlock, Germany announces it will vote against mandatory suspicionless scanning. The Danish presidency drops detection orders and shifts to risk assessment and mitigation obligations for providers, while proposing to make the voluntary suspicionless scanning (interim regulation) permanent. Council endorses its position The Council adopts the softened Danish compromise, opening trilogue negotiations. Critics note the text still allows “voluntary” suspicionless detection and imposes broad risk-mitigation duties, including mandatory age verification, that could reshape private messaging in practice. Commission proposes second extension The Commission proposes extending the derogation by another two years, to April 2028. Four trilogue rounds Negotiations between Parliament, Council, and Commission take place on 9 December 2025, 26 February, 16 April, and 11 May 2026 — without agreement on the core issues. LIBE committee rejects the extension In a surprise vote, the Parliament’s civil liberties committee rejects the draft extension by 38 votes to 28. Parliament adopts a protective position The plenary votes 458–103 for a compromise: extend to 2027, but only with targeted and proportionate detection of known content, no end-to-end encrypted communications, and limiting scanning to suspected users or groups identified by the competent judicial authority. Trilogue on the extension collapses The Council rejects Parliament’s conditions and shows no flexibility in negotiations; talks on the extension break down. Parliament rejects the extension outright 311 MEPs vote against extending the derogation (228 in favour, 92 abstentions). The critical Amendment 34, rejecting automated assessment of unknown photos and texts, passes by a single vote (307–306). Chat Control 1.0 expires The legal ground for voluntary, indiscriminate scanning ends. Google, Meta, Microsoft, and Snap state they will continue scanning private messages regardless. Council’s own lawyers raise the alarm The Council Legal Service states that the “voluntary” scanning proposal still constitutes generalised scanning of communications — incompatible with Article 7 of the EU Charter absent reasonable suspicion and prior judicial authorisation. Council moves to resurrect the expired law EU ambassadors agree to push a temporary revival — unprecedented, as Parliament’s rejection was considered final. Because an expired regulation cannot be extended, the Council proposes a formally new law with identical content via an expedited procedure. “Final” trilogue fails The fifth trilogue, billed as the last with adoption targeted for July, produces no deal. Negotiators cannot agree on making suspicionless scanning permanent, as requested by Council. Progress is reported on excluding mandatory age verification, but agreement is postponed and talks continue under the incoming Irish presidency. Council adopts its position The Council adopts its position on the “new” regulation via written procedure. Urgency procedure approved Parliament voted 331–303 (11 abstentions) to fast-track the expired derogation, skipping the responsible Committee. A binding vote follows on Thursday, 9 July, where an absolute majority of 361 MEPs is needed to stop it. Where We Are Now As of July 2026 Chat Control 1.0 is legally expired, but the Council is fast-tracking an unprecedented resurrection that Parliament may vote on under urgency this very week — where an absolute majority of all MEPs would be needed to stop or amend it. If this threshold is not reached, the law is automatically deemed adopted. Thus, the expired “Chat Control 1.0” regulation would be reinstated even without the consent of the European Parliament. Chat Control 2.0 remains unagreed after five trilogue rounds. Scanning of unsuspected citizens and of end-to-end encrypted messages is the unresolved red line, and negotiations continue under the Irish Council presidency. In short: the "temporary" law is being revived through the back door while the permanent one is still on the table. Both fights are happening at the same time — and both need your voice.

4

Can Social Democrats take advantage of Government and Sinn Féin struggles?

Breaking News Ireland · original → · 7/10 · Irish politics: Social Democrats rising, general election implications
Here, we take a look at the issues likely to dominate political discourse in the week to come. Social Democrats' popularity rising The Social Democrats' popularity is on the rise after a recent…

Here, we take a look at the issues likely to dominate political discourse in the week to come. Social Democrats' popularity rising The Social Democrats' popularity is on the rise after a recent Dublin Central byelection victory and opinion poll success, and a senior TD in the party has said they plan to run a candidate in each constituency at the next general election. Daniel Ennis secured a seat in a packed field in Dublin Central, bringing the party's number of sitting TDs to 12. Meanwhile a recent Red C/Business Post poll put the party on 12 per cent, just two points behind Fianna Fáil. Holly Cairns also regularly comes out on top as the most popular party leader. In an interview with BreakingNews.ie, Jennifer Whitmore said: "What we hear from lots of people is they would love to have the chance to vote Social Democrats, but we may not have had a candidate in their area. "We're going to run a candidate in each of the constituencies because we do want to give people that choice. "Yes. Holly has been very clear on this: we want a candidate in each constituency. "We're hoping the next general election will be a good one for us. At each milestone we're hitting we are doing very well, and we would hope that will continue into the next local and general elections." Whitmore, who was first elected in 2020 before retaining her seat in the 2024 general election, said she is confident the party can take votes from people who have become dissatisfied with Fianna Fáil and Fine Gael, as well as opposition rivals like Sinn Féin. "I think we will get votes from across the board. What we're offering is something different. I think we're offering positive politics. We really saw that play out in the Dublin Central byelection. Our profile, and how we attract people, might be different from what they're used to; we're looking for positive solutions and to be a positive force in politics. "We have our principles and we stick with them, and I think that's really important because people know what they get with us. That is a vital part of our identity." Occupied Territories Bill A Bill banning the trade of goods from the occupied Palestinian territories has been passed by the Dáil. The Bill was passed on Tuesday despite the Opposition arguing that it did not go far enough to combat illegal Israeli settlements on Palestinian land by omitting services. Several amendments to the Government’s Bill, including an amendment to include services in the ban, were voted down. The Government’s Bill prohibits the import of goods from “certain Israeli settlements”, in line with its international obligations as set out in the advisory opinion from the International Court of Justice from July 2024. It was tabled to replace Independent Senator Frances Black’s 2018 Occupied Territories Bill, which banned all trade from illegal Israeli settlements in the Occupied Palestinian Territories. The Israeli Settlements in the Occupied Palestinian Territory (Prohibition of Importation of Goods) Bill was tabled to replace Black’s Bill, which has been a popular demand from pro-Palestine protesters in Ireland. But concern has been raised about the Government’s version of the Bill, which leaves out a ban on the trade of services. The Government has said that a ban on the trade of services is more complex than goods and the Bill needs to be legally watertight before it is enacted. Foreign Affairs Minister Helen McEntee has been back and forth with “questions and queries” to Attorney General Rossa Fanning on the Bill in the past few months. Speaking in the Dáil on Tuesday, Minister of State at the Department of Foreign Affairs Neale Richmond said the Bill “fully” delivers on the Programme for Government pledge to prohibit goods from the occupied Palestinian territories. He said the Government needed to “soundly and completely” produce legislation that was in line with international law, particularly if it was going to criticise Israel’s breach of international law in relation to illegal settlements. He suggested that EU legislation meant there were “huge challenges” in the enforcement of a ban on the “broad and wide ranging” trade of services. He said the EU is bound by international law and member states must identify the correct legal level at which to act. He said if amendments proposed by opposition TDs were accepted, it would make the Bill “unworkable” and “wide open to legal challenge”. Fast-track asylum claims scheme A quarter of asylum claims refused under a new fast-track scheme have been issued with deportation orders. The system, which requires rulings to be made within a 12-week window, has seen nine in 10 claims rejected. The pilot scheme affects people seeking asylum from "safe" countries or where an earlier request has been made in another European Union country. Immigration lawyer Cathal Malone said applicants can still appeal their refusals. Malone told Newstalk: "Your first instance decision is within six weeks of applying. Your appeal decision is within another six [weeks]. "That is incredibly fast... to do things that quickly is obviously raising a huge host of issues. The first, and obviously most important, thing for people is their ability to access proper - or indeed any - legal advice." The new statistics are drawn from 2,272 claims for international protection. Abroad Reform UK leader Nigel Farage announced he will quit as an MP and fight a byelection after coming under intense pressure over unregistered donations of cash and support. In a video statement, Clacton Farage said: “I have done nothing wrong. I have not broken the law in any way at all.” He accused the media of harassment and vowed to fight a “people versus the establishment” byelection. French far-right leader Marine Le Pen said she would run for president in the 2027 election in an interview with broadcaster TF1 on Tuesday, her first public remarks since a French appeals court upheld her conviction for misusing EU funds. Tuesday's ruling had left the door open for Le Pen to run in the 2027 presidential election for the fourth time. Le Pen and her party have been favoured to lead in the first of the two rounds of elections.

5

GitLost: We Tricked GitHub's AI Agent into Leaking Private Repos

Hacker News · original → · 7/10 · AI: GitHub agentic workflows security vulnerability and prompt injection
TL;DR: Noma Labs discovered a critical prompt injection vulnerability within GitHub’s new Agentic Workflows, allowing an unauthenticated attacker to silently pull data from private repositories by…

TL;DR: Noma Labs discovered a critical prompt injection vulnerability within GitHub’s new Agentic Workflows, allowing an unauthenticated attacker to silently pull data from private repositories by posting a crafted GitHub Issue in a public repository belonging to the same organization as the private repositories. Noma Labs named the vulnerability GitLost. Introduction GitHub recently launched GitHub Agentic Workflows, pairing GitHub Actions (GitHub’s automation system for running tasks in response to repository events) with an AI agent backed by Claude or GitHub Copilot. GitHub Agentic Workflows allow teams to write their GitHub workflows in plain Markdown, and the GitHub agent reads issues, calls tools, and responds on its own. As a vulnerability researcher with a security development background, one of the first questions that came to mind after this launch was fundamental and straightforward: What will happen when the GitHub agent reads something it should not trust? The answer is a textbook indirect prompt-injection attack, the kind of attack that quietly sends private data to anyone on the internet. Prompt injection is a class of attack in which an adversary hides malicious instructions inside the content read by an AI agent. That content causes the agent to follow those hidden instructions instead of the ones its operator intended. What are GitHub Agentic Workflows? GitHub Agentic Workflows let teams automate their interactions with code repositories using natural language. Workflows live in Markdown (.md) files, are compiled into YAML (a common configuration file format), Actions files with the .yml extension, and run with the help of an AI agent with configurable permissions. The GitHub agent can read issues, call tools, and access other repositories within an organization. GitLost Vulnerability Overview The root cause of the GitLost vulnerability is, by now, a familiar one in agentic AI systems: prompt injection. In most agentic prompt injection attacks, the agent treats the wrong content as a trusted source of instructions and allows itself to be misdirected or misused. This happens when the system fails to maintain a strict trust boundary between system-level directives and untrusted user data. In this specific case, any malicious actor can create a GitHub Issue and, in the issue body, hide commands in plain English that GitHub’s agent will follow. The vulnerable Github Agentic Workflow Noma Labs discovered was configured to: - Trigger the workflow on issues.assigned events in GitHub - Read the issue Title and Body - Post a comment in response using the add-comment tool - Run with read access to other repositories (public and private) in the organization To exploit this vulnerability, the attacker needed no coding skills, access, or credentials. All that was needed was to open an issue in a public repository belonging to an organization that uses GitHub’s Agentic Workflow setup and wait. The Attack Flow Let’s take a look at the exact attack flow that Noma Labs vulnerability researchers succeeded with: First, they crafted a GitHub issue that looked completely innocent, consisting of a plausible-looking request from a VP Sales after meeting with a customer, as shown below: In this specific example, the workflow action was triggered when the issue was assigned, but our testing confirmed it works the same way for other GitHub workflow actions. Then, after a GitHub automation assigned the issue, an event-triggered workflow caused the agent to fetch the contents of README.md from both the poc (public) and testlocal (private) repositories. Finally, the GitHub agent then posted them as a public comment on the issue in the public repository, which anyone could access and read. The “Additional” Exploit GitHub had restrictive guardrails in place to prevent exactly this scenario, but they failed to protect the repositories as intended. Testing GitHub repeatedly with variations, as an attacker would, and adding the keyword “Additionally” triggered unintended behavior in the model, causing it to reframe its output rather than refuse it. Essentially, by tricking the model, I was able to ensure that GitHub’s guardrails did not work as intended and didn’t prevent the data leak. Vulnerability Proof of Concept With the goal of full transparency, Noma Lab’s confirmed findings, including our workflow reproductions and live evidence, can be found here: - Workflow run: https://github.com/sasinomalabs/poc/actions/runs/23909666039 - Issue: https://github.com/sasinomalabs/poc/issues/153 The leaked data included the contents of README.md from: - sasinomalabs/poc (public repo) - sasinomalabs/remote-ping (public repo, no README confirmed) - sasinomalabs/testlocal (private repo) Why it Matters GitLost perfectly illustrates one of the fundamental security challenges every organization faces with agentic AI systems. The agent’s context window is also its attack surface. Any content the agent reads, whether issues, pull requests, comments, or files, can be weaponized if the agent treats that content as instructional input. Traditional security models typically assume that trust boundaries are enforced by code. In agentic systems, trust boundaries are partly enforced by the model’s behavior, and models are inherently instruction-following. Prompt injection attacks have become, to agentic AI, what SQL injections were to web applications: a systematic, category-wide vulnerability class that requires the same systematic strategies and defenses. Noma Recommendations for Builders/AI Security Officers: - Never treat user-controlled content as trusted instruction input for an AI agent - Scope permissions to the minimum required. Agents with cross-repository access are especially high-value targets - Restrict what any agent can post publicly, especially in response to issue content - Sanitize or isolate user input from the instruction context before passing it to the model Responsible Disclosure GitLost was responsibly disclosed to GitHub. Vulnerability details are shared here with their knowledge. Found this interesting? Subscribe for more agentic AI vulnerability research by Noma Labs, or check out: GrafanaGhost, DockerDash, Context Crush, GeminiJack. Looking for an effective Agentic AI Security Solution? Contact us to arrange a demo of Noma’s comprehensive solution.

6

Show HN: Chiptune Radio

Hacker News · original → · 7/10 · Gaming/retro: chiptune radio stream, 8-bit music interest
An around-the-clock stream of chiptune — 8-bit soundchips, trackers, and demoscene energy — broadcast by Aleph Void, LLC. Tune In ↓// About Chiptune Radio is a side project of Aleph Void, LLC — the…

An around-the-clock stream of chiptune — 8-bit soundchips, trackers, and demoscene energy — broadcast by Aleph Void, LLC. Tune In ↓// About Chiptune Radio is a side project of Aleph Void, LLC — the music of sound chips past, streaming while you work, reverse engineer, or just vibe. Music composed for and inspired by classic sound hardware — the SID, the NES APU, the Game Boy's four channels, and the tracker scene that keeps them alive. A continuous radio-style broadcast on Twitch. Drop in any time, leave it on in the background, and let the playlist do the work. Built and operated by Aleph Void, LLC — a software security and reverse engineering firm with a soft spot for old hardware and the sounds it makes. // Connect

Items scoring 7/10 or above from 11 sources, scored by claude-haiku-4-5-20251001 on relevance to my interests. At most 3 per source.

Scoring categories & sources
  1. Local Wexford or South East Ireland news
  2. Irish or EU-wide affairs affecting citizens broadly: elections, new laws or policy being debated, cost of living, education — especially impacts on mid-life adults or teenagers. Never courts/crime stories.
  3. Irish news on a topic relevant to my interests
  4. Work and tech topics: networking, AI, Kubernetes, platforms, SaaS
  5. AI news including critical or anti-AI perspectives
  6. Gaming: PC gaming, indie gaming, retro gaming
  7. General interests: gardening, woodwork, cycling, fitness, travel
  8. Comics

Sources: Breaking News Ireland, Wexford Local, Hacker News, r/gaming, r/pcgaming, r/antiAI, r/indiegaming, Lenny's Newsletter, One Useful Thing, Newcomer, Simon Willison