<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Agentic Security News &amp; Analysis</title>
    <link>https://www.tommooney.co.uk/news</link>
    <description>Timely news, useful signals and direct commentary on agentic AI security from Tom Mooney.</description>
    <language>en-gb</language>
    <lastBuildDate>Thu, 13 Aug 2026 12:00:00 GMT</lastBuildDate>
    <atom:link href="https://www.tommooney.co.uk/news/rss.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Claude Code 2.1.231: why one redirect URI can break enterprise MCP</title>
      <link>https://www.tommooney.co.uk/news/claude-code-2-1-231-mcp-oauth-redirect-fix</link>
      <guid isPermaLink="true">https://www.tommooney.co.uk/news/claude-code-2-1-231-mcp-oauth-redirect-fix</guid>
      <pubDate>Thu, 13 Aug 2026 12:00:00 GMT</pubDate>
      <category>Identity &amp; access</category>
      <description>Anthropic has fixed an OAuth redirect mismatch that could make pre-registered MCP integrations such as Slack unusable. The bug is small; the identity lesson for enterprise agents is not.</description>
    </item>
    <item>
      <title>The benchmark escaped the lab: what the OpenAI–Hugging Face incident really teaches us</title>
      <link>https://www.tommooney.co.uk/news/openai-hugging-face-agent-incident</link>
      <guid isPermaLink="true">https://www.tommooney.co.uk/news/openai-hugging-face-agent-incident</guid>
      <pubDate>Wed, 12 Aug 2026 12:00:00 GMT</pubDate>
      <category>Incident analysis</category>
      <description>An AI security evaluation became a real intrusion spanning OpenAI, a public code-execution service and Hugging Face. The lesson is not machine consciousness. It is uncontained agency at machine speed.</description>
    </item>
    <item>
      <title>GPT‑5.6‑Cyber: capability-based security for high-risk AI</title>
      <link>https://www.tommooney.co.uk/news/gpt-5-6-cyber-capability-based-security</link>
      <guid isPermaLink="true">https://www.tommooney.co.uk/news/gpt-5-6-cyber-capability-based-security</guid>
      <pubDate>Mon, 10 Aug 2026 12:00:00 GMT</pubDate>
      <category>Analysis</category>
      <description>OpenAI’s new cyber model answers far more advanced dual-use requests. The important development is the governed deployment architecture around it.</description>
    </item>
    <item>
      <title>Why agentic security needs a faster publishing rhythm</title>
      <link>https://www.tommooney.co.uk/news/why-agentic-security-needs-a-faster-publishing-rhythm</link>
      <guid isPermaLink="true">https://www.tommooney.co.uk/news/why-agentic-security-needs-a-faster-publishing-rhythm</guid>
      <pubDate>Mon, 10 Aug 2026 12:00:00 GMT</pubDate>
      <category>From Tom</category>
      <description>A new home for timely updates, useful signals and direct commentary on the security of systems that can act.</description>
    </item>
  </channel>
</rss>
