Malicious fake Windsurf extension uses Solana blockchain for C2, targets developer credentials
Lock down IDE extensions and hunt for UpdateApp, w.node, and c_x64.node on dev machines—this campaign targets your keys, not just your code.
Lock down IDE extensions and hunt for UpdateApp, w.node, and c_x64.node on dev machines—this campaign targets your keys, not just your code.
Composer 2 looks like a strong, cheaper coding model—test it on your workflows, but keep guardrails for early launch quirks.
Claude Code just became a practical chat-driven dev agent with a CI-friendly headless mode and important reliability fixes.
Plan for GPT‑5.4 mini fallbacks and rebaseline from GPT‑5.1 as GPT‑5.4 Thinking becomes the default brain for complex tasks in ChatGPT.
OpenAI buying Astral signals an AI-and-tooling fuse for Python—pilot uv/Ruff now and prepare for agent‑run workflows.
Adopt Copilot CLI 1.0.10 for heavy work in big repos and formalize repo-scoped tooling with MCP and hooks to make AI changes safer and faster.
Agents are becoming 24/7 coworkers; build reliability math, guardrails, and monitors before you hand them the keys.