▶ VIDEO Security Weekly - A CRA Resource

Secrets, Red Agent, GitHub, evoooo1bot, DecryptAds, Copilot, Aaran Leyland, and More - SWN #608

Wiz's internal AI, Red Agent, autonomously discovered a script injection vulnerability in a Snowflake GitHub repository that was originally introduced by GitHub Copilot's autofix feature on June 18. This incident highlights a critical 'AI on AI' vulnerability cycle where automated code generation creates flaws that subsequent AI scanners detect, necessitating human review of all AI-generated code. Concurrently, GitHub experienced a 50% error rate in repository downloads and degraded Copilot availability starting August 13, exposing the fragility of modern development dependencies. These events underscore the urgent need for organizations to implement rigorous quality assurance and scanning protocols for AI-generated software before deployment.

▶ VIDEO Black Hat

Black Hat Asia 2026 | AirSnitch: Breaking Client Isolation in Wi-Fi Networks

Researchers from KU Leuven and UC Riverside demonstrated that client isolation in Wi-Fi networks can be bypassed at multiple layers, including the Wi-Fi, IP, and Ethernet levels. The study identified critical vulnerabilities such as the abuse of shared group keys, router-to-gateway trickery, and the revival of port stealing attacks to establish full man-in-the-middle positions. Testing revealed that nearly every device evaluated contained at least one exploitable flaw, rendering isolation ineffective against malicious insiders even within enterprise environments. These findings expose significant risks for securing insecure IoT devices and legacy servers that rely on Wi-Fi as a primary defense layer.