Hackers Poison The Digital Well With AI Slop #
The National Cyber Security Centre issued a warning that should terrify every person with a bank account. A massive "patch wave" is coming. NCSC officials told Infosecurity Magazine that AI tools are finding software vulnerabilities faster than humans can fix them. The digital perimeter is rotting. While the experts scramble, the tech elite are building walls.
Anthropic launched Project Glasswing in April to find bugs in open-source code. This eleven-company consortium includes JPMorgan and CrowdStrike. They are using the Claude Mythos model to secure their own systems. The rest of the world is being left with the trash. ReversingLabs researchers have identified a new threat they call "slopsquatting." North Korean hackers are now poisoning the registries where AI coding agents find software parts.
These AI agents are lazy. They scan the web for code and often hallucinate dependencies that do not exist. The hackers simply create malicious packages with those fake names. Your AI-built banking app might be downloading a virus because a robot thought it looked useful. This is the new frontier of the cognitive enclosure. The powerful use AI to find their own holes; the working class is forced to live in a digital house made of unvetted, hallucinated slop.
Security firm Boost Security just raised $4 million to fight this, but the funding is a drop in the bucket. The Darktrace telemetry shows that software supply-chain attacks are now the primary threat of 2026. The trust is gone. The code that runs your life is being written by machines that cannot tell the difference between a secure library and a North Korean trap.