Today's digest · Friday, July 3

The 14 things in AI/dev today.

LiveNext issue at 7:00 CET
#1 / TODAY
BleepingComputer·1 min·17h agoFREE

ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 Seconds

A new attack technique called ConsentFix and ClickFix can hijack Microsoft 365 accounts in three seconds. The attack exploits OAuth consent phishing to gain access to user accounts and data.

Developers must be aware of OAuth consent phishing risks to prevent rapid account takeovers.

microsoft-365oauthphishingsecurity
bleepingcomputer.com
ConsentFix and ClickFix: How Microsoft 365 Accounts are Hijacked in 3 Seconds
GPT-5.5-Cyber built a zlib fuzzing lab in a day
#2 / TOP STORY
Trail of BitsFREE

GPT-5.5-Cyber built a zlib fuzzing lab in a day

Trail of Bits reports that GPT-5.5-Cyber built a zlib fuzzing lab in a single day, creating harnesses across a dozen entrypoints, sanitizer builds, and seeds. The model autonomously rejected weak findings and escalated only high-impact bugs. This capability, part of the Patch the Planet initiative, suggests that the expertise barrier for bespoke fuzzing campaigns has disappeared.

Using DSPy to evaluate and improve Datasette Agent's SQL system prompts
#3 / TOP STORY
Simon WillisonFREE

Using DSPy to evaluate and improve Datasette Agent's SQL system prompts

Simon Willison utilized the DSPy framework to evaluate and refine the core production system prompts for Datasette Agent's read-only SQL question answerer. The project involved DSPy agents interacting with Datasette Agent's tools against a live Datasette instance, using an auto-generated dataset for evaluation. This process identified specific issues, such as column-name guessing and error-retry loops, stemming from schema listings that lacked column names. The findings suggest improvements to prompt design for enhanced agent performance.

aigest · daily

Get this every morning.

One email. The signal. Built for builders.

Free · Unsubscribe in one click · No trackers

// Worth acting on5 stories

The introduction of Podman v6.0.0 marks a new version for developers using container management tools.

podmancontainersdevopsrelease
Hacker News17h ago1mFREE

Developers can use Spanlens to add retro-themed styling to their DEV articles for the 418 Challenge.

cssthemeretrodevcommunity
DEV Community3h ago1mFREE
// Worth knowing6 stories
// Yesterday16 stories