{
  "video_id": "61a73fa670fd3e59",
  "channel_slug": "simonwillison-net-atom-everything",
  "channel_handle": "simonwillison-net-atom-everything",
  "title": "Incident Report: CVE-2026-LGTM",
  "url": "https://simonwillison.net/2026/Jun/26/incident-report/#atom-everything",
  "upload_date": "20260626",
  "published_at": "2026-06-26T17:58:54+00:00",
  "transcript": "Incident Report: CVE-2026-LGTM Spectacular hypothetical incident report by Andrew Nesbitt. Day 2, 16:00 UTC --- Two AI review agents from competing vendors, both attached to a downstream pull request bumping foxhole-lz4 , enter a disagreement loop over whether the package is malicious. After 340 comments and $41,255 in inference spend, Finance revokes both API keys; one vendor's marketing team, cc'd on the cost anomaly alert, issues a press release citing \"a 430% YoY increase in adversarial multi-agent security reasoning.\" The stock opens up 6%. Tags: security , ai , prompt-injection , generative-ai , llms , supply-chain , ai-security-research , andrew-nesbitt",
  "transcript_chars": 668,
  "ingested_at": "2026-06-27T02:00:13.597795+00:00",
  "source": "rss",
  "yt_meta": {
    "author": null,
    "tags": [
      "security",
      "ai",
      "prompt-injection",
      "generative-ai",
      "llms",
      "supply-chain",
      "ai-security-research",
      "andrew-nesbitt"
    ]
  }
}