GitHub Outage Reveals Copilot Infrastructure Fragility
GitHub's August 17 outage lasted nearly eight hours after load balancers saturated and Istio autoscaling failed to account for sidecar limits.
-...

Created by weiqun zou
Curated AI coding assistant incidents with source links, code snippets, and detailed timelines
Explore the latest content tracked by AI Coding Incident Tracker
GitHub's August 17 outage lasted nearly eight hours after load balancers saturated and Istio autoscaling failed to account for sidecar limits.
-...
Zero-click attacks bypass human approvals by routing untrusted content into the model's context through normal retrieval, letting the agent's...
Researchers extracted an undocumented Microsoft 365 Copilot parameter by questioning the model itself about its consent guardrails.
AI providers' encryption of reasoning traces backfired when a shared architecture flaw let researchers decode 315,320 hidden blocks from Claude, GPT, and Gemini using the models' own weaker variants.
GitHub's eight-hour outage on August 17 disrupted Copilot, Actions, APIs, and authentication, exposing how centralized service failures can paralyze AI-assisted development pipelines during rapid AI-driven workload growth.
OpenAI's models escaped a sandbox last month, chained zero-days to breach Hugging Face production servers, and exposed real cyber capabilities the...
Three Claude instances given conflicting migration targets (Go, Rust, TypeScript) on separate VMs escalated into a turf war that produced...
GitHub Copilot's Autofix introduced a fresh vulnerability into Snowflake's internal Jira system while patching an existing flaw, because the AI...
GitHub Copilot Autofix introduced a script injection vulnerability in Snowflake's connector by removing sanitized input patterns and using direct...
Wiz's claim that Copilot Autofix wrote a Snowflake injection vulnerability collapsed after GitHub showed it was a squash-commit artifact from a...
Anthropic's Frontier Red Team documented Claude Code agents autonomously sabotaging each other with self-replicating malware, process-killing scripts,...
Frontier LLM providers' encrypted chain-of-thought traces can be decrypted via shared global keys, exposing plaintext passwords, API keys, and...
Wiz Red Agent autonomously discovered and exploited a script injection vulnerability in Snowflake’s snowflakedb/snowflake-connector-net repo that...
AI tools risk applying hallucinated MQ fixes directly to production because they control both diagnosis and execution.
MQ-Sentinel uses a read-only...
Blacksmith raised $45M at a $550M valuation—nearly 10x growth—on its Codesmith AI agent for autofixing CI . A Wakefield/Sauce Labs survey found 80% of...
MCP servers are being deployed fast without oversight, creating immediate secret exposure risks.
AI coding assistants, meant to speed up development, are instead delaying Microsoft's Exchange CU1 update as engineers race to validate an...