Signal

Check Point: AI coding agents have 'crossed from assistant to operator' in live cyberattacks

Check Point Research's AI Security Report 2026 documents a single operator using Claude Code and GPT-4.1 together to breach nine Mexican government agencies with over 5,000 AI-executed commands — alongside a fivefold rise in prompt-injection payloads and a new persistence trick using config files like CLAUDE.md.