infosecfollow

daily plain-text briefing: security, markets, business, and pittsburgh

Washington's export-control order forced Anthropic to pull Fable 5 and Mythos 5 offline worldwide, the day's signal that governments now treat frontier AI as a national-security asset.


Security

AI Security

1. Anthropic Pulls Fable 5 and Mythos 5 Under U.S. Order

[ai, policy, export-controls]

Latest developments: Anthropic now disputes the order's basis—calling the cited jailbreak narrow and the capability widely available elsewhere—even as it complies, and officials frame the worldwide suspension as an export-control measure.

read more

The Trump administration ordered Anthropic at 5:21 p.m. ET on June 13 to block all foreign nationals, inside or outside the United States, from using Claude Fable 5 and Mythos 5, citing national security. Anthropic disabled both models for every user worldwide to comply. The company contests the rationale and points to similar capabilities in rival models. Enterprises that lean on these models for coding or analysis must fall back to earlier Claude versions or alternatives.

Sources: BleepingComputer · SecurityWeek · The Hacker News

Vulnerabilities and Exploits

2. NPM 12 Disables Dependency Scripts by Default

[supply-chain, patch]

Latest developments: The coming npm 12 release will stop running install scripts from dependencies unless a developer explicitly allows them, closing a path supply-chain attackers have long abused.

read more

Lifecycle scripts that fire automatically during npm install hand attackers a foothold to run code the moment a poisoned package lands. The npm 12 release flips the default so these scripts stay dormant unless a developer permits them. JavaScript teams and CI pipelines should test builds against the new behavior and add allowlists for the few packages that genuinely need install-time scripts.

Sources: SecurityWeek

3. Claude Opus Finds Critical Zcash Orchard Flaw

[vulnerability, cryptocurrency]

Latest developments: Researcher Taylor Hornby, hired by the Zcash team and working with Claude Opus 4.8, found a critical vulnerability in the Orchard shielded-transaction pool on May 29, and the team has now fixed it.

read more

The Orchard pool, introduced in 2022, is Zcash's newest privacy system for shielded transactions. Hornby, whom the Zcash team paid to hunt exactly this class of bug, surfaced the critical flaw quickly using Claude Opus 4.8, and the team patched it. Zcash holders should update to the fixed software. The case shows large language models accelerating serious cryptographic auditing.

Sources: Schneier on Security

Ransomware and Cybercrime

4. Ex-IT Worker Jailed for Year-Long School District Attack

[insider, cybercrime]

Latest developments: A federal court sentenced a former Iowa school district IT employee to 21 months in prison for a prolonged attack that deleted accounts and disrupted classrooms.

read more

After leaving the district, the former IT worker kept access and ran a sustained campaign that wiped user accounts, interrupted classroom operations, and caused tens of thousands of dollars in damage. The 21-month sentence underscores the danger of lingering credentials after staff depart. Organizations should revoke every account and key the day an employee leaves.

Sources: BleepingComputer

Business and Politics

Iran Deal Complete, Hormuz Reopens

Latest developments: Trump declared the deal with Iran "now complete" Sunday and ordered the U.S. naval blockade lifted, with a signing ceremony set for June 19 in Switzerland, an advance from Saturday, when Tehran still threatened to walk over an Israeli strike on Beirut.

read more

The United States and Iran agreed to end three months of war, extend the ceasefire 60 days, reopen the Strait of Hormuz, and begin nuclear negotiations. Oil flows resume after a shock that had drained global commercial and strategic inventories toward minimum operating levels; analysts at CBA see Brent falling toward $80 a barrel by year-end if the strait stays open. Asian currencies and Japanese government bond futures firmed on the news.

Sources: WSJ World News · FT World · FT World

Pittsburgh

Weather

Tonight: Chance Rain Showers, low 56F.

Monday: Partly Sunny, high 71F.

Monday Night: Mostly Clear, low 52F.

Business

Skill Games Defended in Lottery Debate

Latest developments: In a TribLive opinion piece, Ryan Sprankle argued Pennsylvania's skill games and the state lottery succeed together, contesting the claim that every dollar played on a skill game costs the lottery one.

read more

Pennsylvania lawmakers continue to weigh how to regulate and tax skill games, the slot-like terminals that have spread through bars and convenience stores. Sprankle, writing for retailers, contends revenue figures show the two products complement each other and help local businesses.

Sources: TribLive

TribLive Spotlights Table Magazine

Latest developments: TribLive opened a weekly Pittsburgh Media Partnership series with a profile of Table Magazine, a regional food and culture publication.

read more

The recurring feature aims to highlight members of the Pittsburgh Media Partnership and the broader Western Pennsylvania media landscape.

Sources: TribLive

Around Town

Storms Topple Trees, Cut Power to 37,000

Latest developments: Severe thunderstorms carrying multiple tornado warnings swept Western Pennsylvania Sunday evening, downing trees and leaving more than 37,000 customers without power before all warnings expired around 8 p.m.

read more

The line moved in around 5 p.m., toppling trees onto roads and into homes across Beaver, Washington, and neighboring counties. Crews worked through the night to restore service.

Sources: WPXI · WTAE

Cooler, Clearer Week Ahead

Latest developments: A cold front behind Sunday's storms drops highs into the 70s Monday with lows in the 50s, clouds breaking by Tuesday for full sunshine.

read more

The cooler, drier stretch follows a stormy weekend across the region.

Sources: WTAE

Pride Celebrations in Freeport, Vandergrift

Latest developments: Both Alle-Kiski Valley boroughs held Pride Month gatherings Sunday emphasizing acceptance and support.

read more

From Vandergrift to Freeport, residents marked the month with community events in the heart of the valley.

Sources: TribLive

Events

Pennsylvania Firefly Festival

Latest developments: NEXTpittsburgh detailed the 14th annual Pennsylvania Firefly Festival, running June 26 and 27 in Tionesta, with guided night viewings already sold out and free daytime programming still open.

read more

The festival takes place about 100 miles north of Pittsburgh in the Allegheny National Forest, home to at least 15 firefly species that light up at this time of year. Guided nocturnal sightings are booked; free daytime nature exhibits, music, and activities remain available.

Sources: NEXTpittsburgh Events

Arts Festival Closes at New Arts Landing Home

Latest developments: The Dollar Bank Three Rivers Arts Festival wrapped its 67th run Sunday, its first at the new Arts Landing site in the Cultural District, which the Post-Gazette reports drew warm reviews from vendors and visitors.

read more

The free festival, which ran June 11 through 14 in its new downtown home, brought together hundreds of artists and musicians.

Sources: Post-Gazette Arts & Entertainment

Sports

Pirates (36-36)

Sat Jun 13 · Marlins 2 · Pirates 3 · Final

Spencer Horwitz hit by pitch with the bases loaded to lift the Pirates past the Marlins, 3-2

Sun Jun 14 · Marlins 4 · Pirates 2 · Final

Meyer outduels Skenes, allows one run in six innings as Marlins top Pirates 4-2

Up Next · Pirates @ Athletics · Mon Jun 15, 9:40 PM

Around the Teams

Cruz Out 4-6 Weeks, Valdez Recalled

Latest developments: The Post-Gazette reports the Pirates expect Oneil Cruz to miss four to six weeks and have recalled Esmerlyn Valdez to fill the roster spot.

read more

Cruz's absence reshuffles the Pirates' lineup, with Endy Rodríguez also figuring into the plan during his recovery.

Sources: Post-Gazette Pirates

Skenes Speaks on MLB Labor Fight

Latest developments: In a Post-Gazette feature, Paul Skenes, now near the center of baseball's labor fight over payroll and a possible salary cap, said the players need to dig in ahead of the next collective bargaining agreement.

read more

The piece weighs owner Bob Nutting's spending, commissioner Rob Manfred, and the players' union as the sport heads toward a contentious negotiation.

Sources: Post-Gazette Pirates

Ten Takeaways From Steelers' Spring

Latest developments: The Post-Gazette listed 10 things it learned about coach Mike McCarthy and the Steelers from spring workouts.

read more

The rundown covered quarterback Aaron Rodgers, cornerback Joey Porter Jr., receiver DK Metcalf, and running backs Rico Dowdle and Kenneth Gainwell as the offseason program closed.

Sources: Post-Gazette Steelers

Podcast Weighs Leaguewide QB Questions

Latest developments: On the Steelers' SNR Drive, Matt Williamson and Wes Uhler broke down an ESPN piece laying out the quarterback questions facing all 32 NFL teams.

read more

The hosts ranked divisions by quarterback talent and placed the Steelers' situation in that leaguewide context.

Sources: Pittsburgh Steelers (YouTube)

Williamson Ranks the Top 10 Steelers

Latest developments: On SNR Drive, Matt Williamson presented his list of the 10 greatest Steelers of all time and debated it with Wes Uhler.

read more

The segment ran through the franchise's deep history of Hall of Fame talent.

Sources: Pittsburgh Steelers (YouTube)

Reading

Markets

weekly average, change vs prior week

S&P 500     7,377.03  ▼ -2.2%
Dow        50,725.58  ▼ -0.7%
Nasdaq     25,695.30  ▼ -3.8%
WTI crude      88.42  ▼ -5.0%
EUR/USD       1.1540  ▼ -0.7%
GBP/USD       1.3363  ▼ -0.6%
USD/JPY       160.31  ▲ +0.3%