A security bulletin highlights three major developments: worm code has been leaked into the wild, an AI agent has been successfully phished, and Claude has released a patch for an action vulnerability. The bulletin also covers 28 additional cybersecurity stories, underscoring ongoing concerns about AI systems becoming both tools for and targets of security threats.