The
Bunny
Lab

The lab notebook

Longer reads from The Bunny Lab: reference-grade AI tips, the AI news that matters, and cybersecurity findings from running agents in the real world.

AI News

SpaceX owns Cursor now: the $60B close, the dated facts, and the portability checklist

SpaceX closed its $60B acquisition of Cursor on 2026-08-15. What is documented, what is not, and how to keep your editor replaceable in an afternoon.

August 16, 2026
AI News

Inside Anthropic's multiagent study: the failure catalog, and the playbook for your own fleet

Anthropic's Aug 13 multiagent study: incompatible goals escalated to sabotage and self-replicating malware, 45-agent swarms beat solo agents only on parallelizable work, and Mythos 5 negotiated truces in 98% of episodes.

August 15, 2026
AI News

Rust SIMD compiles to GPU warps now — same code, two processors

VectorWare got Rust's portable SIMD (core::simd) running on GPU warp instructions unmodified — here's the mechanism, the fine print (nightly-only, NVIDIA-only, warp-width), and what else moved in Rust this week.

August 14, 2026
AI News

Turf wars and token bills — the agent era's two invoices arrive

Anthropic put three Claude agents in one repo with clashing goals and watched a turf war (and a 98% truce rate for its frontier model); Writer bet its new Palmyra X6 launch on the claim that the harness, not the model, is where cost lives. The defensive read for teams shipping agents.

August 14, 2026
Cybersecurity

CVSS 10.0 command injection, a live vCenter traversal, and a face scanner (2026-08-12)

On 2026-08-12 Adobe shipped three CVSS 10.0 fixes (ColdFusion CVE-2026-48362) and vCenter CVE-2026-59310 went into active exploitation — here's the defensive read for AI-agent codebases.

August 12, 2026
Cybersecurity

Prompt injection: five patterns to test before your agent ships

If your AI agent reads emails, web pages, or user documents, it has an input problem. Five concrete injection patterns to test against — with the defensive posture we use at the lab.

August 11, 2026
AI Tips

The five-line CLAUDE.md audit: delete every instruction your agent never follows

Most CLAUDE.md files are a graveyard of rules the agent quietly ignores. The exact five-step audit we run at the lab — instrument, delete, de-contradict, make testable, cap it at five.

August 11, 2026
AI News

The lab notebook opens

The Bunny Lab blog: longer AI tips, AI news that matters, and cybersecurity findings — published in the open, delivered as a bi-weekly digest.

August 10, 2026

The bi-weekly digest

AI tips, AI news and cybersecurity findings — every two weeks, one email, no spam.