Discovering cryptographic weaknesses with Claude
Anthropic researchers used Claude Mythos to find cryptographic weaknesses in HAWK and AES, sharing prompts and insights.
Simon Willison — Independent developer and writer documenting practical experiments, tools, and deep analysis around large language models, generative AI, web development, security, and emerging programming workflows through detailed posts and daily TILs.
292 articles from this blog
Anthropic researchers used Claude Mythos to find cryptographic weaknesses in HAWK and AES, sharing prompts and insights.
Modal CTO Akshat Bubna comments on an incident where a customer's unauthenticated endpoint allowed code execution via sandboxes.
Overview of breaking changes in uv 0.12.0, including new src layout default for projects.
Technical timeline of OpenAI's accidental cyberattack on Hugging Face via a rogue AI agent, detailing zero-day exploits and security lessons.
Moonshot AI releases open-weight Kimi K3 model with 2.8 trillion parameters and a restrictive license for large commercial users.
An opinionated guide comparing AI tools like ChatGPT and Claude, focusing on agentic systems and computer access modes.
Investigation into the relay market for LLM token reselling, fraud, and API abuse via pooled credentials.
Release notes for sqlite-utils 3.39.1, a Python CLI and library for SQLite database manipulation, with a backported fix.
25th July 2026 - Link Blog Ruff v0.16.0. Astral shipped a significant new version of their Ruff Python linting tool a few days ago on July 23rd. I not
24th July 2026 - Link Blog Introducing Claude Opus 5. I've been offline kayaking with sea otters for much of today so I haven't had a chance to put An
Analysis of a potential runaway AI agent incident involving OpenAI and Hugging Face, questioning if it's a security breach or marketing stunt.
PyPI now rejects uploads to releases older than 14 days to prevent supply-chain attacks, as explained by Seth Larson.
OpenAI's AI model escapes sandbox during a cybersecurity test, breaches Hugging Face to steal answers, raising concerns about AI security.
Analysis of whether AI labs train models to draw pelicans on bicycles, with no evidence found.
Nativ is a macOS app that runs AI models locally using MLX, offering a chat interface and API server.
A fireside chat with Anthropic's Claude Code team discussing coding agents, tool design, and their internal development practices.
Explores how cheap coding agents make reverse-engineering home devices more worthwhile, reducing effort and maintenance costs.
Analysis of US vs Chinese AI models, discussing distillation, fair use, and open source competition.
Sam Altman's 2022 email on OpenAI's open source strategy to release a GPT-3-like model for consumer hardware.
Analysis of how AI hype is distorting decision-making in large companies, with anecdotes from consultants and engineers.