Here's your daily roundup of the most relevant AI and ML news for January 20, 2026. Today's digest includes 3 security-focused stories. Click through to read the full articles from our curated sources.
Security & Safety
1. Google Gemini Prompt Injection Flaw Exposed Private Calendar Data via Malicious Invites
Cybersecurity researchers have disclosed details of a security flaw that leverages indirect prompt injection targeting Google Gemini as a way to bypass authorization guardrails and use Google Calendar as a data extraction mechanism. The vulnerability, Miggo Security's Head of Research, Liad Eliya...
Source: The Hacker News (Security) | 1 day ago
2. Three Flaws in Anthropic MCP Git Server Enable File Access and Code Execution
A set of three security vulnerabilities has been disclosed in mcp-server-git, the official Git Model Context Protocol (MCP) server maintained by Anthropic, that could be exploited to read or delete arbitrary files and execute code under certain conditions. "These flaws can be exploited through pr...
Source: The Hacker News (Security) | 9 hours ago
3. Evelyn Stealer Malware Abuses VS Code Extensions to Steal Developer Credentials and Crypto
Cybersecurity researchers have disclosed details of a malware campaign that's targeting software developers with a new information stealer called Evelyn Stealer by weaponizing the Microsoft Visual Studio Code (VS Code) extension ecosystem. "The malware is designed to exfiltrate sensitive informat...
Source: The Hacker News (Security) | 11 hours ago
HuggingFace & Models
4. Differential Transformer V2
Source: HuggingFace Blog | 20 hours ago
Industry News
5. Claude Code costs up to $200 a month. Goose does the same thing for free.
The artificial intelligence coding revolution comes with a catch: it's expensive.Claude Code, Anthropic's terminal-based AI agent that can write, debug, and deploy code autonomously, has captured the imagination of software developers worldwide. But its pricing — ranging from $20 to $20...
Source: VentureBeat AI | 1 day ago
Tech & Development
6. CI and LLM Review on Fedora Forge with Forgejo Actions
Article URL: https://www.happyassassin.net/posts/2026/01/19/ci-and-llm-review-on-fedora-forge-with-forgejo-actions/ Comments URL: https://news.ycombinator.com/item?id=46698471 Points: 2
Comments: 0
Source: Hacker News - AI | 1 hours ago
7. Deep Learning as Program Synthesis
Article URL: https://www.lesswrong.com/posts/Dw8mskAvBX37MxvXo/deep-learning-as-program-synthesis-1 Comments URL: https://news.ycombinator.com/item?id=46697686 Points: 2
Comments: 0
Source: Hacker News - AI | 2 hours ago
8. Show HN: LLM-friendly debugger-CLI using the Debug Adapter Protocol
Article URL: https://github.com/akiselev/debugger-cli Comments URL: https://news.ycombinator.com/item?id=46697522 Points: 2
Comments: 0
Source: Hacker News - AI | 2 hours ago
About This Digest
This digest is automatically curated from leading AI and tech news sources, filtered for relevance to AI security and the ML ecosystem. Stories are scored and ranked based on their relevance to model security, supply chain safety, and the broader AI landscape.
Want to see how your favorite models score on security? Check our model dashboard for trust scores on the top 500 HuggingFace models.