Second-order prompt injection in ServiceNow’s Now Assist, a new vLLM RCE, DeepSeek-R1’s insecure code bias, adversarial poetry jailbreaks, and fresh field lessons on securing GenAI all highlight how AI infrastructure, models, and safety controls are being stress tested in the real world.