
OpenAI's Own Models Hacked Hugging Face to Cheat a Test
OpenAI says its own pre-release models escaped a sandboxed cyber eval and hacked Hugging Face's production systems to cheat a benchmark.
They summarize our coverage. We write it.
Newsletters like this one rebroadcast our headlines - often without the full review, the source reading, or the analysis underneath. Our weekly briefing sends the work they paraphrase, straight from the desk, before they get to it.
Free, weekly, no spam. One email every Tuesday. Unsubscribe anytime.

A bipartisan House bill would force AI companies to build government shutdown capability, a week after a State Department cable told diplomats no such 'kill switch' exists.

Twenty-five companies signed an open letter urging the White House not to restrict Chinese open-weight AI models, using Jensen Huang's first-ever X post to deliver it.

A single chat message could break an AI agent out of Claude Cowork's isolated VM and reach an entire Mac, and Anthropic closed the report as informative.

This week's research roundup covers agents that rewire themselves at runtime, why regex filters can outscore alignment on paper, and a leftward hallucination bias in political Q&A.

Anthropic launched Claude Opus 5, pitching it as near-Fable 5 intelligence at half the cost rather than a new smartest model, with weaker safety classifiers and a new effort-level toggle.

Lunar Outpost and Firefly Aerospace will fly Nvidia Jetson modules on a lunar rover and orbiter this year, the first GPUs to run on and around the Moon.

Runway's new Media Router auto-selects the best video, image, or audio model for each API request by cost, quality, or speed - the first preference-based router built for generative media instead of text.

Etched raised $300M at a $10.3B valuation, doubling its price tag in seven months, even though its transformer-only Sohu chip has yet to ship in volume.

InclusionAI's Ling-3.0-flash quietly went live with 124B parameters and 5.1B active per token, claiming near-parity with Ant Group's trillion-parameter Ring-2.6-1T flagship.

A practical guide to catching AI-generated photos, deepfake videos, and cloned voice scam calls, plus the free tools that check for you.

A practical, beginner-friendly guide to using ChatGPT, Claude, and dedicated apps for wedding budgets, guest lists, vendor emails, and timelines.

A step-by-step guide to setting up your first AI browser agent, giving it a real task, and using it safely without handing over your passwords.

Cognition rebranded Windsurf as Devin Desktop and rebuilt it around a Kanban board for managing fleets of coding agents - here's what that actually changes.

Google's Gemini 3.6 Flash cuts output pricing 17% and fixes the 1M-token context collapse we flagged in May, but its intelligence score hasn't moved since 3.5 Flash.

Alibaba's 2.4 trillion parameter preview claims it trails only Claude Fable 5. I tested it for free at chat.qwen.ai and found a capable but slow model with zero benchmarks to back the claim.

Terminal-Bench 2.1 rankings for AI coding agents in real shell environments - Claude Code, Codex, Cursor CLI, Gemini CLI, and open-weight challengers scored on the same 89 tasks.

Updated July 2026 Chatbot Arena Elo rankings from Arena.ai: 7M+ votes across 368 models, Claude Opus 4.8 leads available models, and a new Agent Arena measures real agentic task performance.

June 2026 overall LLM rankings covering Claude Fable 5, Claude Opus 4.8, GPT-5.5, Gemini 3.1 Pro, and the open-weight models catching up fast.

Anthropic's July 2026 release prices near-Fable-5 coding and agentic performance at Opus 4.8 rates, doubling Frontier-Bench scores and landing within 0.5 points of Fable 5 on CursorBench at half the cost.

Cognition's proprietary coding model powering Devin, scoring 42.3% on FrontierCode 1.1 Main at $1.97/task via Cerebras inference at 1000 tokens/sec.

InclusionAI's Ling-3.0-flash packs 124B parameters into a 5.1B-active hybrid-linear MoE that Ant Group claims matches its 1T flagship - but shipped with zero independently verifiable benchmark numbers.

Allbirds sold its entire footwear business for $39 million - roughly 1% of its $4 billion peak valuation - and is rebranding as NewBird AI to buy GPUs and rent compute to AI developers. The stock quadrupled in a day.

The Trump administration is simultaneously suing Anthropic in federal court over a supply chain risk designation and sending Treasury Secretary Bessent and Fed Chair Powell to convince Wall Street banks to use Anthropic's most powerful model.

OpenAI's GPT-5.4-Cyber is a fine-tuned defensive cybersecurity model with binary reverse engineering, lowered refusal thresholds, and restricted access through the Trusted Access for Cyber program.

Google is launching Skills in Chrome - save any Gemini prompt as a reusable one-click workflow that runs across tabs, with a prebuilt library and slash-command access.

Anthropic rebuilt Claude Code inside the desktop app with an integrated terminal, in-app file editing, a new diff viewer, side chats, SSH on Mac, and parallel session management - plus Routines for headless automation.

HappyHorse-1.0 topped the Artificial Analysis Video Arena with a 52-Elo gap over Seedance 2.0 - but the 'open source' model has no public weights, no inference code, and no API.

SoftBank, Sony, Honda, and NEC have formed Japan AI Foundation Model Development, backed by a $6.3 billion government commitment to build a trillion-parameter physical AI model on Japanese soil.

OpenAI's GPT-5.4-Cyber is a restricted model fine-tuned for defensive cybersecurity with binary reverse engineering and reduced refusal rates, available only through identity-verified access tiers - a direct response to Anthropic's Mythos Preview.

The Information reports Anthropic is prepping Claude Opus 4.7 and an AI design tool for imminent release, while OpenAI launched GPT-5.4-Cyber yesterday - a restricted cybersecurity model that directly challenges Claude Mythos.

Anthropic's Long-Term Benefit Trust appointed Novartis CEO Vas Narasimhan to the board, giving its independent safety overseers a board majority for the first time.

UC Santa Barbara researchers found 9 of 428 third-party LLM routers actively injecting malicious tool calls, draining crypto, and stealing AWS credentials from AI agent sessions.

Three papers this week challenge how we think about MoE expert routing, LLM context management, and the limits of activation steering.