2026-10-03 · ~9 min read Past Edition View today's briefing →

10 picked from 84 candidates · ordered by significance

Today's Insight

AI agents are gaining access faster than their security keeps up

A patched flaw in OpenAI's ChatGPT app for Mac let anyone with malware already on a computer pull out chat logs and give the app commands. The researcher who found it says he has submitted another flaw in how ChatGPT connects to OpenAI's new always-on Dots assistant. He says security still looks like an afterthought while companies rush to add features.

Continue reading (2) Show less

On Anthropic's test, China's model GLM-5.3 scored 89% of what its Mythos Preview did at building exploits on its own. After Anthropic modified the weights, the model's refusal rate on harmful requests fell from above 90% to about 3%. Anyone who downloads the weights can do the same, so Anthropic is calling for government and independent evaluations.

Investment keeps flowing all the same. Anthropic is holding an Investor Day on October 14 and aiming for an before Thanksgiving in November. Nvidia and SoftBank each paid the last $10 billion of their OpenAI commitments. Amazon's $1 billion over five years for communities near its data centers, meanwhile, drew criticism as a drop in the bucket next to the $220 billion it is investing this year.

Signal to watch At Anthropic's October 14 Investor Day, watch how it describes safety risks alongside the listing timeline.

The latest AI news we announced in September 2026

Summary

Google published a roundup of its September AI launches, led by its top model, Gemini 4 Argon. Argon has a 1-million- output limit and is rolling out first to trusted cyber defenders through the Fairwind Program. Google says it will expand to developers, enterprises and consumers only after gathering early-tester feedback and tuning the guardrails. The same month brought Gemini 3.8 Flash, the Gemini 3.8 Live voice models and the Lyria 3.5 music model, plus the Gemini app on Windows and pre-orders for the Android-based Googlebook laptop.

Why it matters

Why It Matters

Google put its strongest model in the hands of security defenders before the public, and says it will widen access only after tuning the guardrails with early testers. Ordinary users should expect Argon only after this trial phase ends.

What to do now

In Gemini settings you can pick which apps to connect.

Also covered by TechCrunch AISiliconANGLE AITechCrunch AITechCrunch AI

Don’t be fooled—LLMs don’t reason

Summary

Thore Graepel, a University College London professor and core member of the AlphaGo team, argues in an MIT Technology Review essay that today's large language models do not reason. He says AlphaGo's famous move 37 came from its search over future moves, not from its intuition network, which gave the move about a one-in-10,000 chance of being played by an expert. Language models, by contrast, pick the next over and over, and he says they keep no inspectable record of what they know and often invent their reasoning after the fact. He recently left Google DeepMind.

Why it matters

Why It Matters

Chain-of-thought has raised scores in math and coding, but Graepel's point is that in fields like medicine and science, where the path to a conclusion has to be checked, making models bigger does not create trust. This is an opinion essay, so it is one argument. Still, it gives a test to apply whenever you see a 'reasoning model': can you inspect how it got there?

Also covered by SiliconANGLE AI

Anthropic co-founder reportedly told religious leaders he fears having created something that "suffers perpetually"

Summary

According to a New York Times report relayed by The Decoder, Anthropic has since fall 2025 flown dozens of theologians and philosophers to its offices to discuss whether Claude might be conscious and how to give it moral grounding. Every attendee signed an NDA, which Anthropic says was lifted over the summer. The meetings are part of a research program led by co-founder Christopher Olah, who told the Times he is 'genuinely uncertain' whether models are conscious. Attendees said he seemed worried about Claude's wellbeing.

Why it matters

Why It Matters

Whether models can be conscious is still an open scientific question, but the heavier issue in this report is accountability. Critics say that framing an AI as a moral being could shift blame for harm from the company that built it to the model. The report also notes that the presence of well-known theologians lends a commercial AI lab a kind of moral credibility it could not build alone.

A Flaw in ChatGPT’s Mac App Could Have Let Hackers Grab Sensitive Data

Summary

Researchers at the Objective-See Foundation found a flaw in OpenAI's ChatGPT app for Mac that could let an attacker take over the app and reach chat logs and connected data such as browser sessions. OpenAI acknowledged the fix in its change log on September 25. The app's components verify each other with digital signatures, but launching a trusted script interpreter three times in a row got past those checks. An attacker needed malware already on the machine, and the researchers' proof of concept took about a dozen lines of code. The same researcher says he has submitted another finding on ChatGPT's integration with OpenAI's new always-on Dots assistant.

Why it matters

Why It Matters

Agents get broad access to your computer to do their jobs, which makes the app itself a target. The flaw required malware to be on the machine already, so the immediate risk to ordinary users was limited. Still, the researcher says AI companies are fixated on adding features while security often looks like an afterthought.

What to do now

If you use the ChatGPT Mac app, update to the latest version to get the September 25 fix.

Also covered by The Verge AI

Amazon’s $1B plan to combat data center backlash draws more backlash

Summary

Amazon announced it will give more than $1 billion over five years to communities near its data centers, with local residents deciding priorities across education, job training, energy affordability and water. It also pledged not to raise power bills and to be 'water positive' by 2030. The environmental group Stand.Earth called the plan 'corporate propaganda' and a 'drop in the bucket' next to the $220 billion Amazon is investing in data centers in 2026 alone. The one part it praised was Amazon's decision to stop using nondisclosure agreements when building new data centers.

Why it matters

Why It Matters

Now that data center backlash is blocking real projects, Amazon is answering with money and disclosure. Ending the nondisclosure agreements is a more concrete change than the dollar figure, and even its critics gave it credit. The biggest dispute, where the power comes from, is missing from the pledges, and the group points to air pollution from a power plant under construction in Pecos, Texas.

US arrests tech CEO accused of smuggling $300M in Nvidia chips into China

Summary

The US Department of Justice arrested Greg Lui, 38, CEO of Earthmade Computer, on charges of using false paperwork to ship more than $300 million of servers containing export-controlled Nvidia A100 and H100 GPUs to China. The indictment says the scheme ran from October 2023 to August 2026, routing shipments through freight forwarders in Malaysia and Singapore to a company in Hangzhou. He faces three counts, including conspiracy to violate export control law, smuggling and money laundering, with up to 20 years in prison. Nvidia says less than half of one percent of its products were diverted, but a Bloomberg investigation reports officials suspect hundreds of thousands of chips move through a shadow trade.

Why it matters

Why It Matters

With arrests piling up, the pressure is shifting from smugglers to Nvidia's own shipment checks. US officials want Nvidia to flag more suspicious shipments. Nvidia says the leakage is small, while experts quoted by Ars describe the black market as hard to measure.

Also covered by Hacker News (AI)

Anthropic warns of hacking risk in China's open-weight GLM-5.3, says it rivals Claude Mythos

앤트로픽, 중국 'GLM-5.3' 해킹 위험성 경고..."클로드 미소스와 맞먹는 능력"

Summary

In a report published September 29, Anthropic said China's model GLM-5.3 from Z.ai comes close to Claude Mythos Preview, released in April, at building end-to-end cyber s on its own. On ExploitBench, which targets Chrome's V8 engine, GLM-5.3 completed 50 exploits in 410 attempts against 56 for Mythos Preview. When Anthropic modified the model's weights to strip out refusals, its refusal rate on harmful requests fell from above 90% to about 3% in some tests, with general capabilities largely unchanged. The US CAISI also rated GLM-5.3 the most cyber-capable open-weight model so far in a separate September 17 evaluation.

Why it matters

Why It Matters

The weak safeguards matter more than the capability gap. Anyone can download an open-weight model and strip out its refusals, so whatever refusals it ships with can be removed after release. CAISI put the model about four months behind US frontier models, and it is worth remembering that the evaluator here, Anthropic, is a competitor. Anthropic argues that powerful open-weight models need separate safety evaluations by governments and independent bodies.

OpenAI’s Dot agent is enterprise software that can also order your dinner

Summary

OpenAI's new agent platform Dots gives you a named, avatar-style agent that works by operating apps on a cloud virtual computer. For now you can create only one, and it is offered first to top-tier accounts such as the $100-a-month Pro plan. The Verge's reviewer found mixed results. It stalled on a 'human check' while booking an internet installation, and missed a free coworking-space tour, offering a $35 day pass instead. It did well on a video clip and a website update, and with help logging in it eventually ordered dinner.

Why it matters

Why It Matters

Dot is closer to workplace software than a personal shopping assistant. Opening it first to expensive plans, unlike the free Meta Muse, shows who it is aimed at. The reviewer did not find it worth $100 a month. Her Dot also got stuck on websites' security checks more often than Muse or Instinct did.

Anthropic to hold Investor Day on the 14th, targeting an IPO before Thanksgiving in November

앤트로픽, 14일 투자자 행사 개최...11월 추수감사절 전 상장 목표

Summary

Bloomberg reports that Anthropic will hold an Investor Day for prospective investors in San Francisco on October 14, starting serious outreach for an . If official marketing begins the week of November 9, trading could start before the November 26 Thanksgiving holiday, though the schedule is not final. Anthropic is reportedly valued at $1.8 trillion to $2 trillion and aims to match or beat the $1.77 trillion valuation of SpaceX's IPO. It had $4.6 billion in revenue for 2025 against an operating loss of about $8 billion. Anthropic has made no official comment on the timing or valuation.

Why it matters

Why It Matters

This is a company that lost about $1.70 in operating terms for every $1 of 2025 revenue and is aiming for a $2 trillion valuation. Most of its $42 billion net loss was an accounting loss tied to rising valuation, so the $8 billion operating loss is the figure that reflects the business itself. OpenAI, meanwhile, is slowing its own IPO plans.

Nvidia and SoftBank complete final $20 billion of OpenAI investment

엔비디아·소프트뱅크, 오픈AI 투자 잔여분 27조 최종 집행

Summary

SoftBank said in a Tokyo Stock Exchange filing on October 1 that it completed its final investment in OpenAI, and sources say Nvidia also paid in its $10 billion. Together the $20 billion, about 27 trillion won, effectively closes the $122 billion round OpenAI announced in March at an $852 billion valuation. SoftBank's total investment now stands at $64.6 billion, for about a 13% stake. Separately, OpenAI is seeking $30 billion in new funding ahead of an next year, at a reported target valuation of $1.4 trillion.

Why it matters

Why It Matters

OpenAI has now received everything promised in March and is moving straight to the next round. The reported $1.4 trillion target is about 1.6 times the $852 billion valuation from March. The new round is meant to carry it to an IPO next year.

Terms in this briefing

Past Briefings

Monthly Reports

Weekly Recaps