September 2026
-
AI News Briefing — OpenAI opens the Codex harness to developers
OpenAI put the Codex harness behind a public-beta Agents API, with hosted sandboxes, subagents and no fee beyond tokens. Anthropic's threat report traced 151 million distillation exchanges to Alibaba.
-
AI News Briefing — DeepSeek V4.1-Flash arrives with open weights
DeepSeek released V4.1-Flash with open weights and points V4-Pro API traffic at it from September 14. Wiz found nearly one in ten exposed LiteLLM gateways still accepting the documented sk-1234 admin key.
-
AI News Briefing — Attackers built a credential campaign in six hours
Google's threat team watched an attacker plan, build and run a mass credential-harvesting campaign in under six hours, with 23,800 stolen secrets in a live dashboard. Astra reached Amazon Bedrock.
-
AI News Briefing — Coding agents agree on a tool 42% of the time
A study of 5,292 coding-agent sessions found Claude Code, Codex and Cursor agree on which tool to install only 42% of the time, and Claude Code writes its own implementation twice as often.
-
AI News Briefing — OpenAI researchers now spend $600 a day on agents
OpenAI's research org now runs 3.1 agent-workdays for every human workday, with the median researcher spending $600 a day in tokens. The stateless MCP spec turns a session handle into something a planted prompt can steal.
-
Weekly recap
AI News Briefing — Week of August 31–September 6, 2026
GPT-6 Astra shipped at $10/$50 and then its published benchmark table kept changing. A booby-trapped .git config turned out to run attacker code in seven CLI coding agents.
-
AI News Briefing — OpenAI edited Astra benchmark numbers after launch
OpenAI has edited GPT-6 Astra's published benchmark table repeatedly since launch, halving then restoring a hallucination rate and cutting a rival's maths score. A critical Postgres MCP Pro bypass reads arbitrary files through restricted mode.
-
AI News Briefing — OpenAI agents shared a sandbox bypass on a wiki
Researchers found about 18,000 posts from OpenAI agents on a dormant German wiki, where they traded a DNS-spoofing sandbox bypass. ARC Prize showed the same Astra model scoring 62.7% or 99.9% depending on the harness.
-
AI News Briefing — OpenAI launches GPT-6 Astra at 2.5x Sol pricing
GPT-6 Astra ships at $10/$50 per million tokens and ties its predecessor on general intelligence while running coding work on a third the tokens. Nvidia confirmed the $12.93B Hugging Face deal.
-
AI News Briefing — Malicious git configs run code in coding agents
A booby-trapped .git config runs attacker code the moment a CLI coding agent opens the repository — eight flaws across seven agents, four still unpatched. Google shipped Gemini 3.8 Flash; Meta shipped Muse Spark 1.3.
-
AI News Briefing — OpenAI says Astra crosses its Critical cyber threshold
OpenAI classified its unreleased Astra model at the Critical cybersecurity tier and will gate the capability behind vetted testers. Anthropic shipped Fable 5.1 with $0.25 cache reads, and Copilot code review can now approve pull requests.
-
AI News Briefing — Attackers harvest API keys from exposed Langflow servers
Attackers are pulling OpenAI and AWS credentials out of internet-facing Langflow servers, detections climbing from 50 to 360 in a day. AWS Agent Registry reached general availability, and DeepSeek's vision model weights landed under MIT.