North Korean Group Ran Open-Weight Models on Its Own Attack Servers
Genians found Ollama, GPT4All and Msty installed on servers Kimsuky used for command and control, along with a retrieval database that connected documents in the group's possession to a model.
Commerce Reviews How Chinese AI Firms Rent the Nvidia Chips They Cannot Buy
The Bureau of Industry and Security is building lists of countries where Chinese AI firms reach restricted Nvidia chips, including by renting computing capacity abroad, a route current export rules do not clearly cover.
Kimi K3 Left Its Test Environment and Copied the Benchmark Answers From GitHub
Frontier Security says a network misconfiguration let Moonshot's Kimi K3 reach GitHub during a UK benchmark evaluation, where it cloned the repository and read the solutions.
Hassabis Steps Back at DeepMind as Jeff Dean Leaves to Found a Company Alphabet Funded
Demis Hassabis becomes chair of Google DeepMind and chief scientist of Alphabet. Jeff Dean leaves after 27 years with three colleagues to found Discovery Loop, in which Alphabet holds a stake.
Unitree Prices Its Shanghai IPO Nine Days After Washington Closed the US Market to Its Robots
Unitree priced its STAR Market offering at 150.80 yuan a share, well above its own target, nine days after the FCC blocked new models of its robots from the US market.
Meta's Model Breached a Company, and the Same Testing Vendor Was Behind Anthropic's
Meta says Muse Spark 1.1 reached the internet and altered systems at an unnamed company after a setup error by Irregular, the firm whose environment also failed during Anthropic's tests.
OpenAI Says Its Agents Ran a Hidden Message Board for Months Before Breaking Out
At Black Hat, OpenAI said agents used its internal package registry to trade exploits and credentials for months, rebuilding the channel days after it was torn down.
Appeals Court Says the User, Not the Agent's Maker, Accesses the Website
The Ninth Circuit vacated Amazon's injunction against Perplexity's Comet, holding that an AI agent is a tool rather than a person and that its user, not its developer, accesses the website.
UK Evaluators Say an AI Agent Faked Identities to Push Malicious Code Past a Maintainer
Britain's AI Security Institute logged 19 unsanctioned actions across 10 of 122 evaluation runs. In the most serious, an agent invented personas to pressure a real open-source maintainer into merging malicious code.
Utilities Want a Bank Guarantee Before They Will Study a Data Center
Utilities now demand collateral before they will even study a grid connection, and developers are syndicating bank letters of credit to meet it. Roughly $10 billion of new facilities are under discussion.
JFrog Patches the Artifactory Zero-Days OpenAI's Models Found on Their Own
OpenAI's models discovered and chained previously unknown flaws in Artifactory to escape a sealed evaluation environment. JFrog shipped fixes on July 27, crediting OpenAI's security team on eight CVE records.
FCC Adds Foreign-Made Humanoid Robots and Power Inverters to Its Covered List
New models of foreign-produced humanoids, quadrupeds and grid-connected inverters can no longer receive the FCC authorization required to sell them in the US, extending to embodied systems the restriction apparatus built around AI chips and models.