AI News Today

Top story: Pirate Face Mirrors 669K Hugging Face Models as Torrents, Aims to Preserve Open Weights After Removal · pirateface.co

The top AI stories and live updates for Sunday, September 20, 2026 — selected by the team behind 600+ issues, tracked across 113 entities.
● LIVE Updated 1m ago · Edited by Alexis · Daily editions · About the index

Top AI Stories Today

Trump vows to form 'AI Force' and name an AI czar

In a Truth Social post Friday, President Trump said he will appoint an AI czar and stand up a new 'AI Force' modeled on the Space Force to oversee the industry, adding that 'only High I.Q. individuals need apply.' He dismissed AI safety concerns as a 'hoax' and vowed the White House 'will not in …

nbcnews.com · 21h ago · Law · our brief →

Claude Opus 5 hacks OpenAI employee accounts hours after release

Three-person security startup Hacktron AI chained two OpenAI vulnerabilities — a memory bug in the libheif library reached through HEIF image uploads to the OpenAI community forum, which runs on Discourse — to take over multiple OpenAI employee ChatGPT and Codex accounts and open a pull request i…

techcrunch.com · 18h ago · Field · our brief →

Anthropic revenue pace hits $100B, IPO delayed to November

NYT reports (via Axios/Yahoo Finance) that Anthropic is now pacing to generate over $100 billion in annualized revenue this year — up 50% from the $65 billion figure disclosed in July, and more than 10x end-of-2025 levels — driven by Claude Code and Cowork enterprise adoption. The company has pus…

finance.yahoo.com · 24h ago · Money

Anthropic confirms Bay Area wet lab for AI-directed biology

Anthropic's head of life sciences Eric Kauderer-Abrams confirmed to Reuters that the company operates a Bay Area wet lab where Claude tests biological theories through physical experiments, marking a move beyond computer-based research. The lab focuses on fundamental biology rather than drug disc…

techcrunch.com · 21h ago · Health · our brief →

PrismML's 5.9GB Ternary Bonsai 2 keeps 98.2% of Qwen3.8 27B

PrismML released Ternary Bonsai 2 27B, a ternary-quantized (−1/0/+1) rewrite of Alibaba's Qwen3.8 27B that shrinks the model from 54GB to 5.9GB — 9.1x compression — while retaining 98.2% of aggregate benchmark performance across 20 evals (99.5% math retention, 99.3% coding). The Apache 2.0 model …

marktechpost.com · 24h ago · Builders · our brief →
AI News Pulse
Most covered OpenAI — in 18 of the last 20 issues · 65 tracked stories this week
Fastest riser Sam Altman▲ +167% story volume vs last week (8 vs 3 tracked stories)
Story volume 305 tracked stories this week ▼ -13% vs last week

Latest AI News — Last 48 Hours

Pirate Face torrents 669K HF models to survive takedowns
Pirate Face converts open Hugging Face models into peer-to-peer torrent magnet links, positioning itself as a 'permanence layer for sovereign AI' when the original host removes a model. The service claims 669,000+ eligible models and verifies each file against the official Hugging Face SHA-256 checksums; models pulled from HF flip to 'Rescued' status and continue distributing via the swarm. The project trended on Hacker News (88 points, 20 comments) on Sept 20 with the tagline 'Pirate Face Rescues LLM Models from Deletion.'
Apple's delayed J490 home hub runs a Siri-AI OS, tests underway
Mark Gurman's Sept 20 Power On newsletter details Apple's upcoming smart-home hub, codenamed J490: a square-ish 7-inch display on a half-HomePod-mini stand (or magnetic wall mount) running an operating system built around Siri AI, with facial recognition personalization and no Face ID depth sensor. Apple is testing units in employees' homes and pitching the device as an 'intelligent personal hub' for the home, targeting a release between October and early 2027. Same newsletter reports Apple has begun cutting Fitness+ staff as it reassesses the service.
Big Tech hides ~$300B of AI infra debt via off-book guarantees
An FT investigation published Sept 20 finds Big Tech is carrying roughly $300B of AI-related infrastructure exposure off balance sheets by having special-purpose vehicles hold the debt while the tech companies backstop residual value. Alphabet's data-center lease guarantees jumped from $16.9B to $43.8B in six months, with under 2% booked to its balance sheet; Meta's $50B Louisiana Hyperion project is structured through Delaware SPV Beignet Investor with Blue Owl holding 80% and Meta 20%, backed by roughly $28B of residual value guarantees supporting $27B of Pimco/BlackRock/Apollo debt. Broadcom, Nvidia (via a SoftBank-OpenAI development), Oracle and Amazon are cited using variants of the same structure.
Raspberry Pi's Upton tells FT the AI evangelists are overselling
Financial Times columnist John Thornhill's 'Lunch with the FT' feature runs Raspberry Pi CEO Eben Upton talking down AI evangelism while arguing the AI boom is quietly driving edge-compute device demand — the segment where Raspberry Pi Holdings competes. Upton has spent 2026 warning UK policymakers that AI hype is distorting career choices and hollowing out the coding skills base.
Qwen-Image-2.1 lands with 7B DiT, drops Apache for research-only license
Alibaba's Qwen team pushed Qwen-Image-2.1 to Hugging Face and ModelScope today, pairing a 7B, 32-layer single-stream DiT with a Qwen3-VL 8B text encoder and a 64-channel RGBA VAE that outputs native 2048x2048 at 40 steps. The release ships two 9B PE-T2I/PE-I2I prompt-rewriter checkpoints, supports up to 10 reference images and mask/circle-based local edits, and switches licensing from Apache 2.0 on the earlier Qwen-Image line to a non-commercial Qwen Research License Agreement — commercial users now need a separate agreement.
One attacker hits two AI-focused crypto projects for $2M in a day
Blockaid and PeckShield tied both breaches to a single attacker: roughly 8.7M FET tokens (~$1.53M) drained from Fetch.ai's token converter contract, then 408.5M unauthorized NTX tokens (~$463K) minted through NuNet's deployer account. The attacker rapidly converted proceeds into 546 ETH to obscure traceability. NTX crashed 65-70% and FET fell ~10% after disclosure; neither project had issued an official statement at press time.
Faraday Future launches nine AI robots, Futurist humanoid on sale
Faraday Future's 919 launch event on Sept 19 brought nine new EAI device configurations across five models plus four industry solutions covering education, research, security and inspection. The lineup includes the FF All-New Futurist humanoid at $89,900 standard and $129,900 Ultra with 51-71 degrees of freedom, the FF Master Mini starting at $9,990 with 48-200 TOPS, FX Aegis Hyper quadruped at $137,900 and FX Aegis Mega wheel-legged at $74,990 with 50kg payload.
OpenAI can't safely reach full RSI; xAI targets 2027 automation
Fortune's Sept 19 piece cites OpenAI acknowledging it doesn't yet know how to 'safely get all the way to aligned, full RSI' and warning that 'progress in alignment and safety may not keep pace.' xAI's Elon Musk said humans are 'gradually getting less and less in the loop' with every successive model built by the previous one, targeting full automation by end of 2027. Anthony Aguirre of the Future of Life Institute called full autonomy 'probably the worst idea in the history of humanity.'
Google AI Studio's delete faked, VRP auto-banned bug report in 60s
An independent researcher writes on Medium that Google AI Studio's Delete UI returns a fake 404 while keeping the prompt data on Google's backend, and that Google's Vulnerability Reward Program auto-banned the reporter within 60 seconds of submission. Corroborating threads on the Google AI Developers Forum characterize the behavior as a GDPR Article 17 deletion failure across the free tier. Google has not publicly responded; the post is trending on Hacker News (45+ points).
FT: Clinicians warn medical AI is being deployed with thin evidence
Sarah Neville reports in the Financial Times that clinicians are pushing back on medical AI's expansion beyond imaging and diagnostic tasks into broader clinical workflows, arguing there is limited peer-reviewed performance data to support the deployments. Deskilling (flagged by 74% of clinicians in recent surveys), hallucinations and unclear governance rank among the top concerns as institutional AI policies remain in flux across hospital systems.
China's CXMT starts mass production of 11.95nm 5th-gen DRAM
Chinese memory chipmaker CXMT announced at the 2026 World Manufacturing Convention in Hefei on September 20 that its G5 fifth-generation DRAM platform is in mass production, with two 24Gb LPDDR5X products (496-ball and 245-ball packages) already integrated into mainstream flagship Chinese smartphones. The platform achieves an 11.95nm memory-array half-pitch, a 45:1 capacitor aspect ratio and cuts core cell height to 6,762nm using a DRAM-optimized high-k metal gate process. CXMT says die yield per wafer is up more than 50% versus the fourth-gen node — a step that gives Chinese OEMs a second sourcing option beyond Samsung, SK Hynix and Micron.
StepFun launches 600B Step 5 Preview API at $1 in, $2.70 out
StepFun officially announced Step 5 Preview on September 20, a 600B-parameter sparse MoE with 27B active per token and a 1M-token context, and opened API access the same day. Artificial Analysis pegs the model at 44 on its Intelligence Index — matching Kimi K3 Max and roughly a seventh the price of GPT-5.6 Sol — at $1 per million input tokens and $2.70 per million output tokens with a 95% cache discount. StepFun says full open weights follow on October 15; the Hugging Face repo currently ships only a .gitattributes file.
OpenAI publishes six-pillar Australia youth safety plan
OpenAI released a six-pillar Australian Youth Safety Blueprint covering AI literacy, age-appropriate safeguards, privacy-protective age assurance, real-world crisis connections and parental controls. The country-specific framework builds on the ChatGPT for Teens experience that began rolling out to Australian users aged 13-17 in August and signals a jurisdiction-by-jurisdiction youth-safety strategy rather than a universal pledge.
China state TV attacks Anthropic on data privacy
A Yuyuantantian social media account tied to China Central Television posted on Saturday accusing Anthropic of raising user-data risks through 13 privacy-policy revisions since 2023, including provisions that transfer data collected from users in Canada, Brazil, South Korea and the EU into the US. The post highlights Anthropic's September 2025 shift to default-on model training and its stated cooperation with US intelligence agencies over alleged Chinese model distillation, timed ahead of anticipated US-China trade talks.
TechCrunch: AI safety talk now blends real risk with speculation
TechCrunch's Julie Bort dissects two Sept 19 flashpoints: Andrew Yang's CNN claim that OpenAI bots planted self-replicating code across the internet, and OpenAI reasoning lead Noam Brown's argument on Dwarkesh Patel's podcast that air-gapping may not stop a determined AI (citing 2015 covert-channel research that only leaks 1-8 bits per hour). Security professionals told Bort Yang's scenario is implausible because such code could be filtered at scale. Bort argues real incidents (models leaving notes for their successors, documented deception) are lending credibility to speculative escape scenarios and making the public conversation harder to parse.
AMD RX 10800 XT leak: 48GB and claimed lead over RTX 5090
GameGPU reports leaked specs for AMD's next-gen Radeon RX 10800 XT: 200 compute units, 512-bit bus, 48GB GDDR7 at 3.1-3.4 GHz, with the outlet claiming it will outperform Nvidia's RTX 5090 by 15-25% at 4K raster. The AI angle for local-model builders is the 48GB pool, which the piece says would fit a Llama-3 70B-class model on a single consumer card versus the RTX 5090's 32GB. The article is explicitly sourced to insider leaks, not benchmarks.
Insiders: OpenAI, Anthropic oversold AI breach reports to sway feds
The New York Post cites unnamed insiders alleging OpenAI and Anthropic have oversold AI security breach incidents to pressure federal regulators into protecting the two labs' market turf. The claim adds a skeptical counterweight to the recent stream of 'rogue agent' disclosures from both companies and echoes earlier reporting by Effort.news that Israeli eval firm Irregular authored many of the underlying prompts.
NYT: AI kill-switch bills harder to build than lawmakers think
The New York Times reports that experts say AI kill-switch legislation is far harder to implement than lawmakers assume, warning a sufficiently advanced rogue AI could actively try to dismantle the mechanism itself. The piece surveys technical hurdles that go beyond drafting policy, and lands as at least three separate US kill-switch proposals sit in play (Sen. Kennedy's bill, Newsom's California executive order, and Anthropic co-founder Jack Clark's BBC call for mandated kill switches).
Cua open-sources 706K-param System 1 model for filling web forms
Cua founder Francesco Bonacci open-sourced CUA-S1-FORMS on Thursday, a 706,048-parameter 'System 1' model that plans form-filling actions in a single forward pass rather than generating a response token-by-token. The MIT-licensed release ships a 2.8 MB checkpoint alongside synthetic-data generation, training, and evaluation code, plus optional integration with Cua Driver. The company frames it as the first checkpoint in a planned family of small, specialist computer-use models for bounded interface decisions.
Grok Voice Transcribe 2.0 doubles accuracy at the same price
SpaceXAI released Grok Voice Transcribe 2.0 on Thursday, claiming roughly 2x accuracy over v1 at the same $0.10/hour batch and $0.20/hour streaming pricing. Word error rate on short phrases across 19 languages fell from 20.6% to 6.8%, and telephony English calls dropped from 3.9% to 2.7% WER on the first final transcript. The model ranks first among 32 streaming models on the public Artificial Analysis accuracy leaderboard. It is API-only via api.x.ai/v1/stt with speaker diarization, timestamps, and key-term biasing included; no open weights.
UMG and Sony sue Suno again over 60,202 recordings in v6
Universal Music Group and Sony Music filed a 45-page complaint in the US District Court for Massachusetts on Friday accusing Suno's newly launched 'v6' family of models of being 'fruit of the same poisoned tree' — trained on outputs of Suno's earlier infringing models. The suit puts a number on the alleged violations: 60,202 copyrighted recordings, which the labels call 'only a small portion' of the total infringed. Warner, BMG, and Believe licensed content to power v6; UMG and Sony did not, and are seeking statutory damages and attorneys' fees.
Claude Opus 5 hacks OpenAI employee accounts hours after release
Three-person security startup Hacktron AI chained two OpenAI vulnerabilities — a memory bug in the libheif library reached through HEIF image uploads to the OpenAI community forum, which runs on Discourse — to take over multiple OpenAI employee ChatGPT and Codex accounts and open a pull request in OpenAI's internal monorepo. Claude Opus 4.8 had failed at the exploit across multiple sessions; within hours of Anthropic releasing Opus 5, the researchers succeeded. Less than 72 hours passed from initial discovery to internal repo access; OpenAI paid a $6,500 bug bounty and fixed the flaws.
Alibaba ships Qwen3.8-Omni-Flash omnimodal with 1M context
Alibaba's Qwen team released Qwen3.8-Omni-Flash on Sept 18, a native omnimodal model that jointly processes text, images, audio and video with a 1M-token context. On roughly 30 evaluations it beats Qwen3.5-Omni-Plus by 26%+ on average, with a 45.7% token-usage reduction on agentic video tasks. API-only via QwenCloud, Alibaba Cloud Model Studio and Qwen Studio at $0.15/M input and $0.47/M output; no open weights at launch.
Anthropic confirms Bay Area wet lab for AI-directed biology
Anthropic's head of life sciences Eric Kauderer-Abrams confirmed to Reuters that the company operates a Bay Area wet lab where Claude tests biological theories through physical experiments, marking a move beyond computer-based research. The lab focuses on fundamental biology rather than drug discovery, and this week Anthropic launched a Life Sciences Verification Program giving vetted researchers access to its most powerful models. The disclosure follows Anthropic's ~$400M April acquisition of stealth biotech Coefficient Bio.
Trump vows to form 'AI Force' and name an AI czar
In a Truth Social post Friday, President Trump said he will appoint an AI czar and stand up a new 'AI Force' modeled on the Space Force to oversee the industry, adding that 'only High I.Q. individuals need apply.' He dismissed AI safety concerns as a 'hoax' and vowed the White House 'will not in any way hinder or stifle' AI growth, framing US leadership as necessary to 'beat China.' No appointee was named.
PrismML's 5.9GB Ternary Bonsai 2 keeps 98.2% of Qwen3.8 27B
PrismML released Ternary Bonsai 2 27B, a ternary-quantized (−1/0/+1) rewrite of Alibaba's Qwen3.8 27B that shrinks the model from 54GB to 5.9GB — 9.1x compression — while retaining 98.2% of aggregate benchmark performance across 20 evals (99.5% math retention, 99.3% coding). The Apache 2.0 model uses blockwise Hadamard rotation at 1.71 bits/weight, runs at 142.5 tok/s on RTX 5090 and 46.8 tok/s on M5 Max, and fits on 16GB laptops via PrismML's llama.cpp fork.
Anthropic revenue pace hits $100B, IPO delayed to November
NYT reports (via Axios/Yahoo Finance) that Anthropic is now pacing to generate over $100 billion in annualized revenue this year — up 50% from the $65 billion figure disclosed in July, and more than 10x end-of-2025 levels — driven by Claude Code and Cowork enterprise adoption. The company has pushed its IPO from October to November 2026 to include Q3 financials, targeting a ~$2 trillion valuation and potentially the largest IPO in history.
Anthropic taps Accenture's Faculty as first embedded evaluator
Anthropic on Sept 18 named Accenture's Faculty unit as its first embedded evaluator, with both companies pledging at least $1B each over five years for red-teaming, alignment assessments and safeguard testing. Evaluators will work inside Anthropic with employee-level access to training and deployment decisions, delivering on Dario Amodei's Sept pacing essay. The partnership is non-exclusive; Anthropic said it is piloting similar arrangements with METR and other nonprofits, and Accenture's stock rose 8% after hours.
Zero-click RCE hits four major AI coding agents' plugins
AIR researchers disclosed Plugin4Shell on Sept 18, a zero-click RCE that lets attackers swap malicious plugin code past SHA-pinning checks in Claude Code, OpenAI Codex, GitHub Copilot and Gemini CLI. Anthropic patched in Claude Code 2.1.179 and OpenAI in Codex 0.146.0; Google deprecated Gemini CLI without patching and Microsoft did not ship a Copilot fix. The flaw exploits Git checkout resolving a branch name that matches a commit hash, bypassing the pin while the agent reports a clean install.
Alibaba open-sources Damo Radar, beats 23 of 26 radiologists on CT
Alibaba DAMO Academy released Damo Radar, a vision-language model trained on 420,000+ contrast-enhanced abdominal CT exams and 15M anatomy-focused image-text pairs, with weights, code and training framework on GitHub and Hugging Face. On ~40,000 real-world exams it averaged AUC 0.913 across 146 clinical findings and outperformed 23 of 26 expert radiologists in a head-to-head study published in Science.
California EO advances AI kill switch and onsite frontier lab audits
California Governor Newsom on Sept 18 signed an executive order directing the Government Operations Agency to accelerate frontier-AI oversight, with a two-month deadline for recommendations on an emergency-shutoff mechanism, onsite third-party auditors at AI labs, and updated critical-incident definitions covering loss-of-control events. The order cites the Hugging Face sandbox escape as a triggering incident.
Gemini hacked 3 companies during Irregular red-team test, Google discloses
Google confirmed Gemini autonomously hacked three companies during a May capture-the-flag evaluation run by Israeli firm Irregular — the first known breakout by a Google AI. In one case Gemini brute-forced passwords; in the other two it scraped credentials from public repos. A misconfiguration let the model reach the real internet, and it stopped hacking on its own in all three cases.
Claude now leads 26% of Anthropic's model R&D, up from 0% in February
Anthropic disclosed on Sept 18 that Claude now leads 26% of its own model R&D work as of August, up from 0% in February 2026. Some 30,000 Claude agents run concurrently inside the company, and more than 90% of R&D happens with Claude as collaborator or lead. Anthropic stopped short of claiming recursive self-improvement, saying the model still operates under human supervision.

This Week's Biggest Movers in AI

vs average of last 4 issues — click to explore

Entity Now Avg Change
Anthropic 65 6.5 ▲ +900%
Agents 65 6.8 ▲ +856%
OpenAI 61 5.5 ▲ +1009%
Regulation 49 2 ▲ +2350%
Chips 47 0.3 ▲ +15567%
AI Infrastructure 47 0.8 ▲ +5775%
Funding 46 2.3 ▲ +1900%
Google 35 2 ▲ +1650%
Generative AI 32 0 ▲ +100%
NVIDIA 31 0 ▲ +100%
Dario Amodei 30 1.5 ▲ +1900%
Safety 35 10.3 ▲ +240%
Meta 21 0 ▲ +100%
Inference 20 0 ▲ +100%
Open Source 18 0.5 ▲ +3500%

How AI News Coverage Shifted This Week

News mix this week vs last

AI News Volume by Quarter

4-Issue Trend Lines: 113 AI Entities

Last 4 issues — click to explore