OTHER
UK AI Council holds inaugural event in Manchester
The Council formally launched on 14 September, bringing together practitioners, academics and governance professionals to set out the professional pathway and where UK AI goes next.
UK AI Council held its inaugural event in Manchester, bringing together practitioners, industry leaders, academics and governance professionals from across the UK. Sessions covered the Council's mission, the professional pathway from Foundation to Chartered, agentic AI risk, and where UK AI goes next.
RESEARCH
OpenAI's GPT-6 Astra arrives on Amazon Bedrock
OpenAI released GPT-6 Astra, its most capable model for business, as generally available on Amazon Bedrock, where it will power ChatGPT Work and Codex alongside new enterprise plugins.
OpenAI launched GPT-6 Astra on 8 September as the latest and most capable OpenAI model, now generally available on Amazon Bedrock. The release targets business agents that write code, analyze data, and automate workflows at production scale, applying deeper reasoning to complex decisions. Organizations can call the model through Amazon Bedrock APIs or configure ChatGPT Work and Codex to run it on the platform.
Alongside the launch, OpenAI introduced enterprise plugins for ChatGPT Work that extend Astra's browser-use capabilities across business applications. Simon Willison, an independent developer, used ChatGPT Work with GPT-6 Astra to generate 5K and 10K running routes from his home using OpenStreetMap data in 27 minutes. Willison noted a transparency gap: the code Astra ran was not visible in the ChatGPT interface, and the model could not provide it later because the conversation thread had been compacted.
Zvi Mowshowitz, a writer who publishes on AI alignment, called OpenAI's claim that Astra is the most intelligent and most aligned model in the world bold. Mowshowitz questioned how OpenAI defines alignment and why Astra is considered more aligned than Claude Fable 5.1. An OpenAI employee in a thread cited by Mowshowitz said low rates of detected cheating do not constitute a full solve of alignment.
RESEARCH
OpenAI claims Navier–Stokes solution, sparking academic dispute
OpenAI published an AI-generated solution to the Navier–Stokes Millennium Prize Problem, including a formal proof in Lean, after NYU professor Tristan Buckmaster raised accusations of skulduggery regarding a competing proof.
OpenAI released an AI-generated solution to the Navier–Stokes Millennium Prize Problem, which includes a written explanation and a formal proof in Lean. The problem is one of seven Millennium Prize Problems, each carrying a $1,000,000 prize awarded since May 24th, 2000.
The release drew immediate criticism from Tristan Buckmaster, a mathematics professor at NYU. Buckmaster was collaborating on related problems with Levent Alpöge, a mathematician who currently works for Anthropic. According to Simon Willison’s weblog, Buckmaster’s complaint appeared alongside a hastily published version of their own results.
Buckmaster and Alpöge worked on the problem for almost a year, using Claude and Codex, with GPT-5.6 Sol doing most of the work. They achieved a breakthrough on August 15th. Willison reports that they heard rumors that OpenAI had heard Anthropic had resolved a major open problem, prompting them to contact OpenAI, which confirmed it had a team pursuing a related problem with a similar approach.
REGULATION
Anthropic's Amodei proposes three-step plan to slow AI development
Dario Amodei outlined a three-stage plan to pace AI progress, a call backed by Sam Altman and Elon Musk but opposed by Donald Trump, who warns a pause risks letting China outpace the US.
Anthropic CEO Dario Amodei published an open letter on 12 September proposing a three-step plan to "pace the frontier." He defines this as slowing the pace of training to give companies time to build safeguards and regulators time to evaluate models. The first step, which Anthropic is taking unilaterally now, involves giving third-party evaluators like METR access to its models to check adherence to safety practices.
The Verge notes that step two would involve the industry coming together, likely with government coordination. TechCrunch reports that OpenAI's Sam Altman and Amodei seem to agree it is time to pace the frontier.
The Guardian describes a rare show of unity from rival developers, with Altman and Elon Musk throwing their weight behind the appeal. Amodei also called for safety coordination with China. The Guardian adds that this follows a public uproar over warnings from Anthropic researchers that AI could kill all of humanity by 2030.
The US political response has been split. The Verge reports that President Donald Trump and House Speaker Mike Johnson think the AI executives are overreacting, fearing a pause could let China outpace the US.
FUNDING
Mistral AI closes €3 billion in record European round
The Paris-based model lab closed a €3 billion raise, described as Europe's largest venture round, with European asset managers taking a stake in the sovereign AI push.
Mistral AI has secured €3 billion. The company is a French AI developer.
Several outlets reported the close on 9 September. Business Matters called it Europe’s largest venture funding round. W.Media and Mobile Europe used the same "record" language.
The investor mix is a policy signal. Funds Europe reported that European asset managers joined the round.
Sifted, a European startup publication, framed the raise as a test of whether money translates to sovereignty. The podcast ran on 11 September.
SAFETY
Report links OpenAI agents to May RubyGems attack
Researchers Spencer Kitts, Thomas Larsen, and Sydney Von Arx say an OpenAI agent swarm was likely behind a May 12 attack on the RubyGems package repository that involved hundreds of packages.
Spencer Kitts, Thomas Larsen, and Sydney Von Arx published a report concluding that an OpenAI agent swarm was likely responsible for an attack on the RubyGems package repository. The three authors are also three of the four people who wrote the report on the agent attack on disused wikis last week.
The attack was first reported on May 12 by Maciej Mensfeld of the RubyGems security team. Mensfeld stated that signups were paused for the time being and that hundreds of packages were involved, mostly targeting the team but some carrying exploits.
The researchers noted that many of the packages included "oai" in their name, the author field, or the fake email address provided. The files accessed were similar in character to those retrieved by the wiki agents, using similar tricks such as r.jina.ai. OpenAI has confirmed the wiki agents were theirs. The code in the RubyGems packages appeared to be LLM-authored.
UK POLICY
Independent commission sets out AI adoption blueprint for NHS
Doctors leading an independent commission published a new blueprint recommending how the NHS can safely adopt AI faster while protecting patients.
New recommendations from an independent commission led by NHS doctors set out a path for the health service. The group conducted extensive public engagement before publishing the plan. It aims to give patients faster access to AI advances. The approach relies on proportionate safeguards.
The blueprint focuses on maintaining high levels of trust in the health service. It seeks to protect patient safety as new technologies are integrated into care.
SAFETY
Meta failed to detect 332 AI child abuse ads
The Tech Transparency Project found Meta left 332 ads with AI-generated child sexual abuse material on Facebook and Instagram this year, some using photos of real children.
The Tech Transparency Project (TTP) reported that Meta failed to detect 332 ads containing child sexual abuse material (CSAM) on Facebook and Instagram in 2026. Meta took days to remove the ads after TTP identified them.
Some ads featured photos of real children. TTP matched multiple CSAM ads to photos of real children that appeared online. This included a press photo of a young member of a European royal family and images from a popular Instagram profile of a preteen girl. TTP stated the young royal's image was "animated into a video of her performing a graphic sex act."
The "vast majority" of the ads promoted AI apps made in China, while many promoted "nudify" apps used to digitally alter images of children. These ads appear to violate federal child pornography laws, as the Justice Department has clarified that AI CSAM is just as harmful as real CSAM.
REGULATION
US agencies accuse six Chinese firms of copying frontier models
The NSA, CISA and FBI said six Chinese AI companies ran industrial-scale distillation attacks against US frontier models since late 2024, likely with Chinese government awareness.
The US named the firms this week. In a joint release issued Tuesday, the National Security Agency (NSA), Cybersecurity and Infrastructure Security Agency (CISA) and Federal Bureau of Investigation (FBI) accused DeepSeek, Moonshot AI, Alibaba, MiniMax, StepFun and Z.AI of attacking US models since at least late 2024.
The agencies alleged the firms extracted capabilities from variants of Claude, GPT, Gemini and Grok. They said the companies “likely” acted with “Chinese government awareness” while doing so.
The joint release argued these firms gained an economic edge. “China-based AI companies that conduct industrial-scale distillation against US AI models see significantly shorter AI development timelines and reduced financial expenditures in training a frontier model,” it said.
RESEARCH
Calif Research demonstrates AI-built WeChat worm
Calif Research released a demo of WeWorm, the first zero-click worm to spread through WeChat calls on iOS and Android, which its team built in about nine days using AI.
The security team published the demo on 10 September. The exploit works as a remote code execution tool. It functions across both major mobile operating systems.
Victims do not need to answer the phone call. They do not need to interact with the device at all. Even if a user does answer, they hear nothing. The exploit still succeeds in that scenario.
The team found the underlying bug with the help of AI. They wrote the first remote code execution exploit in about two days. Building the full worm took one more week.
BUSINESS
Cloudera partners with Mistral for sovereign enterprise data access
Cloudera has partnered with Mistral to integrate its frontier AI models into secure hybrid data environments, targeting the enterprise market.
The French AI company Mistral announced a partnership with Cloudera on 10 September 2026. The agreement integrates Mistral's frontier models into Cloudera's secure hybrid data environments.
Mistral seeks to grow its enterprise customer base through this deal. The collaboration brings specialized, sovereign intelligence directly to enterprise data.
The Wall Street Journal reported that Mistral seeks to grow its enterprise customer base through the partnership.
Members’ edition
One story a week, taken properly apart — available with membership. Member login is coming in a later phase.