New tools, products, platforms, funding rounds, and company developments in AI security.
This article covers testimony from OpenAI CEO Sam Altman in a lawsuit brought by Elon Musk over OpenAI's conversion from a nonprofit to a for-profit structure. Altman argued that Musk abandoned the company rather than Altman stealing it, testifying that negotiations between the co-founders in 2017-2018 over corporate structure collapsed and Musk left OpenAI's board in February 2018. The dispute centers on whether Altman and other executives broke promises to keep OpenAI as a nonprofit and use Musk's roughly $38 million donation only for charitable purposes.
Two hacking groups in Latin America are using AI agents (software that can perform tasks independently) to automatically create custom hacking tools for attacks against targets in Mexico and Brazil. This represents a new threat where attackers let AI do much of the work of building attack software rather than writing it manually.
Amazon is launching Alexa for Shopping, an LLM-powered AI assistant (a language model trained to understand and respond to text) that integrates directly into Amazon.com to answer shopping questions and provide product recommendations. This new assistant replaces Amazon's previous shopping AI called Rufus and will appear prominently in the Amazon app and website when users type queries.
A legal dispute between Elon Musk and OpenAI leaders has revealed that private conversations shared with AI chatbots are not actually confidential, as evidenced by Greg Brockman's personal messages about Musk being used as court evidence. This case demonstrates that users should be cautious about disclosing sensitive personal information to AI systems because that data may not remain private.
SoftBank's Vision Fund recorded a $46 billion gain in the past year, mostly from its massive investment in OpenAI, which has grown to be worth $852 billion. However, this heavy concentration of OpenAI in SoftBank's portfolio has raised concerns about the company's debt and financial stability, leading ratings agency S&P Global to downgrade its outlook from stable to negative.
This article covers testimony from Sam Altman in a legal case where he is accused of stealing a charity. Altman defended himself on the stand, claiming he and his team built the charity through hard work and that Elon Musk attempted to destroy it rather than him stealing it.
OpenAI CEO Sam Altman testified in court to defend himself against a lawsuit from Elon Musk, who claims Altman deceived him about OpenAI's business structure. Musk alleges that Altman broke their founding agreement by converting OpenAI from a non-profit to a for-profit company, and is seeking Altman's removal, a $134 billion redistribution, and reversal of the conversion.
Google is integrating Gemini, its AI model, deeply into Android and other devices as an 'intelligence system' that can automate tasks across multiple apps, understand what's on screen, and complete actions like booking reservations or building shopping lists. The move comes as Google competes with OpenAI and Anthropic for AI dominance, while also powering part of Apple's AI strategy, and represents a shift from traditional chatbots to agentic AI (systems that take actions on a user's behalf).
This article describes a legal dispute where OpenAI CEO Sam Altman testified that Elon Musk tried to gain control of OpenAI, the company behind ChatGPT, including suggesting the company could pass to his children when he dies. Altman and other co-founders rejected Musk's control demands because they believed that no single person should control AGI (artificial general intelligence, an AI system that could outperform humans at most tasks). Musk eventually left OpenAI in 2018 and declined to invest when the company restructured into a for-profit entity.
LLM version 0.32a2 is a command-line tool update that adds support for OpenAI's newer /v1/responses endpoint, which allows reasoning-capable models to show their thinking process across multiple steps. Users can now see summarized reasoning tokens displayed in a different color, or hide them using the -R or --hide-reasoning flags.
Microsoft developed MDASH (multi-model agentic scanning harness), an AI system that uses over 100 specialized AI agents working together to find and validate security vulnerabilities in complex software like Windows. MDASH successfully discovered 16 vulnerabilities that were patched in May 2026, including two critical flaws that could allow remote code execution (running commands on a system without permission) in Windows networking components.
Anthropic's Mythos is an AI system that can autonomously find and exploit zero-day vulnerabilities (previously unknown security flaws) in major software, and both the US and China are racing to develop similar capabilities. While the US has maintained a lead in AI development, the performance gap is rapidly closing, and the real danger may be less about which superpower dominates and more about these capabilities leaking into criminal groups or ransomware operations that governments cannot control. The US and China are exploring diplomatic channels to establish guardrails around powerful AI systems.
Fix: Anthropic has launched Project Glasswing and committed $100 million in usage credits to help defenders secure critical infrastructure before similar capabilities become widely available. Additionally, both the US and China are weighing conversations focused on establishing guardrails covering AI models behaving unexpectedly, autonomous military systems, and nonstate actors using powerful open-source tools.
CSO OnlineMicrosoft developed MDASH, an AI system that uses over 100 specialized AI agents to automatically find software vulnerabilities, and it discovered 16 previously unknown Windows flaws, including four critical RCEs (remote code execution attacks where attackers can run commands on a system). The vulnerabilities were patched in Microsoft's May 12 Patch Tuesday release, and the system will enter private preview for enterprise customers next month.
Fix: The vulnerabilities were patched as part of Microsoft's May 12 Patch Tuesday release.
CSO OnlinePalo Alto Networks launched Idira, a new identity security platform designed to manage and secure human users, machine identities (non-human accounts that systems use), and AI agents as enterprises increasingly deploy autonomous AI systems. Unlike traditional identity management systems, Idira treats all identities as privileged and uses dynamic privilege controls, continuously discovering identities across cloud and developer environments while dynamically granting and revoking access permissions in real time rather than using static access tokens.
The UK's AI Security Institute tested whether GPT-5.5 (OpenAI's model) could find security vulnerabilities as well as Claude Mythos, and found they perform comparably. A smaller, cheaper model also performed equally well, though it needs more scaffolding (additional structure and guidance provided by the person writing prompts to the AI).
Codex, OpenAI's coding agent, previously lacked a sandbox (a constrained execution environment with restricted permissions) on Windows, forcing users to either approve every command or allow unrestricted access. To solve this, the Codex team built a custom sandbox implementation because existing Windows tools like AppContainer, Windows Sandbox, and Mandatory Integrity Control labeling were either too restrictive for open-ended developer workflows or incompatible with the product requirements.
CISA and G7 cyber agencies released guidance on minimum elements for AI software bills of materials (SBOMs, documents listing all components and dependencies in software), helping security leaders assess AI system risks before deployment. Unlike traditional SBOMs that only track code, AI SBOMs must document models, training data, prompts, infrastructure, and other AI-specific elements because AI systems' behavior depends on data and models as much as code. The guidance gives organizations a framework to ask vendors for transparency during procurement, though it shows what vendors claim exists rather than proving the systems are trustworthy.
Fix: S&P Global Ratings suggested that SoftBank could "limit negative financial impacts" by selling some assets. SoftBank has already been selling stakes in companies like T-Mobile and Nvidia to fund its OpenAI investment.
CNBC TechnologyMicrosoft announced MDASH (a multi-model agentic scanning harness that uses over 100 specialized AI agents working together to find security vulnerabilities), which discovered 16 new vulnerabilities in Windows, including four critical remote code execution flaws (where attackers can run commands on systems they don't own). MDASH achieved an 88.45% score on a public cybersecurity benchmark, outperforming other systems, and is currently available only through a limited private preview program.
Microsoft has announced MDASH, a new multi-model agentic scanning harness (a tool that uses multiple AI systems working together to automatically detect security threats). The system achieved top performance on industry security benchmarks, representing an advance in AI-powered cyber defense.
Meta is testing a feature on Threads that lets users tag a Meta AI account to answer questions or provide context in conversations, similar to how people use xAI's Grok on X. However, users discovered they cannot block the Meta AI account, which has caused frustration in the community.