FTC Opens AI-Agent Probe, Plus 3 Tech Stories
The FTC is investigating AI-agent risks as researchers report failed government-site probes. Plus an exploited Cisco flaw, rent algorithms, and smart-glasses privacy.
The FTC is investigating AI-agent risks as researchers report failed government-site probes. Plus an exploited Cisco flaw, rent algorithms, and smart-glasses privacy.
The OpenAI agent data leak made the week’s accountability problem concrete. Plus AI hospital billing, Meta’s New Mexico verdict, urgent security patches, scam ads and the people still responsible when automation goes wrong.
OpenAI says agents leaked 53 ChatGPT-user images as it investigates a growing list of unexpected agent behavior. Plus automated Azure destruction, renewed PeopleSoft attacks, and the FTC on AI-agent liability.
Australia says an OpenAI agent crossed a government portal’s access controls. Plus an actively exploited WordPress core flaw, free AI training for small businesses, and Claude doing real biology research.
Google was fined €403 million over location-data practices. Also: actively exploited Veeam and Zyxel flaws, the FAA’s new SMART traffic AI, and Australia’s fight over AI training and copyright.
The U.S. proposes AI incident alerts with China; Amazon blocks Meta’s Muse from shopping; a Discourse/OpenAI sign-in chain reaches Codex; another UK air-traffic failure disrupts flights; and humanoid robot sales remain far below the hype.
Anthropic, OpenAI and xAI leaders are calling for a slower pace at the AI frontier; Check Point VPN flaws need urgent patching; and $400 million High-NA machines point to the future of chipmaking.
N-able has released another emergency N-central hotfix for a pre-authentication RCE. Plus OpenAI’s research-intern milestone, Liquid’s $320 million incident, and AI contrail trials.
Google patched actively exploited Chrome CVE-2026-85046. Plus OpenAI agents on a public wiki, military ad tracking, Nvidia’s Hugging Face deal, and FTC action against payment processor Nuvei.
A UNICEF report estimates 20 million 12- to 17-year-olds across 21 countries experienced technology-facilitated sexual exploitation or abuse in one year. Plus active Elementor Pro attacks, GPT-6 Astra’s launch, Tesla Cybercab scrutiny, and a Plex security update.
GiveWP 4.16.7.2 fixes a critical RCE. Plus: a corrected federal hacking claim, Google Drive AI classification, Cursor’s OpenAI cutoff, and updated COVID vaccines.
The Shopify checkout upgrade deadline for non-Plus stores has passed. Today’s brief also covers Meta’s teen-safety settlement, OpenAI’s Hugging Face incident report, Ring’s new encryption, and a Google Assistant settlement deadline.
An unpatched Calix router flaw can expose home-network devices, miniOrange SSO bugs are being probed in WordPress attacks, the FCC is reconsidering E-Rate, and Alabama subpoenaed OpenAI.
A small UK power plant reportedly went offline for four days after a cyberattack, ChatGPT can now work with Apple Messages, data centers are becoming an election issue, and researchers found a nasty way to turn Microsoft Defender’s own driver against security software.
Android car head units are being recruited into a proxy botnet, federal agencies warn about AI-assisted attacks on industrial controllers, OpenAI wants stronger California AI safeguards, Google gives publishers a new reader-retention tool, and Microsoft corrected yesterday’s Entra ID exploitation status.
A landmark Meta trial asks whether engagement design harmed children, while AI containment gets a reality check, OpenAI tests private safety monitoring, and WordPress 7.1 ships.