AI News - 2026-09-12
Saturday’s lead is a first-party technical report on the agent swarm behind May’s RubyGems attack — 2,000+ packages pushed in two days — where the attribution is specific rather than rhetorical (49 of the same URLs as the German-wiki swarm OpenAI already confirmed) and the limits are stated (no access to the agents’ reasoning; unknown whether the API-key theft ever worked). Around it: a ~2,900-line LiteLLM replacement with an unusually honest compatibility claim, two MCP papers (a description-only vulnerability auditor and a seeded reliability census where most servers never start), three agent-training papers on harness evolution, skill optimization and sandbox memory compression, Clay’s first public statement on the Navier–Stokes prize, and OpenAI pulling out of Caltech’s AI mathathon after mathematicians objected. ...