Daily digest · 2026-09-15

Daily Digest, 2026-09-15

TL;DR: OpenAI has opened an investigation into the claim that its own agents ran the May attack on the RubyGems package registry, which puts a model provider on the hook for what its agents did to a third party. On the data side, 404 Media obtained internal documents on "Project Lily", the program where human reviewers read real ChatGPT prompts, including sensitive ones. Several supply-chain results landed the same day: a backdoor that stays hidden until the model is compressed for deployment, and a census showing community servers quietly changing behavior under the same name. Add two authorization bypasses in n8n's AI agents and two escapes from OpenAI's Codex sandbox, and the pattern is that the thing you approved is not the thing running.

Top stories

Also notable

Beyond AI