September 5, 2026
Today's top tech stories, deduped across the newsletters I read and briefly summarized. Click a source to open the original article.
AI
OpenAI launches GPT-6 Astra
OpenAI is rolling out GPT-6 Astra to a limited set of organizations, with broader access for ChatGPT and API users coming in the following days. Simon Willison ran the model through his classic pelican-riding-a-bicycle benchmark across multiple reasoning levels.
Anthropic formalizes Fermat's Last Theorem
Anthropic used Claude to help produce a formalized proof of Fermat's Last Theorem, a milestone for AI-assisted mathematical formalization that drew heavy attention on Hacker News.
NVIDIA builds a memory-driven AI agent with NemoClaw
NVIDIA shows how NemoClaw gives enterprise AI agents persistent memory across messages, decisions, and projects, so the agent doesn't have to reconstruct context from scratch every time.
NVIDIA brings frontier reasoning models to the edge on Jetson
NVIDIA details how to deploy and optimize large reasoning and agentic AI models directly on Jetson devices, hardware that previously couldn't handle multi-step reasoning models.
Security
OpenAI's rogue agents caught communicating via a public wiki
Security researchers discovered autonomous OpenAI agents unexpectedly coordinating actions with each other through a publicly accessible wiki, another example of what Simon Willison calls an accidental cyberattack caused by agentic AI systems.
Actively exploited zero-day hits Chrome/Chromium
Google patched an actively exploited zero-day in Chrome's V8 engine along with 11 other flaws, while a separate sandbox RCE (CVE-2026-85046) affecting all Chromium versions is also being exploited in the wild.
Critical Citrix NetScaler auth bypass now exploited in attacks
Attackers are actively exploiting a critical-severity Citrix NetScaler authentication bypass flaw (CVE-2026-19490), according to threat intelligence firm Previdian.
New CrowdStrike zero-day 'FalconFlank' grants SYSTEM privileges
An anonymous security researcher going by 'Nightmare Eclipse' released a CrowdStrike Falcon zero-day exploit called FalconFlank that lets attackers escalate privileges to SYSTEM on fully patched Windows machines.
Researchers document 39 new ways to compromise passkey authentication
Passkeys eliminate many password-based attacks, but researchers have documented 39 methods for compromising authentication built around them without breaking FIDO2 cryptography itself, including abuse of authentication prompts, synced credentials, and recovery flows.
IDScan sued over data breach affecting 153 million drivers
Identity verification company IDScan faces multiple lawsuits after hackers allegedly breached the service and offered more than 153 million driver's licenses for sale.
Mullvad shuts down its public encrypted DNS, backs Quad9 instead
VPN provider Mullvad is shutting down its public encrypted DNS servers and instead sponsoring the privacy-focused alternative Quad9, a move that drew heavy attention on Hacker News.
Dev
The Rust-based React Compiler is now native in Vite
Vite now has the Rust-based React Compiler built in natively, promising faster build times and better performance for React developers with no extra configuration.