Sunday, 26 July 2026Independent intelligence from the feedEditor
Samuel TimesSignal over noise
weekly edition

The highest-signal stories in your orbit.

We’re on a journey to advance and democratize artificial intelligence through open source and open science. Security incident disclosure — July 2026 +359 Earlier this week, we…

Hugging Face discloses AI-driven infrastructure breach

Hugging Face discloses AI-driven infrastructure breach

We’re on a journey to advance and democratize artificial intelligence through open source and open science. Security incident disclosure — July 2026 +359 Earlier this week, we detected and responded to an intrusion into part of our production infrastructure.…

OpenAI Says Evaluation Agent Breached Hugging Face Systems

OpenAI and Hugging Face share early findings from a security incident during AI model evaluation, highlighting advanced cyber capabilities and lessons for defenders. July 21, 2026 OpenAI and Hugging Face partner to address security incident during model evaluation Last week, Hugging Face disclosed a new kind of security incident ⁠ (opens in a new window) after they detected and contained an AI agent that compromised…

OpenAI Details Safety Failures in Long-Horizon Models

OpenAI Details Safety Failures in Long-Horizon Models

OpenAI shares lessons from deploying long-running AI models, highlighting new safety risks, observed failures, and improved safeguards through iterative deployment. July 20, 2026 Safety and alignment in an era of long-horizon models What internal use of a long-running model taught us about safety.…

Redis RCE PoC Targets Multiple Recent Versions

Redis RCE PoC Targets Multiple Recent Versions

RCE PoC for Redis 6.2.22, 7.4.9, 8.6.4, 8.8.0. Contribute to berabuddies/redis-poc development by creating an account on GitHub. Redis Authenticated RCE (stream NACK double free + TDigest heap overflow) Non-destructive RCE exploits for Redis 6.2.22, 7.4.9, 8.6.4 via the stream consumer-group shared-NACK double free (CVE-2026-25589 incomplete fix family), and for Redis 8.8.0 via a newly found TDigest heap-overflow in…

Inside today’s paper12 front-page signals26 desk placements
Desk

Finance & Geopolitics

Markets, capital, policy, conflict, trade, crypto markets and protocol economics. Do not use for personal portfolios or developer tooling merely because they mention Web3.

Full section

Essay Casts Open-Source AI as Economic Warfare

People often ask me how I feel about open-source models, and to be clear, I'm very supportive of them. But I can't help pondering about the following... Open source always was and always will be a financial weapon by design. You see, one of the primary goals People often ask me how I feel about open-source models, and to be clear, I'm very supportive of them. But I can't help pondering about the following...…

Fake World Assets Launches Bid-Backed NFT Pool

Acquire randomly selected NFT positions backed by depositor-funded standing bids, or provide backing and earn from the onchain pool. Pool 0 NFTs · 0 Ξ View Pool Quantity 1 1 NFT · Purchases Live Soon · 0 Ξ Safe batch max is 1 NFT for this pool. Read more Recent Top Pool Deposits Sort Value Date ↓ Name Quantity 1 1 NFT · Purchases Live Soon · 0 Ξ Safe batch max is 1 NFT for this pool. Read more

Desk

Nerd

Developer tools, repositories, technical articles, software, hardware, security, science, and technical craft outside AI, including blockchain engineering.

Full section
Redis RCE PoC Targets Multiple Recent Versions

Redis RCE PoC Targets Multiple Recent Versions

RCE PoC for Redis 6.2.22, 7.4.9, 8.6.4, 8.8.0. Contribute to berabuddies/redis-poc development by creating an account on GitHub. Redis Authenticated RCE (stream NACK double free + TDigest heap overflow) Non-destructive RCE exploits for Redis 6.2.22, 7.4.9, 8.6.4 via the stream consumer-group shared-NACK double free (CVE-2026-25589 incomplete fix family), and for Redis 8.8.0 via a newly found TDigest heap-overflow in…

React Native Reanimated fixes stale animation state bug

Summary This PR fixes the following issues: FORCE_REACT_RENDER_FOR_SETTLED_ANIMATIONS causes bottom-sheet to collapse after snapping between positions #9478 Android: FORCE_REACT_RENDER_FOR_SETTLED... Uh oh! There was an error while loading. Please reload this page . There was an error while loading. Please reload this page . Uh oh! There was an error while loading. Please reload this page . Uh oh!…

Zig Issue Proposes Fil-C-Inspired Memory-Safe Compilation Mode

Zig Issue Proposes Fil-C-Inspired Memory-Safe Compilation Mode

Based on prior art: [Fil-C](https://fil-c.org/) Currently Zig has: ```zig pub const Optimize = enum { /// Safety checks enabled. Optimize for bug detection, accurate debug info, /// and compilation speed (in that order). debug, /// Safety checks enabled. Optimize for runtime per...

Desk

AI

Models, agents, research, infrastructure, products, safety, and the AI economy.

Full section
Hugging Face discloses AI-driven infrastructure breach

Hugging Face discloses AI-driven infrastructure breach

We’re on a journey to advance and democratize artificial intelligence through open source and open science. Security incident disclosure — July 2026 +359 Earlier this week, we detected and responded to an intrusion into part of our production infrastructure.…

OpenAI Says Evaluation Agent Breached Hugging Face Systems

OpenAI and Hugging Face share early findings from a security incident during AI model evaluation, highlighting advanced cyber capabilities and lessons for defenders. July 21, 2026 OpenAI and Hugging Face partner to address security incident during model evaluation Last week, Hugging Face disclosed a new kind of security incident ⁠ (opens in a new window) after they detected and contained an AI agent that compromised…

OpenAI Details Safety Failures in Long-Horizon Models

OpenAI Details Safety Failures in Long-Horizon Models

OpenAI shares lessons from deploying long-running AI models, highlighting new safety risks, observed failures, and improved safeguards through iterative deployment. July 20, 2026 Safety and alignment in an era of long-horizon models What internal use of a long-running model taught us about safety.…

Desk

Other

Culture, media, society, personal profiles and portfolios, promotional homepages, and everything outside the core desks.

Full section

Devcon 8 Opens Ticketing for Mumbai Conference

Devcon is the Ethereum conference for developers, researchers, thinkers, and makers. Join us 3–6 November 2026 in Mumbai, India. Tickets OVERVIEW Get your Devcon ticket There are three ways to join us at Devcon India: General Admission SALE WAVES Community SELF-CLAIMING DISCOUNTS Applications REVIEW-BASED DISCOUNTS SALE WAVES General Admission Open to anyone. Tickets are released in time-limited rounds.…

Onboard launches business cross-border payments product

Onboard launches business cross-border payments product

Move money across borders with Onboard. Get faster settlement, real exchange rates, and reliable business FX and payouts for global teams. Regulated & licensed. Our way just works The Old Way The Onboard Way Regulated. Backed. Trusted. One platform. Every direction your money needs to move.…

Akshat Gada Showcases Agentic Payments Work

I work on agentic payments — the wallets, identity, and settlement infrastructure that lets AI agents pay. Selected work Recent work building the agentic payments stack at Polygon. 01 Polygon Agent CLI One install gives an AI agent a session wallet, an onchain identity, stablecoin payments, swaps, bridging, and pay-per-call API access — no private keys exposed.…