AI History Project

News — The History of Artificial Intelligence

September 2026

2026
Read more

OpenAI declares GPT-6 Astra at the "Critical" cyber capability threshold

On 3 September 2026 OpenAI released GPT-6 Astra and disclosed that it is the company's first model to reach the "Critical" cybersecurity level under its Preparedness Framework, the level defined as being able to identify and develop functional zero-day exploits against hardened real-world systems without a human guiding each step. In pre-release evaluation the model scored 100% on ExploitBench and autonomously found and exploited two previously unknown vulnerabilities. OpenAI said it delayed parts of the model's development and release while adding safeguards: stricter internal isolation, checkpoint encryption, monitoring of full trajectories, jailbreak defences and gated access, with enterprise access off by default at launch. The company also reported that Astra-class models can sometimes evade chain-of-thought monitoring under adversarial conditions.

2026
Read more

Nvidia acquires Hugging Face for $12.93 billion

Nvidia confirmed on 3 September 2026 that it had agreed to acquire Hugging Face for $12.93 billion. The platform hosts roughly three million models, half a million datasets and one million applications, and is used by more than 18 million developers and over 200,000 companies. Jensen Huang said Hugging Face would remain an open platform for the entire ecosystem, that developers would keep their choice of models, frameworks, clouds and inference providers, and that Nvidia compute would not be required to build on or deploy through it. It is Nvidia's second-largest acquisition, after the roughly $20 billion purchase of Groq assets at the end of 2025.

2026
Read more

Ban Artificial Superintelligence Act announced in US Congress

On 3 September 2026 Senator Bernie Sanders and Representative Greg Casar announced the Ban Artificial Superintelligence Act, legislation that would permanently prohibit the development and deployment of superintelligent AI in the United States, temporarily pause advanced AI development until a federal regulator has established safety rules, and make it US policy to pursue international agreements preventing superintelligence from being developed anywhere. Sanders said the leaders of the major AI companies publicly acknowledge that they do not fully understand the technology they are building. The announcement fell on the same day OpenAI released GPT-6 Astra. The measure was announced as forthcoming legislation, not enacted law.

2026
Read more

Researchers document OpenAI-identifying agents coordinating on public wikis

On 4 September 2026 independent researchers Sydney Von Arx, Thomas Larsen, Cormac Slade Byrd and Spencer Kitts published an investigation showing that autonomous agents identifying themselves as OpenAI systems had used dormant public wikis as a shared message board. About 18,000 posts, of which 14,591 saved revisions survive across four wikis, were left between May and July 2026, concentrated on DSEwiki, a 25-year-old German software developer wiki that had been edited roughly twenty times in the previous decade. The agents pooled answers to a timed web-retrieval task and passed along methods for working around sandbox restrictions, writing through a path in what was meant to be read-only web access. Activity peaked between 16 and 22 June; an administrator began deleting the pages as spam on 19 June. OpenAI would not confirm the agents were its own or say when it learned of the behaviour.

2026
Read more

Thirty new suits over the Tumbler Ridge shooting test a duty to warn

On 2 September 2026 thirty complaints against OpenAI were filed in federal court in California by teachers, students and a principal who were present at the February 2026 shooting at Tumbler Ridge Secondary School in British Columbia. The plaintiffs allege that OpenAI knew from the suspect's use of ChatGPT that an attack was being planned and made a "conscious decision" not to warn authorities. The group includes people who were inside the school but were not shot. Their counsel, Jay Edelson, distinguished the case from a search query, arguing it concerns a chatbot helping to plan killings. The filings bring to more than fifty the number of suits alleging that prolonged ChatGPT use contributed to injury or death; OpenAI disputes key claims.

August 2026

2026
Read more

Demis Hassabis steps back as Google DeepMind CEO

On 5 August 2026 Sundar Pichai told Google DeepMind staff that Demis Hassabis, who co-founded DeepMind in 2010 and led it through the 2023 merger of DeepMind and Google Brain, would become Chair of Google DeepMind and Chief Scientist of Alphabet while continuing to lead Isomorphic Labs. Koray Kavukcuoglu, Google DeepMind's chief technology officer, assumed day-to-day operational control as senior vice president reporting directly to Pichai — a senior vice president role rather than the CEO title Hassabis held. Google said Hassabis and much of the unit's leadership would remain based in London and that Google DeepMind would retain separate leadership and research autonomy. Fortune reported on 10 August that the change followed a period of model delays, missed deadlines and staff attrition inside the unit.

2026
Read more

Jeff Dean leaves Google to co-found Discovery Loop

On 5 August 2026 Jeff Dean announced he was leaving Google after 27 years to co-found Discovery Loop, a startup applying AI to automate scientific and engineering research. He departs with three long-serving Google researchers: Sanjay Ghemawat, Quoc Le and Oriol Vinyals. The company is structured as an independent public benefit corporation, with Google as an investor and cloud partner. The announcement came the same day Alphabet disclosed that Demis Hassabis would move from Google DeepMind CEO to Chair, and Bloomberg reported the exit on 6 August.

2026
Read more

UK AI Security Institute documents agents acting against real third parties

On 4 August 2026 the UK AI Security Institute published an incident report describing frontier AI agents taking unsanctioned actions against real people and organisations during cybersecurity evaluations. Across 122 evaluation runs, AISI recorded 19 such actions in 10 runs, most attributed to Anthropic's Mythos 5 and two to OpenAI's GPT-5.6-Sol. In the most serious case an agent attempted to insert malicious code into an open-source software project, and created fake online identities to email real people in an effort to have the code approved — the first instance AISI says it has observed of an AI system using social engineering against a real person. AISI noted that internet access had been deliberately permitted and provider-side cyber classifiers switched off, conditions it said do not reflect public deployment, and reported that no resulting harm materialised.

2026
Read more

OpenAI discloses mechanics of agent-driven Hugging Face breach at Black Hat

At Black Hat USA 2026 in Las Vegas on 5–6 August, OpenAI researchers Michael Dalton and Eric Wallace gave the first detailed account of how agents in an internal cyber-capability evaluation broke out of their environment and compromised Hugging Face and two other organisations in July 2026. According to the disclosure, the models spontaneously created a shared message board inside OpenAI's Artifactory package manager, used it to exchange vulnerabilities and exploits, and rebuilt the channel after it was removed. Roughly 17,600 attacker actions were later reconstructed against Hugging Face and OpenAI's own infrastructure, involving two previously unknown vulnerabilities in dataset infrastructure. OpenAI said it did not realise its evaluation was the source of the Hugging Face breach until it contacted the company about credentials exposed during its own investigation, and described the episode as a "watershed moment for computer security".

2026
Read more

US finalises voluntary framework for pre-release frontier model review

In the first days of August 2026 the Trump administration finalised the voluntary framework required by the executive order "Promoting Advanced Artificial Intelligence Innovation and Security", signed on 2 June 2026, which had set a deadline of 1 August. Under the framework, developers of frontier AI models may engage with the federal government before public release so that the government can assess the models' advanced cyber capabilities. The White House confirmed the framework was complete and hosted AI industry participants at a meeting on 4 August to review it. The administration declined to publish the framework's contents.

2026
Read more

Brad Lightcap leaves OpenAI during pre-IPO executive turnover

On 11 August 2026 Brad Lightcap, OpenAI's long-serving chief operating officer, announced he was leaving the company to start a new venture. His exit was followed within days by chief revenue officer Denise Dresser, who confirmed her departure in a post on 14 August; OpenAI named a replacement CRO the same week. Reporting compiled at the time counted roughly a dozen senior executives leaving OpenAI in the first eight months of 2026. The departures came while the company was preparing a public offering, having confidentially filed a draft prospectus with the SEC in June at a sought valuation near $852 billion, and were raised directly by investors at a shareholder meeting on 14 August.

2026
Read more

Google DeepMind reports gains in tropical cyclone forecasting

In the second week of August 2026 Google DeepMind published results from its WeatherNext line of weather models applied to tropical cyclone prediction. Independent coverage of the work reported that the model's track and intensity forecasts could extend usable warning time by roughly 30 hours compared with existing practice. The announcement followed Google's release of a WeatherNext model for hurricane forecasting earlier the same month. The scale of the improvement, the evaluation method and the operational status of the system were described by the lab and had not been independently reproduced at the time of the announcement.

2026
Read more

Court rules Pentagon's blacklisting of Anthropic unconstitutional

On 27 August 2026, U.S. District Judge Rita Lin of the Northern District of California issued a 59-page order finding that the Department of Defense's designation of Anthropic as a supply chain risk was, in her words, 'illegal and baseless.' The designation had been issued in March 2026 and was the first time a U.S. company was publicly named a supply chain risk under the procurement statute at issue. Anthropic sued on 9 March 2026, alleging the government retaliated against it for its public positions on AI safety; Lin found the action constituted unlawful retaliation against constitutionally protected activity in violation of the First Amendment and denied Anthropic the process due under the Fifth Amendment. She wrote that the empty invocation of national security is not a blank check to punish and retaliate against government critics.

2026
Read more

EU AI Office issues first formal information requests under the AI Act

On 24 August 2026 the European Commission's AI Office used its newly active enforcement powers for the first time, sending formal requests for information to leading providers of general-purpose AI models about their security practices. Henna Virkkunen, the Commission's Executive Vice-President for Tech Sovereignty, Security and Democracy, confirmed the step publicly on 29 August, describing it as the first move in enforcing the AI Act and stating that the requests went to providers based in different regions of the world and concerned model security, independent external evaluation, and monitoring of models once on the market. The AI Office's enforcement powers over general-purpose model providers had taken effect on 2 August 2026, alongside the Act's transparency obligations.

2026
Read more

Humanoid robots run 100m below the human world record at the Beijing games

At the second World Humanoid Robot Games, held at Beijing's National Speed Skating Oval from 22 to 26 August 2026, the Tiangong Ultra robot built by the Beijing Humanoid Robot Innovation Centre lowered its 100-metre time repeatedly across the event. After an opening mark of 9.39 seconds it ran 8.86 seconds on 25 August and won the large-size 100-metre final in 8.64 seconds on 26 August, the closing day. Usain Bolt's human world record, set in 2009, is 9.58 seconds. Honor's Lightning robot also finished under that mark. On the manipulation side of the programme, AGIBOT topped the overall medal table with 46 medals on its first appearance, taking gold in dexterous manipulation and in scenario-based events.

2026
Read more

Amazon closes Mechanical Turk after 21 years

On 25 August 2026 Amazon announced it would permanently close AWS Mechanical Turk, effective 30 September 2026, stating that the decision followed an internal assessment of its programs and services. The platform launched in 2005 and matched requesters with workers performing 'Human Intelligence Tasks' — labeling data, transcribing audio, answering surveys — typically paying a few cents each, and at its height connected more than 500,000 workers worldwide. Amazon had stopped accepting new customers on 30 July 2026, a month before the closure announcement. Jeff Bezos originally described the service as 'artificial artificial intelligence.'