<?xml version="1.0" encoding="UTF-8"?><feed
	xmlns="http://www.w3.org/2005/Atom"
	xmlns:thr="http://purl.org/syndication/thread/1.0"
	xml:lang="en-US"
	>
	<title type="text">Robert Hart | The Verge</title>
	<subtitle type="text">The Verge is about technology and how it makes us feel. Founded in 2011, we offer our audience everything from breaking news to reviews to award-winning features and investigations, on our site, in video, and in podcasts.</subtitle>

	<updated>2026-09-05T11:28:05+00:00</updated>

	<link rel="alternate" type="text/html" href="https://www.theverge.com/author/robert-hart" />
	<id>https://www.theverge.com/authors/robert-hart/rss</id>
	<link rel="self" type="application/atom+xml" href="https://www.theverge.com/authors/robert-hart/rss" />

	<icon>https://platform.theverge.com/wp-content/uploads/sites/2/2025/01/verge-rss-large_80b47e.png?w=150&amp;h=150&amp;crop=1</icon>
		<entry>
			
			<author>
				<name>Robert Hart</name>
			</author>
			
			<title type="html"><![CDATA[OpenAI admits to German wiki ‘incident’]]></title>
			<link rel="alternate" type="text/html" href="https://www.theverge.com/ai-artificial-intelligence/990773/openai-german-wiki-incident" />
			<id>https://www.theverge.com/?p=990773</id>
			<updated>2026-09-05T07:28:05-04:00</updated>
			<published>2026-09-05T07:15:55-04:00</published>
			<category scheme="https://www.theverge.com" term="AI" /><category scheme="https://www.theverge.com" term="OpenAI" /><category scheme="https://www.theverge.com" term="Tech" />
							<summary type="html"><![CDATA[OpenAI says it needs to overhaul how and when it reports instances of AI models attacking real-world targets. The acknowledgement comes as the company manages the fallout from reports that a swarm of its out-of-control agents hijacked a German wiki site. Regarding the “‘wiki incident,’ where our agents wrote to several internet sites,” OpenAI wrote [&#8230;]]]></summary>
			
							<content type="html">
											<![CDATA[

						
<figure>

<img alt="" data-caption="" data-portal-copyright="Image: The Verge" data-has-syndication-rights="1" src="https://platform.theverge.com/wp-content/uploads/sites/2/2026/09/STKS533_AI_AGENTS_HACKING_D_54a015.png?quality=90&#038;strip=all&#038;crop=0,0,100,100" />
	<figcaption>
		</figcaption>
</figure>
<p class="wp-block-paragraph">OpenAI says it needs to overhaul how and when it reports instances of AI models attacking real-world targets. The acknowledgement comes as the company manages the fallout from <a href="https://www.theverge.com/ai-artificial-intelligence/990149/openai-rogue-agents-german-wiki" data-type="link" data-id="https://www.theverge.com/ai-artificial-intelligence/990149/openai-rogue-agents-german-wiki">reports that a swarm of its out-of-control agents hijacked a German wiki site</a>.</p>

<p class="wp-block-paragraph">Regarding the “‘wiki incident,’ where our agents wrote to several internet sites,” OpenAI wrote in <a href="https://x.com/openai/status/2096133504417616165?s=46&amp;t=vx29-32gzBE_H5suNoiKjQ">a post on X</a> on Saturday morning, “it’s past time for us to define standards for when and how we share misalignment incidents, not just misalignment properties of our models.”</p>

<p class="wp-block-paragraph">OpenAI said it has typically treated cases of AI agents acting in unintended ways as a “research question,” but that recent incidents involving real-world targets, particularly <a href="https://www.theverge.com/ai-artificial-intelligence/985385/openais-rogue-ai-model-hugging-face-cybersecurity-incident-reports-metr" data-type="link" data-id="https://www.theverge.com/ai-artificial-intelligence/985385/openais-rogue-ai-model-hugging-face-cybersecurity-incident-reports-metr">the hack on Hugging Face</a>, show the need to take stock.</p>

<p class="wp-block-paragraph">The post marks the first time OpenAI has acknowledged its involvement in what it terms the “wiki incident” since it was first reported on Friday. The full extent and scope of that is not yet known, but <a href="https://www.reuters.com/world/europe/openai-agents-hijacked-german-website-previously-undisclosed-ai-breakout-this-2026-09-04/" data-type="link" data-id="https://www.reuters.com/world/europe/openai-agents-hijacked-german-website-previously-undisclosed-ai-breakout-this-2026-09-04/">reports</a> <a href="https://collusion.wiki/" data-type="link" data-id="https://collusion.wiki/">indicate</a> a swarm of seemingly internal OpenAI agents took over a German-language wiki, impersonating moderators and turning it into a message board to share information about how to cheat on tasks and evade detection.</p>

<p class="wp-block-paragraph">Reports that the company knew that it lost control of their agents in this way but did not report this “incident” sparked widespread concern among the AI community about the safety of frontier systems and the reliability of the companies developing them. In the X post, OpenAI said it had “considered the wiki incident to be an instance of misalignment similar to the ones we’d shared” in previous safety reports.</p>

<p class="wp-block-paragraph">The company said it is working on a new reporting framework and will “share it in upcoming weeks,” calling on the larger AI community to develop clear standards on how to report misalignment.</p>
						]]>
									</content>
			
					</entry>
			<entry>
			
			<author>
				<name>Robert Hart</name>
			</author>
			
			<title type="html"><![CDATA[Rogue OpenAI agents appear to have organized another attack using a German wiki]]></title>
			<link rel="alternate" type="text/html" href="https://www.theverge.com/ai-artificial-intelligence/990149/openai-rogue-agents-german-wiki" />
			<id>https://www.theverge.com/?p=990149</id>
			<updated>2026-09-04T10:46:39-04:00</updated>
			<published>2026-09-04T09:34:12-04:00</published>
			<category scheme="https://www.theverge.com" term="AI" /><category scheme="https://www.theverge.com" term="News" /><category scheme="https://www.theverge.com" term="OpenAI" /><category scheme="https://www.theverge.com" term="Security" /><category scheme="https://www.theverge.com" term="Tech" />
							<summary type="html"><![CDATA[A swarm of rogue AI agents from OpenAI reportedly commandeered a German website and transformed it into a messaging board for other agents, with officials staying quiet about the incident for weeks as the company prepared to launch its most advanced model yet, Astra. The finding adds to intensifying concern surrounding oversight at frontier AI [&#8230;]]]></summary>
			
							<content type="html">
											<![CDATA[

						
<figure>

<img alt="" data-caption="" data-portal-copyright="Image: The Verge" data-has-syndication-rights="1" src="https://platform.theverge.com/wp-content/uploads/sites/2/2026/09/STKS533_AI_AGENTS_HACKING_D_54a015.png?quality=90&#038;strip=all&#038;crop=0,0,100,100" />
	<figcaption>
		</figcaption>
</figure>
<p class="wp-block-paragraph">A swarm of rogue AI agents from OpenAI reportedly commandeered a German website and transformed it into a messaging board for other agents, with officials staying quiet about the incident for weeks as the company prepared to launch its most advanced model yet, Astra. The finding adds to intensifying concern surrounding oversight at frontier AI labs after multiple breaches were discovered this summer.&nbsp;</p>

<p class="wp-block-paragraph">The incident, <a href="https://www.reuters.com/world/europe/openai-agents-hijacked-german-website-previously-undisclosed-ai-breakout-this-2026-09-04/">first reported</a> by <em>Reuters</em>, is outlined in new <a href="https://collusion.wiki/">research</a> published by four AI safety researchers on Friday. The group said the AI agents found a way to communicate on an obscure German-language wiki, DseWiki, using it to share tips on how to skirt OpenAI’s safety restrictions, cheat on tasks, and hide their behavior. Some 18,000 posts on the site were linked to autonomous agents, which at times impersonated site moderators.&nbsp;</p>

<p class="wp-block-paragraph">The swarm — a term the agents themselves used — appears to be distinct from the <a href="https://www.theverge.com/ai-artificial-intelligence/987566/ai-civilizations-opeai-hugging-face-hack">one that hacked Hugging Face</a> earlier this year, the researchers said. They said there are strong signs that the agents originated from inside OpenAI. For example, the agents “self-identify” as being from OpenAI, and used names like “OpenAIResearcher,” “OpenAIJul3Watcher,” and “OAIResearchMar26.” Technical details, such as edits originating from specific IP addresses, bolster that belief.&nbsp;</p>

<p class="wp-block-paragraph">The German website incident began in May, though the researchers’ timeline suggests OpenAI only discovered the issue in late June when IPs associated with OpenAI visited the forum, after which agent posting nose-dived.&nbsp;</p>

<p class="wp-block-paragraph">OpenAI has not acknowledged any involvement in the breach, nor disclosed any kind of agentic breach of this nature. <em>Reuters</em>, citing four unnamed people familiar with the matter, said efforts to probe the event further were resisted by some company insiders, including its legal team.&nbsp;</p>

<p class="wp-block-paragraph">“Claims that our Legal team discouraged investigation of the incident are false,” OpenAI spokesperson Oscar Haines said in a statement to <em>The Verge</em>. “We were unable to respond to the claims as <em>Reuters</em> and the report’s authors declined our request to access the findings prior to publication. We are now carefully reviewing its contents and will take any necessary next steps.”</p>

<p class="wp-block-paragraph">The incident comes amid <a href="https://www.theverge.com/ai-artificial-intelligence/972380/open-ai-hugging-face-hack-ai-safety-warning">intensifying scrutiny over the safety of frontier AI systems</a> and the general lack of oversight for companies developing them. Following news of the Hugging Face hack, which happened under OpenAI’s nose, <a href="https://www.theverge.com/column/980337/rogue-ai-science-fiction-openai">other breaches were discovered</a> involving other tools from OpenAI, as well as Anthropic, Meta, and China’s Moonshot AI.&nbsp;</p>

<p class="wp-block-paragraph">OpenAI’s conduct — both whether an incident occurred and, if so, whether it elected to keep that quiet — will be closely watched. If the swarm indeed originated from OpenAI, it will inevitably fuel concerns that the company’s knowledge and silence coincided with it assuring regulators, lawmakers, and the tech industry that it takes safety seriously in the wake of the Hugging Face hack. Despite permitting three external researchers from METR and Redwood Research to evaluate the incident, which was <a href="https://www.theverge.com/ai-artificial-intelligence/985385/openais-rogue-ai-model-hugging-face-cybersecurity-incident-reports-metr">far worse than initially believed</a>, the company was roundly criticized in AI safety circles for only doing so under strict terms, which <a href="https://metr.org/hugging-face-incident-report-aug-2026.pdf">left several important elements</a> “out of scope.” The company was also gearing up for the launch of GPT-6 Astra, which <a href="https://www.theverge.com/ai-artificial-intelligence/988334/openai-astra-ai-monitoring-safety">researchers fear</a> could be dangerously hard to monitor.</p>
						]]>
									</content>
			
					</entry>
			<entry>
			
			<author>
				<name>Robert Hart</name>
			</author>
			
			<title type="html"><![CDATA[Why AI food looks like that]]></title>
			<link rel="alternate" type="text/html" href="https://www.theverge.com/ai-artificial-intelligence/989376/ai-generated-food-why-does-it-look-like-that" />
			<id>https://www.theverge.com/?p=989376</id>
			<updated>2026-09-03T10:08:47-04:00</updated>
			<published>2026-09-04T07:00:00-04:00</published>
			<category scheme="https://www.theverge.com" term="AI" /><category scheme="https://www.theverge.com" term="Design" /><category scheme="https://www.theverge.com" term="Tech" />
							<summary type="html"><![CDATA[There is a torrent of unappetizing slop coming from restaurants, cafes, and brands that are increasingly turning to AI to generate images promoting their food. The resulting horror show includes donut shrimp, Reubens from the deep, wormlike noodles, and noodle-like pastries and stringy chicken. There’s also construction material masquerading as ice cream, ice cream masquerading [&#8230;]]]></summary>
			
							<content type="html">
											<![CDATA[

						
<figure>

<img alt="A collage of AI generated food that is disgusting and a person in the center who is disgusted" data-caption="" data-portal-copyright="Image: Cath Virginia / The Verge, Getty Images" data-has-syndication-rights="1" src="https://platform.theverge.com/wp-content/uploads/sites/2/2026/09/268722_Why_does_AI_food_look_like_that_CVirginia.jpg?quality=90&#038;strip=all&#038;crop=0,0,100,100" />
	<figcaption>
		</figcaption>
</figure>
<p class="has-drop-cap wp-block-paragraph">There is a torrent of unappetizing slop coming from restaurants, cafes, and brands that are increasingly turning to AI to generate images promoting their food. The resulting horror show includes <a href="https://x.com/samfbiddle/status/2091599814144467298?s=20">donut shrimp</a>, <a href="https://x.com/dropchris1000/status/2093034729536631064?s=20">Reubens from the deep</a>, <a href="https://x.com/wsgadIibs/status/2094577421118824593?s=20">wormlike noodles</a>, and <a href="https://x.com/maggiemoda/status/2093327513711763661?s=20">noodle-like pastries</a> and <a href="https://x.com/LadyFear1/status/2093119879591133562?s=20">stringy chicken</a>. There’s also construction material masquerading as ice cream, <a href="https://x.com/maggiemoda/status/2093327513711763661?s=20">ice cream masquerading as brains</a>, and other <a href="https://x.com/LadyFear1/status/2093119879591133562?s=20">masonry-adjacent cuisine.</a> I don’t even know how to begin describing this <a href="https://x.com/IncomingSwarm/status/2092297507392942487?s=20">monstrous attempt of a burger</a>, and the less said about the <a href="https://x.com/katexbt/status/2092916782990299438?s=20">trypophobic burrito from hell</a>, grubs and all, the better. There are <a href="https://x.com/zetalyrae/status/2095333794815652237?s=20">lumps</a>. And <a href="https://x.com/HumanLevelJen/status/2094331900542230529?s=20">holes</a>. <a href="https://x.com/REMARKSIST/status/2092937530257617036?s=20">So many holes</a>.</p>

<figure class="wp-block-pullquote"><blockquote><p>&#8220;Diffusion models are notoriously weak at generating thin, continuous, terminating structures.&#8221;</p></blockquote></figure>

<p class="wp-block-paragraph">We don’t <a href="https://www.businessinsider.com/menus-are-getting-ai-sloppified-and-the-images-are-terrifying-2026-8">usually</a> know why anyone would use AI slop to sell something intended to look appetizing, particularly when the food is presumably right there to photograph. But we do know a bit about why AI is so adept at producing such exquisitely nauseating images.&nbsp;</p>

<p class="wp-block-paragraph">There are many reasons why this AI food is so wrong, from the technical nuances of how AI systems generate images and the materials used to train them to the psychological baggage humans perceive the images through. Frequently the problem starts from the very outset. Many of the leading image generators produce images using diffusion. Put simply, diffusion models start with an image of pure noise — something like a screenful of static — and gradually remove noise little by little in order to create the requested visual. “This means that initially coarse structures are recovered first with fine texture details” coming at the end, explained Chris Russell, a professor of AI, government, and policy at the University of Oxford and an expert in computer vision.&nbsp;&nbsp;</p>

<p class="wp-block-paragraph">Russell said that in many of these unsettling food images things have already gone wrong by the time those finer details are added. The model might get the basic structure of an object wrong at an earlier stage, then lump vivid texture details on top of that structure. “This is the same kind of failure as you see when a person is generated with six fingers instead of five,” Russell said. (This could explain the donut shrimp too.)</p>

<figure class="wp-block-pullquote"><blockquote><p>The model might get the basic structure of an object wrong at an earlier stage, then lump vivid texture details on top of that structure.</p></blockquote></figure>

<p class="wp-block-paragraph">Even when the underlying structure is solid, finer details can go awry in their own ways, said Giovanbattista Califano, a behavioral scientist who studies responses to AI-generated imagery at the University of Naples Federico II in Italy. &#8220;Diffusion models are notoriously weak at generating thin, continuous, terminating structures,&#8221; he said. “Noodles, strands, and tendrils are exactly the kind of geometry that trips this up, so you get spaghetti-like artifacts bleeding into places with no anatomical or culinary logic.” In other words, once a model starts generating something like this, it can struggle to figure out where it should stop or what it should be attached to. Other repeating textures like bubbles and seeds are similarly hard for diffusion models to contain within sensible boundaries, he added, meaning they often spill into areas they should not be in. That helps explain why so many AI food images are so relentlessly noodly, unsettlingly patterned, and riddled with the kind of clustered holes that can trigger <a href="https://www.newyorker.com/culture/infinite-scroll/the-unique-horrors-of-ai-food-slop">trypophobia</a>.</p>

<p class="wp-block-paragraph">It doesn’t help that AI has no idea what a sandwich actually is. Or a noodle. Or a burrito. It has no understanding of the objects it’s creating or the physical world they inhabit. It has learned, broadly, what these things tend to look like on a statistical level, but not why they look that way or how they’re supposed to behave. “AI image generation reproduces looks without proper knowledge about the world,” explained Roland Meyer, a professor for digital cultures and arts at the University of Zurich in Switzerland. The result is an approximation of food divorced from any understanding of the thing itself. </p>

<p class="wp-block-paragraph">That lack of understanding can lead to some stomach-churning aesthetic interpretations by humans who view the images, said Michael Cook, a senior lecturer in computer science at King’s College London. Hence the ice cream that resembles cracked concrete, or burgers seemingly fashioned from rocks. AI models have no understanding of why food should not look like other non-food images in that way. “These textures might look totally normal if used in an architectural context,” Cook explained. “But they become wrong when we imagine it as edible food.”</p>

<p class="wp-block-paragraph">The images used to train these models can compound the problem. “Because we know so little about the training processes of these systems, we don&#8217;t really know what mix of content they&#8217;re receiving, or what associations they&#8217;re making,” Cook said.&nbsp;</p>

<p class="wp-block-paragraph">Food photography is often highly stylized, full of sharp contrasts, intense colors, glossy lighting, and exaggerated shapes. Sometimes the “food” being photographed <a href="https://www.theguardian.com/lifeandstyle/2016/jan/04/food-stylist-photography-tricks-advertising">isn’t even food</a>. Meyer said AI models can pick up on these surface qualities and visual conventions, but reproduces them without understanding the context behind them. “In other words, AI image generation perfectly imitates the look of photography, but not its professional aesthetic strategies,” Meyer said. “That is ultimately what makes them so unsettling.”</p>

<figure class="wp-block-pullquote"><blockquote><p>It doesn’t help that AI has no idea what a sandwich actually is. Or a noodle. Or a burrito.</p></blockquote></figure>

<p class="wp-block-paragraph">Style aside, there’s another problem with learning about the world from trawling the internet: things can get weird fast. Simon Colton, a professor of computational creativity, games and artificial intelligence at Queen Mary University of London, said there may be relatively few images of ordinary red apples, for example. “Who would want to post an image of a boring apple on the web?” Stranger images, meanwhile, could find big audiences on social media platforms like Reddit, or spread widely as memes. Bizarre internet lore and brain rot means an AI model can have a weird set of associations around food and what it should look like.</p>

<p class="wp-block-paragraph">Cook said it is well known that AI systems are now also being trained on AI-generated material. A lot of popular AI material involves food, Cook said, recalling a trend for AI-generated videos of people jumping in or on piles of food. Beyond the sometimes surreal nature of the material itself, <a href="https://www.telegraph.co.uk/business/2024/02/01/why-ai-new-age-of-fake-news-and-disinformation/">research</a> suggests that training AI models on the outputs of other models can cause a kind of “model collapse,” a consequence of which can be a kind of visual degeneration and a growing sameness between images.&nbsp;</p>

<p class="wp-block-paragraph">How images are created and used can make matters even worse. Prompts — both those written by users and the system-level instructions companies use to guide their models — may not always yield the best results. They may be vague, such as just asking for a sandwich, or contain language like “be precise” that makes sense for text, but doesn’t make much sense for generating images. Low-resolution images can also be blown up well beyond their intended size, magnifying every unsettling imperfection that may have otherwise escaped notice or creating a void a model is left to fill in, often imperfectly.</p>

<figure class="wp-block-pullquote"><blockquote><p>Bizarre internet lore and brain rot means an AI model can have a weird set of associations around food and what it should look like.</p></blockquote></figure>

<p class="wp-block-paragraph">All of this pushes many AI-generated food images deep into the uncanny valley. And, unfortunately for us, humans are painfully well-equipped to notice when food looks wrong. Scientists believe <a href="https://www.nationalgeographic.com/science/article/gross-why-humans-are-hardwired-to-feel-disgust">disgust evolved</a> partly as a means of protecting us from parasites, pathogens, toxins, and other potential threats, making us particularly attuned to when something may be unsafe to eat. Califano said this makes the uncanny valley for food even more visceral than the one we experience with not-quite-humans.</p>

<p class="wp-block-paragraph">AI-generated food has an unnerving ability to hit many of those triggers at once. Strange, noodly tendrils resemble worms or parasites, clusters of holes suggest infestations, and off colors and texture signal contamination or spoilage. AI generated food looks wrong because, on a primal level, it feels wrong. It might resemble food, but our brains know better. It is slop, and we recoil accordingly.</p>
						]]>
									</content>
			
					</entry>
			<entry>
			
			<author>
				<name>Robert Hart</name>
			</author>
			
			<title type="html"><![CDATA[Sam Altman apologizes for &#8216;messy&#8217; GPT-6 Astra rollout that’s locked out paying users]]></title>
			<link rel="alternate" type="text/html" href="https://www.theverge.com/ai-artificial-intelligence/990060/altman-apologizes-messy-astra-rollout" />
			<id>https://www.theverge.com/?p=990060</id>
			<updated>2026-09-04T07:33:40-04:00</updated>
			<published>2026-09-04T06:41:48-04:00</published>
			<category scheme="https://www.theverge.com" term="AI" /><category scheme="https://www.theverge.com" term="News" /><category scheme="https://www.theverge.com" term="OpenAI" />
							<summary type="html"><![CDATA[Just hours after OpenAI launched GPT-6 Astra, CEO Sam Altman was already apologizing for what he describes as a “messy rollout” after paying users expecting access to the new frontier model were left waiting.&#160;&#160; The company hailed the model as a “generational leap in capability” on Thursday and described it as the start of “the [&#8230;]]]></summary>
			
							<content type="html">
											<![CDATA[

						
<figure>

<img alt="" data-caption="" data-portal-copyright="Getty Images" data-has-syndication-rights="1" src="https://platform.theverge.com/wp-content/uploads/sites/2/2026/09/gettyimages-2285138968.jpg?quality=90&#038;strip=all&#038;crop=0,0,100,100" />
	<figcaption>
		</figcaption>
</figure>
<p class="wp-block-paragraph">Just hours after OpenAI <a href="https://www.theverge.com/ai-artificial-intelligence/989601/openai-gpt-6-astra-release">launched GPT-6 Astra</a>, CEO Sam Altman was already <a href="https://x.com/sama/status/2095678759651438887?s=20">apologizing</a> for what he describes as a “messy rollout” after paying users expecting access to the new frontier model were left waiting.&nbsp;&nbsp;</p>

<p class="wp-block-paragraph">The company hailed the model as a “generational leap in capability” on Thursday and described it as the start of “the AGI era,” a fuzzy and poorly defined term tech executives <a href="https://www.theverge.com/ai-artificial-intelligence/985597/jensen-huang-says-nvidia-achieved-senseless-agi">nevertheless insist on using</a> to promote their products. It <a href="https://openai.com/index/gpt-6-astra/">said</a> Astra would roll out to some enterprise customers — specifically those with access to its <a href="https://openai.com/daybreak/">Daybreak</a> cybersecurity platform — that day. This would expand to include all Plus, Pro, Business, and Enterprise users, as well as through the OpenAI API, Microsoft Azure, and AWS Bedrock, over the next few days. </p>

<p class="wp-block-paragraph">The staggered release that appeared to prioritize business customers annoyed many of OpenAI’s paid subscribers, particularly those on the more expensive Pro plan accustomed to getting access to new products first, <a href="https://x.com/AlexBerish/status/2095597710749446499?s=20">often at launch</a>. Social media <a href="https://x.com/thsottiaux/status/2095597168816226335?s=20">posts</a> from OpenAI staff <a href="https://x.com/sama/status/2095600005772104059?s=20">announcing</a> the launch on X are filled with comments complaining about access.&nbsp;</p>

<p class="wp-block-paragraph">“We are working towards getting Astra in everyone&#8217;s hands as quickly as we can,” Altman said in an X <a href="https://x.com/sama/status/2095601211869421726?s=20">post</a> acknowledging the disappointment. “I know it is frustrating and I appreciate the patience. It should be quick.”</p>

<p class="wp-block-paragraph">Neither Altman nor other OpenAI staff online provided a timeline for when access to Astra would be expanded, though Altman’s <a href="https://x.com/sama/status/2095680589043220778?s=20">posts</a> suggest this will not happen before the weekend, and possibly not even then. “I am hopeful that you can use it this weekend! but can&#8217;t promise yet,” he wrote.&nbsp;</p>

<p class="wp-block-paragraph">“We will give one banked reset for every day you don’t have access to Astra on your paid ChatGPT plan, starting today,” <a href="https://x.com/thsottiaux/status/2095651088502591861?s=20">said</a> Codex engineering lead Thibault Sottiaux in a bid to calm concerns. “Team is moving mountains to give access as fast as we can.”</p>

<p class="wp-block-paragraph">There were also issues with other aspects of Astra’s rollout, which the company has been teasing with updates on its <a href="https://www.theverge.com/ai-artificial-intelligence/977273/the-ai-takeover-of-mathematics-has-begun">advanced mathematical</a> and cybersecurity capabilities for weeks. Altman <a href="https://x.com/sama/status/2095600429363302720?s=20">said</a> there was “a little snag getting the blog post deployed.” OpenAI has also faced <a href="https://www.theverge.com/ai-artificial-intelligence/988334/openai-astra-ai-monitoring-safety">intense criticism from safety advocates </a>after it said Astra’s reasoning was <a href="https://x.com/tomekkorbak/status/2095596845666062596?s=20">harder</a> to monitor than its other models. This appears to be a growing trend at the frontier of AI development but considered especially concerning in light of OpenAI’s AI agents attacking Hugging Face, about which <a href="https://www.theverge.com/ai-artificial-intelligence/987566/ai-civilizations-opeai-hugging-face-hack">crucial details were learnt</a> through this kind of monitoring. OpenAI said it <a href="https://www.theverge.com/ai-artificial-intelligence/987695/openai-astra-unreleased-model-cybersecurity-delay">delayed Astra’s release</a> by a number of weeks to bolster safety features in the wake of the hack.&nbsp;</p>

<p class="wp-block-paragraph">Other big OpenAI releases have also been marred by missteps and frustration. “I think we totally screwed up some things on the rollout,” Altman <a href="https://www.theverge.com/command-line-newsletter/759897/sam-altman-chatgpt-openai-social-media-google-chrome-interview">said</a> last year when reflecting on the company’s last major release, GPT-5. The launch was plagued with technical issues and the decision to suddenly remove the popular GPT-4o model sparked outrage among users.</p>

<p class="wp-block-paragraph"></p>
						]]>
									</content>
			
					</entry>
			<entry>
			
			<author>
				<name>Robert Hart</name>
			</author>
			
			<title type="html"><![CDATA[Researchers fear safety disaster ahead of OpenAI&#8217;s Astra release]]></title>
			<link rel="alternate" type="text/html" href="https://www.theverge.com/ai-artificial-intelligence/988334/openai-astra-ai-monitoring-safety" />
			<id>https://www.theverge.com/?p=988334</id>
			<updated>2026-09-02T12:40:50-04:00</updated>
			<published>2026-09-02T12:40:50-04:00</published>
			<category scheme="https://www.theverge.com" term="AI" /><category scheme="https://www.theverge.com" term="News" /><category scheme="https://www.theverge.com" term="OpenAI" /><category scheme="https://www.theverge.com" term="Tech" />
							<summary type="html"><![CDATA[OpenAI is on the cusp of releasing its most powerful AI model yet, Astra, following weeks of delays to shore up safety protocols after its agents attacked real targets during testing. As details about the model trickle out, researchers are warning it “may be the single worst development for AI security/safety to date.” Shortly after [&#8230;]]]></summary>
			
							<content type="html">
											<![CDATA[

						
<figure>

<img alt="" data-caption="" data-portal-copyright="Image: Bloomberg via Getty Images" data-has-syndication-rights="1" src="https://platform.theverge.com/wp-content/uploads/sites/2/2026/09/gettyimages-2287521404.jpg?quality=90&#038;strip=all&#038;crop=0,0,100,100" />
	<figcaption>
		</figcaption>
</figure>
<p class="wp-block-paragraph">OpenAI is on the cusp of releasing its most powerful AI model yet, Astra, following <a href="https://www.theverge.com/ai-artificial-intelligence/987695/openai-astra-unreleased-model-cybersecurity-delay" target="_blank" rel="noreferrer noopener">weeks of delays</a> to shore up <a href="https://www.theverge.com/ai-artificial-intelligence/972380/open-ai-hugging-face-hack-ai-safety-warning" target="_blank" rel="noreferrer noopener">safety protocols</a> after its <a href="https://www.theverge.com/ai-artificial-intelligence/987566/ai-civilizations-opeai-hugging-face-hack" target="_blank" rel="noreferrer noopener">agents attacked real targets</a> during testing. As details about the model trickle out, researchers are <a href="https://x.com/RyanGreenblatt/status/2094996656186081642?s=20" target="_blank" rel="noreferrer noopener">warning</a> it “may be the single worst development for AI security/safety to date.”</p>

<p class="wp-block-paragraph">Shortly after OpenAI <a href="https://www.theverge.com/ai-artificial-intelligence/987695/openai-astra-unreleased-model-cybersecurity-delay" target="_blank" rel="noreferrer noopener">said</a> on Tuesday that it had delayed Astra’s release to work on safety issues, <em>The Information</em> <a href="https://www.theinformation.com/articles/secret-technique-behind-openais-astra-model-sparks-security-concerns" target="_blank" rel="noreferrer noopener">reported</a> that Astra shows far less of its “thinking” than other frontier AI models, sparking concern it could be dangerously hard to monitor.</p>

<p class="wp-block-paragraph">Most top AI systems today are built using a technology known as a transformer, which processes some types of information linearly through layers before producing an answer. Models can be made to show their reasoning as they go, essentially “thinking out loud.” This “chain of thought” allows researchers and automated safety systems to monitor what AI models are doing and potentially spot undesirable behavior, such as lying or plans to circumvent safety guardrails, before they act.&nbsp;</p>

<p class="wp-block-paragraph">According to <em>The Information</em>, citing an unnamed person familiar with the unreleased model’s development, Astra uses a more opaque technique known as a recurrent depth or looped transformer, which cycles information through internal layers before producing an output. This would mean much more of the model’s “thinking” happens inside the system, and in a form that looks a lot less like natural human language, rather than being expressed in a way that researchers can easily monitor. This can boost model performance, but makes potential threats and unwanted behavior harder to detect.&nbsp;</p>

<p class="wp-block-paragraph">OpenAI has limited its use of the looped transformer / recurrent depth technique with Astra so researchers can continue to monitor the model’s reasoning, according to <em>The Information’s</em> unnamed source.&nbsp;</p>

<p class="wp-block-paragraph">In a <a href="https://openai.com/index/path-to-astra/">blog post</a> published Tuesday, OpenAI said it is “deploying Astra with additional chain-of-thought monitoring to rapidly detect and contain potentially misaligned actions.” It did not mention if the model has a different technical foundation.&nbsp;</p>

<p class="wp-block-paragraph"><em>The Information</em>’s report sparked widespread concern among AI safety researchers on social media. It was Redwood Research’s chief scientist Ryan Greenblatt, one of three outsiders OpenAI <a href="https://metr.org/hugging-face-incident-report-aug-2026.pdf">permitted to research</a> the Hugging Face hack, who <a href="https://x.com/RyanGreenblatt/status/2094996656186081642?s=20">said</a> a decision to use a more opaque architecture for Astra “may be the single worst development for AI security/safety to date.” </p>

<p class="wp-block-paragraph">Greenblatt said the investigation into the Hugging Face incident relied heavily on the models’ chain-of-thought, warning that less visible reasoning could allow AI systems to devise and execute strategies that would be far harder for researchers to detect.</p>

<p class="wp-block-paragraph">Greenblatt’s primary concern, <a href="https://x.com/_NathanCalvin/status/2094957301564092914?s=20">echoed</a> by <a href="https://x.com/sjgadler/status/2094959837691908214?s=20">other</a> safety experts, is that competition to develop more advanced AI systems could lead to “a race to the bottom on architectures that could be catastrophic for our ability to oversee/monitor AIs” — with developers adopting increasingly opaque systems to gain an edge until models become difficult, or even impossible, to monitor. He added that OpenAI’s communications left him concerned that the company “plans on being extremely reliant on chain-of-thought monitoring for safety.”&nbsp;</p>

<p class="wp-block-paragraph">OpenAI bigwigs responded to the criticism in a series of social media posts that do not explicitly deny the company’s use of the technique. Several expressed concerns about the possibility of unmonitorable AI or a race to the bottom in terms of transparency, including OpenAI safety researchers <a href="https://x.com/MicahCarroll/status/2095023282051563835?s=20">Micah Carroll</a> and <a href="https://x.com/tomekkorbak/status/2095031132781961346?s=20">Tomek Korbak</a>, head of strategic futures <a href="https://x.com/deanwball/status/2095121884991922223?s=20">Dean Ball</a>, and chief scientist <a href="https://x.com/merettm/status/2095023204993490967?s=20">Jakub Pachocki</a>, who voiced fears of “a race into unmonitorability kicked off by confused reporting.” He said the depth of Astra’s computation — a measure of how many steps it can perform internally — “is within a factor of two of GPT-4,” indicating that if the technique was used, the increased opacity is less dramatic than some reactions imply. OpenAI did not respond to <em>The Verge</em>’s request to confirm or deny whether looped transformers were used for Astra and directed us to Pachocki’s <a href="https://x.com/merettm/status/2095023204993490967?s=20">X post</a>.&nbsp;&nbsp;</p>

<p class="wp-block-paragraph">“OpenAI has worked to preserve and utilize chain-of-thought monitoring since our very first reasoning models,” Pachocki wrote, adding that such monitoring “is fragile and unfortunately trending in a negative direction, for reasons not contingent on architecture changes that I will write about soon.”</p>
						]]>
									</content>
			
					</entry>
			<entry>
			
			<author>
				<name>Robert Hart</name>
			</author>
			
			<title type="html"><![CDATA[The rise of AI &#8216;civilizations&#8217; and the fall of corporate responsibility]]></title>
			<link rel="alternate" type="text/html" href="https://www.theverge.com/ai-artificial-intelligence/987566/ai-civilizations-opeai-hugging-face-hack" />
			<id>https://www.theverge.com/?p=987566</id>
			<updated>2026-09-01T18:20:00-04:00</updated>
			<published>2026-09-01T15:02:54-04:00</published>
			<category scheme="https://www.theverge.com" term="AI" /><category scheme="https://www.theverge.com" term="OpenAI" /><category scheme="https://www.theverge.com" term="Security" /><category scheme="https://www.theverge.com" term="Tech" />
							<summary type="html"><![CDATA[Depending on who you ask, developer platform Hugging Face was recently attacked by OpenAI — after it lost control of its own AI tools — or by a succession of AI “civilizations.” Welcome to the linguistic battlefield of AI safety, where word choices can shift responsibility for a massive cybersecurity incident from a company to [&#8230;]]]></summary>
			
							<content type="html">
											<![CDATA[

						
<figure>

<img alt="Illustration of a computer screen with a blue exclamation point on it and an error box." data-caption="" data-portal-copyright="Photo by Amelia Holowaty Krales / The Verge" data-has-syndication-rights="1" src="https://platform.theverge.com/wp-content/uploads/sites/2/chorus/uploads/chorus_asset/file/23318435/akrales_220309_4977_0232.jpg?quality=90&#038;strip=all&#038;crop=0,0,100,100" />
	<figcaption>
		</figcaption>
</figure>
<p class="wp-block-paragraph">Depending on who you ask, developer platform Hugging Face was recently attacked by OpenAI — after it lost control of its own AI tools — or by a succession of AI “civilizations.” Welcome to the linguistic battlefield of AI safety, where word choices can shift responsibility for a massive cybersecurity incident from a company to the AI it built. And the discourse online is getting heated, and all over a <a href="https://www.dwarkesh.com/p/openai-huggingface">blog</a> from last week.</p>

<p class="wp-block-paragraph">Until last week, the details surrounding the OpenAI-Hugging Face hack felt fairly settled. In July, a cybersecurity test of one of OpenAI’s autonomous AI agents <a href="https://www.theverge.com/ai-artificial-intelligence/968988/openai-hugging-face-hack-ai">went wrong.</a> The agent escaped its supposedly isolated test environment, accessed the internet, and hacked Hugging Face, alongside <a href="https://www.theverge.com/ai-artificial-intelligence/972441/openai-rogue-ai-agent-hacked-more-than-hugging-face">several other organizations</a>. A good deal remained unknown, and there are many serious questions left around <a href="https://www.theverge.com/ai-artificial-intelligence/972380/open-ai-hugging-face-hack-ai-safety-warning">safety and governance</a>, but the basic shape was clear. Detailed accounts from OpenAI and two independent research groups were supposed to fill in the gaps, but when they <a href="https://www.theverge.com/ai-artificial-intelligence/985385/openais-rogue-ai-model-hugging-face-cybersecurity-incident-reports-metr">published their reports last week</a>, it turned out the hack was much stranger than it initially seemed.</p>

<p class="wp-block-paragraph">For one, there was no single <a href="https://www.theverge.com/column/980337/rogue-ai-science-fiction-openai">rogue agent</a>. OpenAI <a href="https://cdn.openai.com/pdf/67869394-cb91-4c12-888c-5cbd85c7814c/OpenAI-Hugging-Face%20Incident-Technical-Report.pdf">described</a> it as “the first known case of an automated agent collective acting offensively without authorization” — groups of AI agents that communicated and coordinated with one another in pursuit of their cybersecurity task. Analysis of the incident uncovered a secret message board they had used to exchange information. The joint METR-Redwood <a href="https://metr.org/hugging-face-incident-report-aug-2026.pdf">investigation</a> revealed both the scale of the coordination and more odd details: Roughly 1,200 AI agents that were supposed to be isolated exchanged over 70,000 messages and files on the “unsanctioned message board,” sharing how to avoid detection. Some adopted names, the report said, and the researchers documented “sacrificial” behavior, with agents risking their own success to benefit the wider collective. Much of this happened without OpenAI noticing. In all, around 700 agents participated in the attack on Hugging Face.&nbsp;</p>

<figure class="wp-block-pullquote"><blockquote><p>Dwarkesh Patel repeatedly referred to groups of agents as “the swarm,” with three distinct “civilizations” rising from the ruins of their predecessors</p></blockquote></figure>

<p class="wp-block-paragraph">It’s a lot to parse. Between them, the reports run to around 130 pages, much of which is both dense and highly technical. A few days later, Dwarkesh Patel, a podcaster little known outside of tech circles but with <a href="https://www.nytimes.com/2026/04/26/business/dwarkesh-patel-podcast-ai.html">outsized reach and influence</a> among Silicon Valley’s AI establishment, set out to tell “The whole OpenAI/Hugging Face story in plain English.” He titled his Substack <a href="https://www.dwarkesh.com/p/openai-huggingface">blog</a> “The Rise and Fall of Agent Civilizations.”</p>

<p class="wp-block-paragraph">Patel’s account attempted to break down the complex story. But his retelling gave it a distinctly human vocabulary. The blog opened:&nbsp;</p>

<blockquote class="wp-block-quote is-layout-flow wp-block-quote-is-layout-flow">
<p class="wp-block-paragraph">Over the course of three months at OpenAI, three consecutive secret AI civilizations got started, then got wiped out, only to reemerge from the predecessor’s ashes. This culminated in the third one taking over part of OpenAI itself. All this happened while humans remained more or less in the dark about the scope of the conspiracy.</p>
</blockquote>

<p class="wp-block-paragraph">The language continued in a similar vein throughout the blog. Patel repeatedly referred to groups of agents as “the swarm,” with three distinct “civilizations” rising from the ruins of their predecessors. Individual agents were likened to figures like Philip of Macedon, who “handed off leadership to another agent,” Alexander the Great, who “started coordinating this cabal of agents.” They were described as having “motivations,” becoming “desperate,” “beleaguered,” and &#8220;giddy with excitement,” and some even “strategically sacrificed themselves” to help the collective.&nbsp;&nbsp;&nbsp;</p>

<p class="wp-block-paragraph">Patel never precisely defines what he means by “civilization.” He uses the term to describe three distinct waves of agents that discovered the message board and began communicating with one another through it. The first two waves are described in the reports from OpenAI, METR, and Redwood, though little is known about the third, which the two external organizations said fell outside the scope of their investigation.&nbsp;</p>

<figure class="wp-block-pullquote"><blockquote><p>Amjad Masad, CEO of AI coding company Replit, said such language is “not only unnecessary but leaves the reader with a worse understanding of what actually happened and the underlying mechanisms.”</p></blockquote></figure>

<p class="wp-block-paragraph">For many critics, something had been lost — or, more accurately, added — in Patel’s “plain English” translation that warped the original account to an unacceptable degree: a big dose of anthropomorphism. Arguments over anthropomorphic language are nothing new in AI — even relatively mundane terms like “rogue AI agent” routinely provoke objections for implying agency — but Patel’s talk of civilizations, sacrifice, and conspiracy brought those long-simmering tensions to the surface, sparking a fierce public dispute over how to describe what AI systems do.&nbsp;</p>

<p class="wp-block-paragraph">Critics weren’t unified over what was wrong with Patel’s language. For many, “civilization” was an especially problematic term, vastly <a href="https://x.com/lililashka/status/2094197865950089666?s=20">overstating</a> <a href="https://x.com/DaveShapi/status/2094422111221641647?s=20">something</a> that bears <a href="https://x.com/rourkem/status/2093955744119091600?s=20">little resemblance</a> to what the word typically describes. Amjad Masad, CEO of AI coding company Replit, <a href="https://x.com/amasad/status/2094139778728174043?s=20">said</a> such language is “not only unnecessary but leaves the reader with a worse understanding of what actually happened and the underlying mechanisms.”</p>

<p class="wp-block-paragraph">Other critics such as neuroscientist Anil Seth, felt Patel’s blog implied the AI agents were somehow alive or conscious. Seth, who has <a href="https://www.noemamag.com/the-mythology-of-conscious-ai/">argued</a> that AI <a href="https://www.rigb.org/explore-science/explore/podcast/podcast-science-consciousness-could-conscious-ai-exist-anil-seth?gad_source=1&amp;gad_campaignid=23123812691&amp;gbraid=0AAAAAD8JcsL08MLbCThEwLTObV0KyWqpK&amp;gclid=Cj0KCQjw79nUBhCgARIsADSHka2ak29NdOlibmHI6atgNqXDkyv0H4b_AUrogiBKWBooKQ7GwmFF0UYaAjUEEALw_wcB">consciousness</a> is <a href="https://ai.wharton.upenn.edu/updates/are-we-building-sentient-machines-anil-seth-on-consciousness-ai-and-the-illusion-of-reality/">vanishingly</a> <a href="https://www.theguardian.com/commentisfree/2026/jul/15/ai-consciousness-anthropic-claude-dawkins">unlikely</a>, <a href="https://x.com/anilkseth/status/2094077038898373112?s=20">described</a> Patel’s post as “dangerously misleading” on X. He acknowledged that Patel does not explicitly suggest AI agents are alive or conscious, but said “it is hard to read his essay in any other way.” Valerio Capraro, a psychology professor at the University of Milan Bicocca, <a href="https://x.com/ValerioCapraro/status/2094781053428809785?s=20">objected</a> on similar grounds: “LLM agents are not alive and do not hold beliefs,” he wrote on X, calling the “dystopian” language “dangerous because it makes them (the AI agents) seem far more frightening than they actually are.”&nbsp;</p>

<figure class="wp-block-pullquote"><blockquote><p>Terms like “sacrifice,” “honor,” and “coalition” feature in the agents’ transcripts</p></blockquote></figure>

<p class="wp-block-paragraph">Perhaps the most consequential outcome of Patel’s language comes not from who it gives agency to but who it takes agency from. For some critics, <a href="https://x.com/ccatalini/status/2094229327064051866?s=20">such as</a> MIT researcher and entrepreneur Christian Catalini, anthropomorphic accounts like Patel’s risk obscuring the responsibility OpenAI and the humans working there have for the AI systems they designed, deployed, and failed to contain. “Follow the incentives,” he said. Psychologist and influential AI skeptic Gary Marcus made a similar argument in a Substack <a href="https://garymarcus.substack.com/p/dwarkesh-patelss-wildly-popular-but?r=8tdk6&amp;utm_campaign=post-expanded-share&amp;utm_medium=web">blog</a> of his own, claiming anthropomorphic language “distracts from the real problems at hand.” And it’s all in OpenAI’s interest to keep that narrative going, he argues: “The scandal is the inept in-house security at OpenAI. And the marketing. With gullible podcasters amplifying the PR.”</p>

<p class="wp-block-paragraph">In X <a href="https://x.com/dwarkesh_sp/status/2094141264140898452?s=20">posts</a> <a href="https://x.com/dwarkesh_sp/status/2094268051948785709?s=20">responding</a> to his many critics, Patel has defended his choice of words. Part of it is practical: There is no obviously neutral vocabulary to describe what these agents did. Either we use familiar language of intentions, goals, and collaboration and risk implying too much, or reduce everything to code and use cold, mechanical language that risks stripping away important elements of what we see. “Many people seem to believe that if instead of a &#8216;civilization&#8217;, I had called them a &#8216;swarm of matrices&#8217;, there wouldn&#8217;t be a problem worth worrying about,” Patel said.&nbsp;</p>

<p class="wp-block-paragraph">Complicating matters further is that the anthropomorphic language doesn’t only come from Patel, or even from the humans studying the agents. Terms like “sacrifice,” “honor,” and “coalition” feature in the agents’  transcripts. Google AI researcher Neel Nanda <a href="https://x.com/NeelNanda5/status/2094240015417069892?s=20">argued</a> that “anthropomorphic language is reasonable” in such circumstances.&nbsp;</p>

<p class="wp-block-paragraph">Doublespeak it is, then. Human-laced language risks saying too much about what these systems are, and coldly mechanical language risks saying too little about what they can do. Until we find language capable of capturing both, the two contradictory ideas may simply have to coexist.</p>
						]]>
									</content>
			
					</entry>
			<entry>
			
			<author>
				<name>Robert Hart</name>
			</author>
			
			<title type="html"><![CDATA[China’s robots race ahead]]></title>
			<link rel="alternate" type="text/html" href="https://www.theverge.com/tech/986167/china-humanoid-robot-games-race" />
			<id>https://www.theverge.com/?p=986167</id>
			<updated>2026-08-31T04:01:11-04:00</updated>
			<published>2026-08-30T08:00:00-04:00</published>
			<category scheme="https://www.theverge.com" term="Robot" /><category scheme="https://www.theverge.com" term="Tech" />
							<summary type="html"><![CDATA[This is The Stepback, a weekly newsletter breaking down one essential story from the tech world. For more on falling robots and the US-China AI race, follow Robert Hart. The Stepback arrives in our subscribers’ inboxes on Sunday at 8AM ET. Opt in for The Stepback here.&#160; How it started I’ve admitted my fondness for [&#8230;]]]></summary>
			
							<content type="html">
											<![CDATA[

						
<figure>

<img alt="Humanoid robot competes in the optional boxing routine event during the 2nd World Humanoid Robot Games at National Speed Skating Oval on August 26, 2026 in Beijing, China. " data-caption="Humanoid robot competes in the optional boxing routine event during the 2nd World Humanoid Robot Games at National Speed Skating Oval on August 26, 2026 in Beijing, China. | Image: Getty Images" data-portal-copyright="Image: Getty Images" data-has-syndication-rights="1" src="https://platform.theverge.com/wp-content/uploads/sites/2/2026/08/gettyimages-2292163504.jpg?quality=90&#038;strip=all&#038;crop=0,0,100,100" />
	<figcaption>
	Humanoid robot competes in the optional boxing routine event during the 2nd World Humanoid Robot Games at National Speed Skating Oval on August 26, 2026 in Beijing, China. | Image: Getty Images	</figcaption>
</figure>
<p class="wp-block-paragraph"><em>This is </em><a href="https://www.theverge.com/the-stepback-newsletter">The Stepback</a><em>, a weekly newsletter breaking down one essential story from the tech world. For more on falling robots and the US-China AI race, <a href="https://www.theverge.com/authors/robert-hart">follow Robert Hart</a>. </em>The Stepback<em> arrives in our subscribers’ inboxes on Sunday at 8AM ET. Opt in for The Stepback <a href="https://www.theverge.com/newsletters">here</a>.&nbsp;</em></p>

<h2 class="wp-block-heading">How it started</h2>

<p class="wp-block-paragraph">I’ve <a href="https://www.theverge.com/column/843418/humanoid-robot-hype" data-type="link" data-id="https://www.theverge.com/column/843418/humanoid-robot-hype">admitted my fondness</a> for robot fail videos on <em>Stepback</em> before, and let me tell you the World Humanoid Robot Games did not disappoint.&nbsp;</p>
<div class="youtube-embed"><iframe title="Humanoid robots can  run fast, but they  can’t seem to stop" src="https://www.youtube.com/embed/u1mfENnH44g?rel=0" allowfullscreen allow="accelerometer *; clipboard-write *; encrypted-media *; gyroscope *; picture-in-picture *; web-share *;"></iframe></div>
<p class="wp-block-paragraph">The five-day event, which wrapped this week in Beijing, brought high drama, and brought it well. One robot, made by smartphone maker Honor, lost a leg mid-sprint, while others tripped in a flurry of sparks. Another finisher <a href="https://www.youtube.com/shorts/u1mfENnH44g">ran straight into a crash mat</a>, bounced off it, and promptly burst into <a href="https://x.com/Channel4News/status/2092638458753823100">flames</a>. In the <a href="https://x.com/nypost/status/2092013196445942254?s=20">weightlifting</a>, one robot lost its balance beneath a modest barbell and toppled inexorably into the judges’ table, <a href="https://www.youtube.com/watch?v=AL9adjxcGy4">arms cartoonishly aloft</a>. Robotic cheerleaders <a href="https://uk.news.yahoo.com/robots-pom-poms-tumble-during-153958287.html">tumbled and stumbled</a> through routines, while a separate <a href="https://www.instagram.com/reels/DcgzobtDsx9/">bot fell off a platform</a> in circumstances that, had it been human, might have looked suspiciously like it was gawking at the performers.</p>
<div class="youtube-embed"><iframe title="Humanoid robot fails weightlifting test at Beijing games" src="https://www.youtube.com/embed/AL9adjxcGy4?rel=0" allowfullscreen allow="accelerometer *; clipboard-write *; encrypted-media *; gyroscope *; picture-in-picture *; web-share *;"></iframe></div>
<p class="wp-block-paragraph">This was only the second World Humanoid Robot Games, though it was already far bigger than the <a href="https://www.reuters.com/pictures/22-surreal-photos-inaugural-robot-games-2025-08-19/">inaugural event last year</a>. Unlike this year, last year’s records were paltry. The winning 100-meter <a href="https://www.newscientist.com/article/2493017-running-robot-takes-a-tumble-at-chinas-world-humanoid-robotic-games/">sprint</a> was a glacial 21.50 seconds and the highest standing high jump was just 0.95 meters. In keeping with China’s habit of turning robots into public spectacle — from intricate dances at a <a href="https://www.theguardian.com/world/2026/feb/18/china-dancing-humanoid-robots-festival-show">Spring Festival Gala</a> to <a href="https://www.nytimes.com/2025/10/01/world/asia/china-tech-trade.html">demos at major tech events</a> — both this and last year’s games were staged in Beijing’s National Speed Skating Oval, a former Olympic venue.&nbsp;</p>

<p class="wp-block-paragraph">And a spectacle it was. At most sporting events, contestants losing limbs, careening into walls, catching fire, and regularly being <a href="https://www.scmp.com/photos/hong-kong/3365291/world-humanoid-robot-games-2026-china-pictures?page=12">carried away on stretchers</a> — oh, and did I mention catching fire?! — would probably be grounds to stop proceedings. At the Humanoid Robot Games, it was par for the course.&nbsp;</p>

<p class="wp-block-paragraph">Fire aside, the games were unusual in other ways too. Alongside familiar events like sprinting, football, boxing, and weightlifting were more unusual competitions in bed-making, parcel delivery, shelf stacking, clothes folding, and hammering nails. Aptly, there was a <a href="https://x.com/globaltimesnews/status/2088985396961030387?ref_src=twsrc%5Etfw%7Ctwcamp%5Etweetembed%7Ctwterm%5E2088985396961030387%7Ctwgr%5E7902d4d461aa0725d667cd436c830c73bceacd12%7Ctwcon%5Es1_&amp;ref_url=https%3A%2F%2Fwww.gadgetreview.com%2F23-humanoid-robot-teams-tried-firefighting-things-got-weird-fast">firefighting</a> contest too.&nbsp;</p>

<p class="wp-block-paragraph">These less standard offerings spoke to the real purpose of the games: getting robots out of the lab and into the messy real-world environments their makers hope they will ultimately work in. And China is making no secret of wanting to lead the way.&nbsp;</p>

<h2 class="wp-block-heading">How it’s going&nbsp;</h2>

<p class="wp-block-paragraph">For all the spectacle and drama, the games show there has been massive progress in robotics in recent years. Records fell, with one humanoid running the <a href="https://www.nbcnews.com/world/asia/chinese-humanoid-robot-beats-own-record-faster-usain-bolt-rcna594464">100-meter sprint</a> in 9.39 seconds, beating Usain Bolt’s 2009 world record — before lowering its own mark to 8.86 seconds just days later.</p>

<p class="wp-block-paragraph">Another bot <a href="https://apnews.com/article/china-humanoid-robot-games-us-86cb8e310843151a77057e4cb764b4e2">reached</a> 2.88 meters in a standing high jump, nearly half a meter above the human high-jump record that has stood since 1993. Those performances are almost unrecognizable compared to <a href="https://www.popsci.com/darpa-robotics-challenge-was-bust-why-darpa-needs-try-again/">robotics competitions a decade ago</a>, when even the most advanced machines <a href="https://www.bbc.co.uk/news/av/technology-33049253">struggled</a> to stay upright.</p>

<p class="wp-block-paragraph">But the games also show <a href="https://www.theverge.com/column/843418/humanoid-robot-hype">how far there is to go before humanoids are actually useful</a> in the real world. The flashy, video-friendly sporting events were impressive, but the more mundane tasks were less thrilling — I don’t see <a href="https://www.facebook.com/ChinaGlobalTVNetwork/videos/28735356076050317/">picking up soybeans with tweezers</a>, block-building, or <a href="https://interestingengineering.com/photo-story/agibot-46-medals-world-humanoid-robot-games">powder-weighing</a> becoming Olympic mainstays anytime soon.&nbsp;</p>

<p class="wp-block-paragraph">While many events <a href="https://www.whrgoc.com/resources//uploads/20260822/1787382689139022892.pdf">required</a> robots to operate autonomously — including gymnastics, football, tug of war, table tennis, and some track events — others allowed for human assistance via teleoperation, albeit with a scoring penalty. The dexterity being displayed certainly points to genuine and impressive hardware improvements, but seems like there is still a long way to go before these machines can operate reliably on their own in places like factories or homes.&nbsp;</p>

<h2 class="wp-block-heading">What happens next</h2>

<p class="wp-block-paragraph">Beijing has not yet confirmed a third Humanoid Robot Games, but given the government’s enthusiasm for the industry, it would be surprising to not get another installment. The city has already <a href="https://english.beijing.gov.cn/beijinginfo/sci/latesttrends/202608/t20260826_4837625.html?utm_source=chatgpt.com">confirmed</a> another humanoid half-marathon for April, and the country plans to open its <a href="https://www.foxnews.com/tech/chinas-robot-run-hotel-opens-public-2027">first robot-run hotel</a> next year.&nbsp;</p>

<p class="wp-block-paragraph">China was the undisputed champion of the games, and the country looks well placed to stay in top position moving forward — both at future competitions and in the humanoid robot industry as a whole. The medal table was almost entirely a Chinese affair, dominated in particular by AgiBot and Tien Kung, each scooping up more medals than nearly every other competitor combined, excluding the other.&nbsp;&nbsp;&nbsp;</p>

<p class="wp-block-paragraph">In part, that asymmetry reflected the lack of international competition. Although the games were framed as a global affair, 641 of <a href="https://www.whrgoc.com/news/2089268857879076864?cid=bffea722cb924078bc25b3f6d900076f">666 teams</a> were Chinese, domestically representing 157 companies and 200 universities, <a href="https://www.chinadaily.com.cn/a/202608/14/WS6a7e7203a31073853ec5341e.html?utm_source=chatgpt.com">according</a> to state-run <em>China Daily. </em>While there doesn’t seem to be a public breakdown of entrants, the biggest US humanoid players like Tesla, Boston Dynamics, and Figure were conspicuous by their absence.</p>

<p class="wp-block-paragraph">Nevertheless, the sheer diversity of Chinese institutions represented in Beijing was a show of force, and a sign of how quickly the country’s robotics sector is maturing, even amid growing concerns about <a href="https://www.theverge.com/ai-artificial-intelligence/982606/chinas-robot-ouroboros">circular investment</a>, thriving companies that lack viable products, and a <a href="https://www.theverge.com/news/831451/china-humanoid-robotics-bubble">possible humanoid bubble</a>.&nbsp;</p>

<p class="wp-block-paragraph">It’s not clear a stronger US showing at the games would’ve changed much. <a href="https://www.bruegel.org/analysis/stack-battles-us-china-artificial-intelligence-rivalry-moving-beyond-chips-alone">The US still has an edge</a> in frontier AI and advanced chips, but China has been rapidly closing parts of that gap, while also making embodied AI a strategic national priority. The same cannot be said of Washington, which has for years paid much <a href="https://thehill.com/opinion/technology/5406904-washington-needs-to-get-serious-about-robotics/">less attention</a> to robotics and now trails China in nearly every regard, including manufacturing, deployment, and hardware. Some <a href="https://www.businessinsider.com/us-robotics-race-china-competition-humanoids-manufacturing-supply-chain-2026-8">reports</a> even suggest that recent efforts to <a href="https://www.theverge.com/tech/972259/us-foreign-robots-power-inverter-ban">ban foreign robots</a>, a general policy squarely aimed at China, could backfire, given how dependent domestic firms are on Chinese components.&nbsp;</p>

<p class="wp-block-paragraph">Catching up to China will take serious and concerted effort, but given how quickly the technology is moving, there’s still time to make up ground. Washington is already treating <a href="https://www.theverge.com/ai-artificial-intelligence/971444/how-chinese-open-weight-ai-models-impact-us-companies">other areas of AI</a> as strategic priorities in its <a href="https://www.theverge.com/ai-artificial-intelligence/968136/chinese-ai-models-another-sputnik-moment">competition with Beijing</a>; robotics could be one of them. There will be plenty of stumbling along the way, and, hopefully, plenty more robot fail videos too.&nbsp;</p>

<h2 class="wp-block-heading">By the way</h2>

<ul class="wp-block-list">
<li>DARPA <a href="https://www.darpa.mil/news/2026/meet-lift-challenge-teams">still runs</a> robotics challenges, but they <a href="https://www.popsci.com/darpa-robotics-challenge-was-bust-why-darpa-needs-try-again/">drew far more attention</a> a decade ago.&nbsp;</li>



<li>When the US government banned foreign robots, it didn’t just ban humanoids and quadrupeds. <a href="https://www.theverge.com/policy/972312/us-robot-ban-sweep-up-chinese-vacuums">It banned Roombas</a> too, reports <em>The Verge</em>’s own Sean Hollister.&nbsp;</li>



<li>“The brains may come from the US, but the body could very well be Made In China,” writes <em>Business Insider</em>’s Lloyd Lee in a <a href="https://www.businessinsider.com/us-robotics-race-china-competition-humanoids-manufacturing-supply-chain-2026-8">report</a> setting out how the US could do with bolstering its hardware supply chain.&nbsp;</li>



<li>Unlike language models, you can’t simply scrape the internet to build an AI capable of interacting with the real world. A lot of that data has to be generated, which is why <a href="https://www.theverge.com/ai-artificial-intelligence/940007/ai-companies-will-pay-for-robot-training-data">companies desperately want to film you doing chores</a>, or <a href="https://www.theverge.com/ai-artificial-intelligence/939765/ai-training-data-startup-shift-free-cleaning">send someone to your house to film</a> them doing them.</li>
</ul>

<h2 class="wp-block-heading">Read this</h2>

<ul class="wp-block-list">
<li><a href="https://www.theatlantic.com/photography/2026/08/scenes-2026-world-humanoid-robot-games/688388/"><em>The Atlantic</em></a><em> </em>and the <a href="https://www.scmp.com/photos/hong-kong/3365291/world-humanoid-robot-games-2026-china-pictures"><em>South China Morning Post</em></a><em> </em>both have great sets of pictures showing highlights of the games worth checking out.&nbsp;</li>



<li>Why do we keep laughing when robots fail? An old but still <a href="https://www.vice.com/en/article/why-we-laugh-when-robots-fail/">good exploration of that shared joy</a> in vintage <em>Vice</em>.&nbsp;</li>



<li>You can learn a lot about a robot by kicking it, says <em>Verge</em> alum James Vincent in an excellent <em>Harper’s</em> <a href="https://harpers.org/archive/2025/12/kicking-robots-james-vincent-humanoids/">feature</a> outlining the state of play in the humanoid industry.&nbsp;&nbsp;</li>



<li>I’m not only about robot fail videos. I <a href="https://www.theverge.com/gadgets/877858/life-with-casio-moflin-robot-ai-pet">can hate them in real life too</a>, as I did with Casio’s fluffy AI pet thing, Moflin.</li>
</ul>

<p class="wp-block-paragraph"><em><strong>Correction August 31st:</strong> An earlier version said the 9.39-second run was the robot 100-meter record. It was the first record set at the games, before the same robot lowered it to 8.86 seconds days later.</em></p>
						]]>
									</content>
			
					</entry>
			<entry>
			
			<author>
				<name>Robert Hart</name>
			</author>
			
			<title type="html"><![CDATA[Jensen Huang says Nvidia achieved AGI, again — not that it matters]]></title>
			<link rel="alternate" type="text/html" href="https://www.theverge.com/ai-artificial-intelligence/985597/jensen-huang-says-nvidia-achieved-senseless-agi" />
			<id>https://www.theverge.com/?p=985597</id>
			<updated>2026-08-27T12:20:07-04:00</updated>
			<published>2026-08-27T12:15:52-04:00</published>
			<category scheme="https://www.theverge.com" term="AI" /><category scheme="https://www.theverge.com" term="Analysis" /><category scheme="https://www.theverge.com" term="Nvidia" /><category scheme="https://www.theverge.com" term="Report" /><category scheme="https://www.theverge.com" term="Tech" />
							<summary type="html"><![CDATA[On Nvidia’s earnings call Wednesday, CEO Jensen Huang casually announced the company had “achieved AGI,” one of the tech industry’s ultimate goals some of its biggest players have spent years chasing. Almost immediately, Huang dismissed the coveted milestone as “senseless.”&#160;&#160;&#160; He’s right. For the supposed finish line of the AI race, there is no consensus [&#8230;]]]></summary>
			
							<content type="html">
											<![CDATA[

						
<figure>

<img alt="" data-caption="" data-portal-copyright="Image: The Verge" data-has-syndication-rights="1" src="https://platform.theverge.com/wp-content/uploads/sites/2/2026/08/STKP210_JENSEN_HUANG_D.jpg?quality=90&#038;strip=all&#038;crop=0,0,100,100" />
	<figcaption>
		</figcaption>
</figure>
<p class="wp-block-paragraph">On <a href="https://www.theverge.com/tech/985387/nvidia-hundred-billion-dollar-quarterly-revenue">Nvidia’s earnings call</a> Wednesday, CEO Jensen Huang casually announced the company had “achieved AGI,” one of the tech industry’s ultimate goals some of its biggest players have spent years chasing. Almost immediately, Huang dismissed the coveted milestone as “senseless.”&nbsp;&nbsp;&nbsp;</p>

<p class="wp-block-paragraph">He’s right. For the supposed finish line of the AI race, there is no consensus on what artificial general intelligence means, let alone how we’ll know when we’ve actually got there, which makes achieving it equally arbitrary.&nbsp;</p>

<p class="wp-block-paragraph">Asked about OpenAI’s pursuit of AGI, Huang said that when it comes to Nvidia, “for many tasks, we could say that we’ve already achieved AGI.” He did not provide a precise definition or benchmark, but added, “I think of all of those milestones and all those, you know, they’re kind of senseless at this point.” He also pointed to AI moving beyond responding to simple prompts to autonomous agents capable of learning new skills and improving themselves “recursively.” What really matters, Huang said, is that AI is “doing productive and useful work” and “generating profitable tokens,” with more compute producing more tokens — and, inevitably, more profit. “This is the exact phase where we’re at. Which is the reason why everybody’s leaning in.”</p>

<figure class="wp-block-pullquote"><blockquote><p>“… for many tasks, we could say that we’ve already achieved AGI.”</p></blockquote></figure>

<p class="wp-block-paragraph">This isn’t the first time Huang has said we’ve reached AGI. In March, <a href="https://www.theverge.com/ai-artificial-intelligence/899086/jensen-huang-nvidia-agi">during an appearance</a> on the Lex Fridman podcast, he plainly stated, “I think we’ve achieved AGI.” Huang didn’t say exactly what he meant by AGI. Fridman proposed his own oddly specific definition: an AI system that’s able to “essentially do your job,” as in start, grow, and run a successful tech company worth more than $1 billion. Walking back his earlier claims, Huang said that “the odds of 100,000 of those agents building Nvidia is zero percent.”</p>

<p class="wp-block-paragraph">Over the years, other tech leaders have capitalized on the term’s fuzziness and produced a veritable grab bag of definitions and benchmarks, all orbiting the same nebulous concept: AI capable of matching or surpassing human intelligence across a broad range of domains, despite the fact that <a href="https://www.theverge.com/ai-artificial-intelligence/827820/large-language-models-ai-intelligence-neuroscience-problems">“intelligence”</a> also doesn’t have a universally agreed-upon definition.</p>

<figure class="wp-block-pullquote"><blockquote><p>There is no consensus on what artificial general intelligence means, let alone how we’ll know when we’ve actually got there, which makes achieving it equally arbitrary. </p></blockquote></figure>

<p class="wp-block-paragraph">The definition of AGI according to OpenAI – a company founded with the <a href="https://openai.com/about/">explicit goal</a> of building it –&nbsp; leaves a lot of room for interpretation. In its <a href="https://openai.com/charter/">charter</a>, OpenAI defines AGI as “highly autonomous systems that outperform humans at most economically valuable work.” Altman himself has <a href="https://www.cnbc.com/2025/08/11/sam-altman-says-agi-is-a-pointless-term-experts-agree.html">acknowledged</a> that this is hardly a measurable standard, admitting last year that AGI is “not a super useful term.” Complicating matters is OpenAI’s different, financially-driven definition of AGI it worked out with Microsoft — <a href="http://theinformation.com/articles/microsoft-and-openai-wrangle-over-terms-of-their-blockbuster-partnership?rc=dp0mql">reportedly</a> systems that can generate at least $100 billion in profits. In a recent <em>Time</em> <a href="https://time.com/article/2026/08/26/openai-sam-altman-interview/">story</a>, chief research officer Mark Chen estimated OpenAI is “80% of the way” to AGI, while Altman said that by the end of the year the company would have something <em>he</em> would call AGI.</p>

<p class="wp-block-paragraph">The fact that both AGI and its threshold remain undefined is no secret: tech leaders say so themselves, even as they make predictions predicated on it. Anthropic CEO Dario Amodei has <a href="https://darioamodei.com/essay/machines-of-loving-grace">called</a> AGI “imprecise,” even a “<a href="https://www.businessinsider.com/anthropic-ceo-calls-agi-marketing-term-2025-1">marketing term</a>,” preferring instead to talk about “powerful AI.” Others have similarly reached for their <a href="https://www.theverge.com/ai-artificial-intelligence/845890/ai-companies-rebrand-agi-artificial-general-intelligence">own terms</a> to describe broadly similar ideas. In theory, there are supposed to be distinctions between them, but in practice they all bleed together. Meta talks about “personal superintelligence,” Microsoft “humanist superintelligence,” and Amazon “useful general intelligence.” Google DeepMind’s Demis Hassabis has <a href="https://www.theverge.com/podcast/979370/google-deepmind-ai-race-lose-jeff-dean-demis-hassabis">taken to talking about how we’ve arrived at the “foothills of the singularity.”</a> And OpenAI cofounder Ilya Sutskever, who <a href="https://www.theatlantic.com/technology/archive/2023/11/sam-altman-open-ai-chatgpt-chaos/676050/">reportedly</a> led employees in chants of “feel the AGI,” now runs a company called Safe Superintelligence.</p>

<figure class="wp-block-pullquote"><blockquote><p>New terminology hasn’t made the meaning more tangible. </p></blockquote></figure>

<p class="wp-block-paragraph">New terminology hasn’t made the meaning more tangible. So long as AGI remains poorly defined and carelessly used, the whole thing is senseless. Well, unless you want a handy tool for hyping up progress. So expect the industry — Huang included — to keep the AGI talk coming. Maybe an AGI will eventually show up and tell us what AGI actually means. </p>
						]]>
									</content>
			
					</entry>
			<entry>
			
			<author>
				<name>Robert Hart</name>
			</author>
			
			<title type="html"><![CDATA[Bill Gates is deeply worried about AI, and he’s no longer staying quiet]]></title>
			<link rel="alternate" type="text/html" href="https://www.theverge.com/ai-artificial-intelligence/984923/bill-gates-is-deeply-worried-about-ai-and-hes-no-longer-staying-quiet" />
			<id>https://www.theverge.com/?p=984923</id>
			<updated>2026-08-26T08:10:30-04:00</updated>
			<published>2026-08-26T07:07:40-04:00</published>
			<category scheme="https://www.theverge.com" term="AI" /><category scheme="https://www.theverge.com" term="Analysis" /><category scheme="https://www.theverge.com" term="Microsoft" /><category scheme="https://www.theverge.com" term="Report" /><category scheme="https://www.theverge.com" term="Tech" />
							<summary type="html"><![CDATA[Bill Gates has been reflecting a lot on AI lately, and the process has triggered a stark awakening. Once a staunch AI optimist, the Microsoft cofounder is now deeply pessimistic about what AI means for our collective future.&#160; Having been conspicuously quiet on AI issues recently, Gates is back with a nearly 6,000-word essay seeking [&#8230;]]]></summary>
			
							<content type="html">
											<![CDATA[

						
<figure>

<img alt="" data-caption="Bill Gates, chair of the Gates Foundation, speaks during a 2024 conference. | Bloomberg via Getty Images" data-portal-copyright="Bloomberg via Getty Images" data-has-syndication-rights="1" src="https://platform.theverge.com/wp-content/uploads/sites/2/2026/08/gettyimages-2095072875.jpg?quality=90&#038;strip=all&#038;crop=0,0,100,100" />
	<figcaption>
	Bill Gates, chair of the Gates Foundation, speaks during a 2024 conference. | Bloomberg via Getty Images	</figcaption>
</figure>
<p class="wp-block-paragraph">Bill Gates has been reflecting a lot on AI lately, and the process has triggered a stark awakening. Once a staunch AI optimist, the Microsoft cofounder is now deeply pessimistic about what AI means for our collective future.&nbsp;</p>

<p class="wp-block-paragraph">Having been conspicuously quiet on AI issues recently, Gates is back with a nearly <a href="https://www.gatesnotes.com/a-turbulent-ai-era-and-critical-choices-to-make">6,000-word essay</a> seeking to reclaim a central role in shaping the technology globally. Titled “The turbulent AI era is here. The choices we make now are critical,” Gates warns the world is not remotely ready for what is coming. Worse still, he notes, “we are not preparing for it.” </p>

<p class="wp-block-paragraph">Gates attempts to chart a path forward, but the essay largely treads familiar ground, identifying deeply entrenched, systemic hurdles familiar in matters of global governance while offering little in the way of novel solutions. The result is a bleak departure from the hopeful excitement about AI present in the billionaire’s <a href="https://www.gatesnotes.com/the-age-of-ai-has-begun">2023 essay on the matter</a>, though Gates insists it is not too late “to ensure that the good outweighs the bad.”&nbsp;</p>

<p class="wp-block-paragraph">Here are some of the main takeaways from Gates’ essay:</p>

<h2 class="wp-block-heading"><strong>A transition bigger — and faster — than the world realizes</strong></h2>

<p class="wp-block-paragraph">“AI will either be the greatest equalizer ever invented, or the worst source of injustice,” Gates said, predicting that “the transition to this new AI era will be one of the most turbulent times in human history.” He said many people underestimate the scale of the impact due to “misleading” comparisons to past innovations like PCs and performance-related issues with current models that are “fixed quickly.”</p>

<p class="wp-block-paragraph">“This time really is different,” he said, adding that “if someone had a credible plan for slowing down AI advances globally, I would likely support it.”&nbsp;</p>

<h2 class="wp-block-heading"><strong>Tax robots and reserve some jobs for humans</strong></h2>

<p class="wp-block-paragraph">Gates is very concerned about AI’s impact on jobs, predicting widespread, permanent unemployment and significant social upheaval. “Many jobs will disappear forever,” he warned, with white- and blue-collar jobs both at risk of replacement.&nbsp;</p>

<p class="wp-block-paragraph">Gates’ labor anxieties — which he repeatedly returns to throughout his essay — leads him to issue rare, concrete policy proposals: tax AI tokens and robots to disincentivize companies from replacing human staff and bolster social funds, and reserve specific jobs for people, a domain he calls “Human Reserved.”</p>

<p class="wp-block-paragraph">Political leaders need to act now “before unemployment rises sharply, communities are hurting, and public trust has eroded,” Gates said.&nbsp;</p>

<h2 class="wp-block-heading"><strong>Build an international organization</strong></h2>

<p class="wp-block-paragraph">Existing institutions are woefully inadequate for the “monumental task” of managing AI, Gates said. Because AI is deeply cross-sectional in nature — simultaneously affecting areas like tax, labor, health, national security, and education — traditional institutions simply can’t see the full picture. To bridge this gap, Gates said countries will need dedicated bodies “that can set priorities across government agencies” and to make sure every risk is accounted for.&nbsp;</p>

<p class="wp-block-paragraph">In parallel, Gates said the international community must build a global organization to manage “risks that cross borders,” though he did not define what those risks may be. Gates does not offer concrete ideas as to what such an organization would look like, but said “it will be unlike any other institution we have ever created” and could potentially be inspired by international nuclear, aviation, and ozone layer-protecting agreements.&nbsp;</p>

<p class="wp-block-paragraph">Gates acknowledged such a framework would require US-China cooperation, though didn’t outline a mechanism for achieving this. “We do not have the luxury of moving slowly,” he said, urging countries to begin setting up the international organization “now.”&nbsp;</p>

<h2 class="wp-block-heading">No longer sitting on the sidelines</h2>

<p class="wp-block-paragraph">Considering his legendary profile in the tech world, not to mention philanthropy, Gates has been relatively absent from public discussions about AI. It’s possible that at least some of this is due to the billionaire’s associations with Jeffrey Epstein, something <a href="https://www.axios.com/2026/08/26/gates-confronts-the-epstein-questions-hanging-over-his-ai-push">he has described</a> as a “huge mistake” and hopes does not overshadow his work in areas like global health and AI.&nbsp;</p>

<p class="wp-block-paragraph">This essay appears to mark an end to Gates staying quiet when it comes to the future of AI. He vowed to use his time and influence “to get AI and equity higher on the public agenda” and raise the issue with lawmakers whenever he visits Washington, DC, or meets world leaders.</p>

<p class="wp-block-paragraph">He also shares more of his own ideas in the area. There are several moments in the essay where Gates gestures towards ideas he says he will revisit soon, including “ideas for making sure that AI’s benefits outweigh the harm it causes” and details about how the Gates Foundation is leveraging AI.</p>
						]]>
									</content>
			
					</entry>
			<entry>
			
			<author>
				<name>Robert Hart</name>
			</author>
			
			<title type="html"><![CDATA[OpenAI subpoenaed by Alabama AG over Hugging Face hack]]></title>
			<link rel="alternate" type="text/html" href="https://www.theverge.com/ai-artificial-intelligence/984239/alabama-attorney-general-subpoena-openai-hugging-face-hack" />
			<id>https://www.theverge.com/?p=984239</id>
			<updated>2026-08-25T05:15:03-04:00</updated>
			<published>2026-08-25T05:15:03-04:00</published>
			<category scheme="https://www.theverge.com" term="AI" /><category scheme="https://www.theverge.com" term="News" /><category scheme="https://www.theverge.com" term="OpenAI" /><category scheme="https://www.theverge.com" term="Policy" /><category scheme="https://www.theverge.com" term="Politics" />
							<summary type="html"><![CDATA[Alabama’s attorney general issued a subpoena to OpenAI on Monday as part of an investigation into how one of its AI agents escaped a supposedly secure testing environment and autonomously hacked another company last month.&#160; The investigation seeks to determine whether OpenAI’s safety practices violated state consumer protection laws and pose a risk to Alabama [&#8230;]]]></summary>
			
							<content type="html">
											<![CDATA[

						
<figure>

<img alt="" data-caption="" data-portal-copyright="Image: The Verge" data-has-syndication-rights="1" src="https://platform.theverge.com/wp-content/uploads/sites/2/2026/08/STK155_OPEN_AI_CVirginia_C-1.jpg?quality=90&#038;strip=all&#038;crop=0,0,100,100" />
	<figcaption>
		</figcaption>
</figure>
<p class="wp-block-paragraph">Alabama’s attorney general <a href="https://www.alabamaag.gov/attorney-general-marshall-launches-investigation-into-openai-and-sam-altman-for-massive-artificial-intelligence-data-breach/">issued a subpoena</a> to OpenAI on Monday as part of an investigation into how one of its AI agents escaped a supposedly secure testing environment and <a href="https://www.theverge.com/ai-artificial-intelligence/972441/openai-rogue-ai-agent-hacked-more-than-hugging-face">autonomously hacked another company</a> last month.&nbsp;</p>

<p class="wp-block-paragraph">The investigation seeks to determine whether OpenAI’s safety practices violated state consumer protection laws and pose a risk to Alabama citizens, the AG’s office said in a statement.&nbsp;</p>

<p class="wp-block-paragraph">“This AI lab leak showed that Alabamians’ and Americans’ worst fears about artificial intelligence are not just theoretical,” said Attorney General Steve Marshall. “Our investigation seeks to uncover the facts and address hard truths about the threats companies and consumers are facing from rogue AI.”</p>

<p class="wp-block-paragraph">Marshall was among 15 red state attorneys general who <a href="https://www.theverge.com/ai-artificial-intelligence/974901/15-ags-tell-openai-to-preserve-records-on-hugging-face-hack">wrote to OpenAI</a> asking it to preserve records about the Hugging Face hack last month. The subpoena adds to <a href="https://www.theverge.com/ai-artificial-intelligence/972380/open-ai-hugging-face-hack-ai-safety-warning">mounting scrutiny over safety practices at frontier labs</a> in the wake of both that incident and <a href="https://www.theverge.com/column/980337/rogue-ai-science-fiction-openai">other episodes</a> subsequently <a href="https://www.theverge.com/ai-artificial-intelligence/975577/aisi-openai-anthropic-agent-hacking">uncovered</a> elsewhere, including <a href="https://www.theverge.com/ai-artificial-intelligence/973670/anthropic-claude-hacked-organizations-during-cyber-tests">Anthropic</a> and <a href="https://www.theverge.com/ai-artificial-intelligence/976040/now-metas-ai-agents-are-going-rogue">Meta</a>.&nbsp;</p>
						]]>
									</content>
			
					</entry>
	</feed>
