Top stories

  1. Leaked OpenAI 2025 financials, verified by the Financial Times, show a 38.5B USD net loss OpenAI's 2025 financials, verified by the Financial Times, show 13.07B USD revenue against 34B USD costs, yielding a 38.53B USD net loss.
  2. Z.ai publishes GLM-5.2 open weights under MIT on Hugging Face Z.ai published GLM-5.2, a 753B-parameter open-weight model under MIT, runnable locally and removing China-hosted-API data handling concerns.
  3. Tesco moves to migrate about 40,000 workloads off VMware amid its Broadcom dispute Tesco is migrating 40,000 workloads off VMware by end of 2027 following Broadcom's licensing changes and disputed perpetual-license refusal.

AI

  1. OpenAI and Molecule.one report a near-autonomous AI chemist improving a hard coupling reaction GPT-5.4 improved the difficult Chan-Lam coupling with primary sulfonamides, raising yields for most tested substrates in wet-lab experiments.

Agentic coding

  1. Cloudflare opens its Agents SDK primitives to outside frameworks, starting with Flue Cloudflare opened Agents SDK durable-execution primitives to outside frameworks, with Flue as the first supported TypeScript agent framework.
  2. Alex Ellis argues a local Qwen is a different tool from Opus, not a worse one Ellis documented local Qwen as different from Opus: strong on diagnostics and codebase work, weak on long-horizon unsupervised concurrent work.

Security

  1. Fortinet FortiSandbox flaws under active exploitation after April patches Three FortiSandbox vulnerabilities including a CVSS 9.8 path-traversal flaw are under active exploitation despite April 2026 security patches.
  2. Researcher finds about 10,000 GitHub repositories distributing Trojan archives Researcher found 10,000 GitHub repositories using legitimate code but distributing trojanized archives through README links as delivery vector.
  3. Node.js ships coordinated security releases patching 11 CVEs Node.js released security patches for v26.3.1, v24.17.0, and v22.23.0 on June 18, fixing eleven CVEs including two High-severity TLS flaws.
  4. AMD removes TSME memory encryption from consumer Ryzen CPUs in a firmware update AMD disabled TSME memory encryption on consumer Ryzen without a visible BIOS change, removing protection against physical cold-boot attacks.

Outages

  1. OpenAI reports ChatGPT load failures and Enterprise SSO errors on 2026-06-18 OpenAI reported ChatGPT load failures and Enterprise SSO errors on June 18, with mitigation applied for SSO issues but no root cause disclosed.
  2. OpenAI logs mobile-app and FedRAMP-workspace incidents on 2026-06-17 OpenAI logged Android and iOS app errors plus FedRAMP workspace performance degradation on June 17, with no published root cause analysis.

Developer tools

  1. Otty, a commercial native macOS terminal, ships with agent-first framing Otty, a closed-source paid macOS terminal, offers GPU acceleration and first-class support for coding agents running in the terminal.
  2. Emacs 31.0.90 pretest highlights tree-sitter defaults and an editable xref workflow Emacs 31.0.90 enables tree-sitter by default, adds auto-grammar installation for supported modes, and provides editable grep-style xref workflow.

Languages and runtimes

  1. Kerkour argues stdx stays off crates.io for supply-chain reasons Kerkour argues stdx avoids crates.io via Git-only distribution to reduce supply-chain risk and prevent namespace squatting of the stdlib project.

Apple platforms

  1. NetNewsWire maintainer reports a year of modernization, not a sunset Simmons reported NetNewsWire modernization with 2,188 commits, Swift concurrency migration, Liquid Glass UI, and performance work.

Infrastructure

  1. Prometheus 3.5.4 LTS patches a plaintext secret-exposure flaw Prometheus 3.5.4 LTS patches plaintext secret exposure in STACKIT service discovery's /-/config endpoint and updates golang and OpenTelemetry.

Engineering posts

  1. Browser Use details sub-second browser starts on nested Firecracker microVMs in EC2 Browser Use used Firecracker snapshots and page-size tuning to cut microVM browser starts from 9.8s to 3.1s and creation costs by 67 percent.

Markets and companies

  1. DOJ moves to shield xAI gas turbines as national and energy security DOJ moved to shield xAI's unpermitted gas turbines citing national, economic, and energy security concerns over potential Clean Air Act shutdown.

Hacker News

  1. OpenRouter Royale pits eleven models in a battle-royale agent demo OpenRouter ran eleven models through 30 battle-royale games with tool use, reporting Grok won 13 matches at lower cost per win vs Claude Sonnet.
  2. Midjourney Medical draws heavy skepticism over false positives and image quality Midjourney Medical proposed AI ultrasound screening, but radiologists questioned false-positive rates and image quality vs standard ultrasound.