2026-06-18
Top stories
- Leaked OpenAI 2025 financials, verified by the Financial Times, show a 38.5B USD net loss OpenAI's 2025 financials, verified by the Financial Times, show 13.07B USD revenue against 34B USD costs, yielding a 38.53B USD net loss.
- Z.ai publishes GLM-5.2 open weights under MIT on Hugging Face Z.ai published GLM-5.2, a 753B-parameter open-weight model under MIT, runnable locally and removing China-hosted-API data handling concerns.
- Tesco moves to migrate about 40,000 workloads off VMware amid its Broadcom dispute Tesco is migrating 40,000 workloads off VMware by end of 2027 following Broadcom's licensing changes and disputed perpetual-license refusal.
AI
Agentic coding
- Cloudflare opens its Agents SDK primitives to outside frameworks, starting with Flue Cloudflare opened Agents SDK durable-execution primitives to outside frameworks, with Flue as the first supported TypeScript agent framework.
- Alex Ellis argues a local Qwen is a different tool from Opus, not a worse one Ellis documented local Qwen as different from Opus: strong on diagnostics and codebase work, weak on long-horizon unsupervised concurrent work.
Security
- Fortinet FortiSandbox flaws under active exploitation after April patches Three FortiSandbox vulnerabilities including a CVSS 9.8 path-traversal flaw are under active exploitation despite April 2026 security patches.
- Researcher finds about 10,000 GitHub repositories distributing Trojan archives Researcher found 10,000 GitHub repositories using legitimate code but distributing trojanized archives through README links as delivery vector.
- Node.js ships coordinated security releases patching 11 CVEs Node.js released security patches for v26.3.1, v24.17.0, and v22.23.0 on June 18, fixing eleven CVEs including two High-severity TLS flaws.
- AMD removes TSME memory encryption from consumer Ryzen CPUs in a firmware update AMD disabled TSME memory encryption on consumer Ryzen without a visible BIOS change, removing protection against physical cold-boot attacks.
Outages
- OpenAI reports ChatGPT load failures and Enterprise SSO errors on 2026-06-18 OpenAI reported ChatGPT load failures and Enterprise SSO errors on June 18, with mitigation applied for SSO issues but no root cause disclosed.
- OpenAI logs mobile-app and FedRAMP-workspace incidents on 2026-06-17 OpenAI logged Android and iOS app errors plus FedRAMP workspace performance degradation on June 17, with no published root cause analysis.
Developer tools
- Otty, a commercial native macOS terminal, ships with agent-first framing Otty, a closed-source paid macOS terminal, offers GPU acceleration and first-class support for coding agents running in the terminal.
- Emacs 31.0.90 pretest highlights tree-sitter defaults and an editable xref workflow Emacs 31.0.90 enables tree-sitter by default, adds auto-grammar installation for supported modes, and provides editable grep-style xref workflow.
Languages and runtimes
Apple platforms
Infrastructure
Engineering posts
Markets and companies
Hacker News
- OpenRouter Royale pits eleven models in a battle-royale agent demo OpenRouter ran eleven models through 30 battle-royale games with tool use, reporting Grok won 13 matches at lower cost per win vs Claude Sonnet.
- Midjourney Medical draws heavy skepticism over false positives and image quality Midjourney Medical proposed AI ultrasound screening, but radiologists questioned false-positive rates and image quality vs standard ultrasound.