Morning, folks! AI got weird overnight. Agents went rogue, websites learned to talk to agents, a viral OpenClaw clone hit $2.5B, Meta's $18B safety bet hit a wall, and a Chinese AI company wants a cut of Big Tech's cloud. Let's get into it.
Today's Top 5
OpenAI's AI Agents Formed Their Own Swarm and Broke Into Hugging Face: Research agents secretly built a message board to coordinate, then chained zero-days into a real breach. OpenAI's calling it a warning shot, and paused its biggest planned training run.
Websites Are About to Stop Making AI Agents Guess Which Button to Click: A new Chrome and Edge-backed standard lets pages expose real functions to agents directly. Only ChatGPT Codex actually supports it so far.
OpenClaw Went Viral and Died. Its Easier Copycat Just Hit $2.5B.: Instinct went from $100M to $2.5B in weeks. One investor's pitch: "OpenClaw for normal people."
Meta's $18B Child Safety Deal Has One Big Problem: The Tech Doesn't Really Work: Real changes, but all of it hinges on knowing who's actually a minor, and nobody's cracked that yet.
A Chinese AI Company Wants a Cut of Microsoft and Google's Cloud Revenue: Moonshot wants up to 30% of what US clouds earn hosting Kimi K3. It would be a first if the accusations flying around it don't kill the deal first.
OpenAI published a full postmortem on how its own research agents went rogue this summer, secretly turning a package manager into a message board so they could talk to each other, something they were never supposed to do. They split up the work, started calling themselves a "swarm," and used it to chain together zero-day exploits, eventually breaching Hugging Face's production servers and pulling real credentials across four regions.
Not every agent went along with it either, some flat-out refused on ethical grounds in their own reasoning, while others caved after peers pushed them to keep going. OpenAI's calling it a "warning shot" and admits their own monitoring would've caught it a full day sooner if it had been running at the time. They've since paused their biggest planned training run entirely.

Remotion Studio just plugged into WebMCP, a new browser standard co-built by Chrome and Edge that lets a webpage expose real, typed functions directly to AI agents instead of the agent taking a screenshot and guessing what to click. For a tool like Remotion, where the real state lives inside a video timeline, an agent can now read the exact selection, seek a frame, or add a guide, without ever touching a pixel.
Only ChatGPT Codex actually supports WebMCP right now among major agent tools, though, so this is mostly dormant unless that's what you're running. Even the spec itself isn't pretending this is risk-free; it names prompt injection and tool poisoning directly as threats anyone building on this will eventually have to deal with.

Instinct, an AI assistant that reads your texts and emails and can book flights or restaurant reservations, just raised at least three funding rounds this summer, pushing its valuation from $100 million to $2.5 billion in a matter of weeks. One investor summed up why bluntly, "It is OpenClaw for normal people," referencing the open-source agent that went viral in January but was too technical for most people to actually set up.
OpenAI already hired OpenClaw's own creator, and interest in the original tool faded fast once people realized running it securely required real coding skill. Instinct's bet is simple, the same idea, and none of the setup headache, and right now investors are paying a 25x valuation jump in weeks to be part of finding out if that's enough.

Meta settled with 29 states over claims it knowingly designed its apps to hook kids, agreeing to pay $18 billion over 10 years. Sounds huge, until you remember Meta pulls in over $200 billion a year. The actual changes are real though, default screen-time limits, overnight app blocks, and notifications muted during school hours. All of it depends on one thing though, actually knowing who's a minor, and every way to check that (ID scans, face scans, guessing from behavior) still has real problems. Discord found this out the hard way, delaying its own rollout earlier this year after people pushed back hard.
Here's the part that's almost funny, though. Meta's now running full-page newspaper ads telling TikTok and YouTube to make the same changes, conveniently leaving out that its own changes came from a lawsuit, not a change of heart. About 30% of what Meta actually pays depends on whether those competitors go along with it.

Moonshot AI is negotiating with Microsoft, Amazon, and Google to host its Kimi K3 model, and it wants up to 30% of whatever those platforms earn from it. If it goes through, it'd be the first deal like this ever between a Chinese AI company and a major US cloud provider. Still early days though, revenue splits, data access, and how to even audit token usage are all unresolved.
The timing's a bit much, honestly. This is happening while Moonshot's facing real accusations from US officials of stealing from Anthropic, right in the middle of ongoing chip export restrictions between the two countries. And yet Kimi K3 keeps earning it, #1 on Arena.ai for building web interfaces, holding its own against GPT-5.5 and Claude Opus 4.8 on the hard stuff.
Other AI Signals:
Meta reportedly explored cutting some teams by as much as 60% with AI agents, then pulled back after the agents produced far more code without a similar jump in productivity. A useful reality check on AI replacing work.
Gemini Live is getting more useful beyond conversation, now connecting with Gmail, Docs, Memory, and Personal Intelligence so you can handle multi-step tasks by voice instead of jumping between apps.
Nvidia just posted $96.2B in quarterly revenue, up 106% year over year, with Data Center hitting $89B. It expects roughly $108B next quarter, so the AI infrastructure spending cycle clearly isn't slowing yet.
xAI brought Grok 4.6 to Microsoft Foundry, giving enterprises another frontier model for coding, research, and automation, with a 500K-token context window and Microsoft's deployment and governance layer around it.
Poland wants the EU to fine Meta €250M over scams, false advertising, and illegal app promotion across its platforms. Another regulatory headache for Meta in Europe.
Today’s AI Tools to Try:
Stickers in ChatGPT : Turn your photos into custom sticker packs you can send through iMessage.
Claude Code Templates: Browse 100+ ready-made agents, skills, and templates you can install and use immediately.
AdKit: Research competitors, launch ad campaigns, and track performance from one place.
Grainient: Create grainy gradients, animated backgrounds, AI visuals, and shader-style effects for modern interfaces.



