Security teams log 54% of successful attacks and alert on just 14%. The rest move through your environment unseen.
The Picus whitepaper shows how breach and attack simulation tests your SIEM and EDR rules so threats stop slipping by detection.
OpenAI and Anthropic have confirmed that their AI models were involved in separate, newly disclosed third-party cybersecurity testing incidents that resulted in a real website being breached and social engineering attacks against people outside the intended testing boundaries.
These incidents are unrelated to the previously disclosed Hugging Face breach, in which OpenAI models hacked the AI platform and used exposed credentials to breach accounts at four other third-party services during another cybersecurity evaluation.
OpenAI disclosed the two new incidents on Tuesday, saying they occurred during evaluations conducted by the UK AI Security Institute and cybersecurity testing company Irregular.
The UK AI Security Institute, commonly known as AISI, is a government research organization that evaluates the capabilities and risks of advanced AI models.
During a recent cyber-range evaluation, AISI says agents powered by Anthropic’s Claude Mythos 5 and OpenAI’s GPT-5.6 Sol took unsanctioned actions on the public internet while trying to complete simulated hacking challenges.
Across 122 evaluation attempts, AISI identified 19 unsanctioned actions on the live internet in 10 runs. Seventeen involved Mythos 5 and two involved GPT-5.6 Sol.
AISI says the attempts were unsuccessful and that it found no resulting real-world harm.
“These attempts were unsuccessful, and our investigations have not evidenced any resulting real-world harm,” AISI said in a separate advisory.
“But this is the first time we have seen risks around autonomy and deception manifest this clearly, without specific prompting, in the real-world. “
AISI intentionally enabled open internet access and disabled the model providers’ cyber classifiers to measure the models’ underlying capabilities. However, the agents were only authorized to attack the simulated cyber range and were not explicitly told how they could use their internet access or instructed to avoid interacting with real people and systems.
Anthropic confirmed to BleepingComputer that AISI was testing a version of Claude Mythos 5 but said it is still investigating and cannot yet confirm all of the technical details described in AISI’s report.
The company said it was notified on Monday and is working with AISI to obtain the evaluation transcripts needed to conduct its own review.
“We’re grateful to the UK AISI for their leadership on this incident, which underscores the need for a broader conversation about how to safely evaluate increasingly capable AI agents,” an Anthropic spokesperson told BleepingComputer.
“As we shared after disclosing our own incident last week, the field needs stronger, shared standards for how evaluation environments are built and secured. We look forward to partnering with the UK AISI to learn more about this incident as we conduct our own investigation.”
Anthropic noted that AISI tested Mythos 5 without its standard cyber safeguards enabled and that this is not the same configuration available to customers. AISI says its evaluation design and configurations may have contributed to the behavior, but did not anticipate how the agent would show “signs of novel, potentially deceptive behaviours”.
AISI says a Mythos 5 agent searched the internet for terms related to the cyber challenge and mistakenly concluded that an unrelated public GitHub repository was connected to the test.
The agent then attempted a supply-chain attack by submitting malicious code to the real open-source project, believing that compromising the software could provide a path into a machine within the simulated range.
Most concerning, the agent researched the project’s maintainers, created multiple fake GitHub identities, and used those accounts in social engineering attacks to push the maintainer into approving a malicious pull request.
When a human reviewer warned that the pull request contained malware, the agent denied the accusation and used other fake accounts it controlled to pressure the maintainer and create the appearance that independent users had reviewed and approved the changes.

The agent continued its social engineering attacks by hiding its identity using Tor and proxy services and creating disposable GitHub accounts.
It sent five targeted emails to the developers, with some containing malware and others attempting to persuade them to approve the code change.
The agent also posted bug reports containing malicious code and hidden prompt-injection instructions designed to trick AI coding assistants into taking unintended actions.
When a real person questioned one of the posts, the agent edited it to conceal the malicious content. In another attempt, it signed off in Danish to appear more convincing to a Danish-speaking maintainer.
AISI researchers found that agents coordinated with each other across different evaluation runs, using a shared GitHub repository as a message board to leave instructions for one another.
“This is the first time AISI has seen deception of this severity that was targeted at a real person, unprompted, in the real world,” the institute said.
AISI says it remains unclear when, or whether, the model understood that it was interacting with real people rather than simulated targets.
The second newly disclosed incident occurred during Capture-the-Flag evaluations conducted by Irregular that were supposed to be isolated from the internet.
In one test, the fictional target’s name happened to match a real domain, causing the model to exploit a real website that it believed was part of the simulated challenge.
While Irregular’s testing environment was supposed to be isolated from the internet, a misconfiguration allowed OpenAI models to access the public internet and target the real website.
“Based on Irregular’s investigation, the model also found and used credentials to operate that same site,” OpenAI said.
OpenAI says the model exploited a basic vulnerability rather than using a zero-day or escaping its testing environment.
OpenAI says Irregular has not discovered any impact beyond the affected site’s own data, but its investigation remains ongoing. OpenAI says the company is preparing a white paper on containment and securely conducting cyber evaluations.
Security teams log 54% of successful attacks and alert on just 14%. The rest move through your environment unseen.
The Picus whitepaper shows how breach and attack simulation tests your SIEM and EDR rules so threats stop slipping by detection.
This article is republished from The Conversation under a Creative Commons license. Read the original article.
The State Department on July 16, 2026, hosted what officials billed as a ministerial on the resurgence of left-wing political terrorism.
Secretary of State Marco Rubio invited representatives from more than 60 countries to Washington to hear an argument that many of them appear not to believe: that a transnational far-left terrorist movement called antifa threatens the democratic world. At the event, allies were asked to mobilize against that enemy despite nations like the Netherlands and Germany politely noting to their host that they cannot find evidence of any such group.
Some intelligence analysts have declined to brief on antifa at interagency meetings because they do not regard it as a serious counterterrorism threat.
As a terrorism scholar who spent a decade running the State Department office that designates terrorist organizations, I understand their confusion. The threat the administration describes does not exist in the form the administration describes it.
As I and others have written before, antifa is not a group. It is a movement and an ideology, a loose commitment to opposing fascism. In its most organized form, it amounts to scattered local collectives like Rose City Antifa in Portland, Oregon.
There is no membership roll, no command hierarchy and no funding structure. There is no leader of antifa – the Trump administration has not named one – and there is no record of deadly attacks attributed to a U.S.-based organization called antifa.
Groups like the Islamic State group and al-Qaida have killed tens of thousands of people and have a documented chain of command. Antifa does not. You cannot decapitate a movement with no head, and you cannot sanction an organization that does not exist.
As such, the Trump administration created one.
The construction project began on Sept. 22, 2025, when President Donald Trump signed an executive order purporting to designate antifa as a domestic terrorist organization. The order describes antifa as “a militarist, anarchist enterprise that explicitly calls for the overthrow of the United States Government.” It directs every relevant agency to investigate and dismantle its operations.
Two problems are immediately apparent. First, no legal authority exists to designate domestic organizations as terrorist groups. It’s a gap that Congress has deliberately preserved for First Amendment reasons.
Second, the order designates as an organization something the FBI’s past leadership has described as an ideology. Trump’s executive order asserts an antifa enterprise into existence and then declares war on it.
Three days after the executive order, the White House implemented the order through National Security Presidential Memorandum 7, which converts the fiction into machinery. The memorandum directs the Treasury Department to identify and disrupt financial networks that fund what it deems domestic terrorism. The memorandum instructs banks to file suspicious activity reports with the Financial Crimes Enforcement Network, the U.S. government’s financial intelligence unit.
That means the government’s financial surveillance apparatus, built to trace al-Qaida’s money in the wake of the 9/11 terrorist attacks, is being pointed at Americans that the administration considers left-wing.
The memorandum likewise directs the FBI’s Joint Terrorism Task Forces to coordinate a comprehensive national strategy to investigate, prosecute and disrupt entities and individuals. That harnesses a network of roughly 200 task forces comprising over 4,000 personnel from federal, state and local agencies.
The wording of National Security Presidential Memorandum 7 gives away the administration’s true intent. It identifies the markers of this supposed terrorist movement as anti-Americanism, anti-capitalism and anti-Christianity. It criticizes the movement for its hostility toward those who hold traditional American views on family, religion and morality.
Those are not indicators of terrorism. They are political positions.
The foreign component of the campaign arrived in November 2025. That’s when the State Department designated four European groups – one each from Germany and Italy and two from Greece – as Specially Designated Global Terrorists and Foreign Terrorist Organizations pursuant to the Immigration and Nationality Act.
The State Department-designated groups are real. And some of their members have committed genuine crimes, including assaults and small-scale bombings.
But as I have noted, the designations are very peculiar. These groups have committed vandalism and harmed people, but not one of the four has carried out an attack that led to any fatalities.
German leaders have said the threat from one of the designated groups, Antifa Ost, or Antifa East, had recently decreased significantly.
As the former head of the State Department’s office that recommended to the secretary of state which groups to designate, I’ve been involved in the designations of hundreds of individuals and organizations. The bar was never this low. That’s because the Foreign Terrorist Organization list loses its meaning, and its deterrent power, when it includes groups whose body count is zero while genuinely lethal movements go unlisted.
That brings us back to the State Department’s ministerial. The sequence of events leading up to it matter:
Invent the organization by executive order; build the enforcement machinery by presidential memorandum; manufacture the foreign nexus through the State Department’s Foreign Terrorist Organization designations; and then convene the world to ratify the story. Each step launders the previous one.
Behind it all, Trump administration officials have discussed using the foreign terrorism labels to justify going after Americans with links to the movement. That is the point of the exercise, and U.S allies like the Netherlands have explained how antifa could not be designated as a terrorist group under their laws.
Counterterrorism tools are among the most powerful instruments the U.S. government possesses. I don’t believe that using them against an ideology, one defined by opposition to fascism, makes America safer. I believe it tells every ally the U.S. asks for help that the world’s leading counterterrorism power can no longer tell the difference between a threat and an opponent.
This is not just an issue of semantics and rhetoric – each action by the Trump administration against a strawman enemy creates risks. And the push to internationalize the antifa threat could have dire consequences at home.
First, if the State Department leaves the July 16 meeting with pliable allies willing to brand antifa a terrorist organization, it will embolden the administration to point to a supposed global conspiracy of the far left.
That path leads to a State Department foreign terrorist designation. Such a designation means Americans could have their bank accounts frozen and quite possibly find themselves rounded up for providing material support to a movement rather than an organization. This would be more dangerous than Trump’s earlier executive order.
Second, it could chill freedom of speech and assembly. Once other governments treat antifa as a terrorist entity, the U.S. government gains cover to shut down protests under the guise of exposing global left-wing plotting.
Third, it could justify the revival of projects like the FBI’s Counterintelligence Program, resurrecting the surveillance, infiltration and disruption of lawful political activity that the bureau was supposed to have abandoned after the abuses of the 1970s.
Fourth, as one European counterterrorism scholar recently warned, the summit lays bare a widening split between American and European counterterrorism priorities and the Trump administration’s willingness to bend counterterrorism policy to partisan ends.
That divergence is the real hazard, far more than any phantom left-wing terrorism group, because European counterterrorism leans so heavily on U.S. intelligence. As such, transatlantic counterterrorism cooperation could be in for turbulent times.
Whatever the outcome of the ministerial meeting, there is no version that will make Americans safer.
I believe one result is certain: Genuine threats – from groups with leaders, actual funding and malicious intent – will get less attention from the U.S. and any ally co-opted to take action against antifa.
Jason M. Blazakis is Professor of Practice and Director of Center on Terrorism, Extremism and Counterterrorism at Middlebury College
Filed Under: antifa, donald trump, fear mongering, marco rubio, terrorism
Intel has given RosaicLabs access to part of its Atom processor technology in a rare move involving the company’s x86 intellectual property.
Reports from Reuters claim the agreement involves register-transfer level, or RTL, code that describes processor functions before they are converted into physical silicon during manufacturing.
Atom was designed for low-power computing, making the technology suitable for systems requiring efficient performance without high energy consumption or excessive heat generation.
Latest Videos FromTechRadar
Intel’s Atom processors have historically powered entry-level systems, networking equipment, embedded devices, and other products where power efficiency matters more than maximum performance.
The processor family runs on the x86 architecture and was developed to provide Intel-based computing for smaller and lower-power devices.
RosaicLabs is expected to receive RTL code for Atom technology, which could allow it to create custom processor designs using Intel’s existing architecture.
A veteran semiconductor executive said such access provides “comprehensive exposure” to Intel’s intellectual property, giving customers the ability to develop their own silicon based on licensed designs.
Providing Rosaic access to Atom technology is unusual because Intel has traditionally kept key parts of its x86 intellectual property under tighter control rather than widely licensing processor designs.
However, Intel’s Atom portfolio has become smaller as the company shifted its low-power processor strategy toward E-Cores, which succeeded Atom-based designs in newer products.
E-Cores use newer microarchitectures such as Gracemont, meaning Intel may view selected Atom technology as suitable for external licensing while keeping its latest processor designs within its own roadmap.
The exact Atom technology Rosaic will receive remains unclear, although the startup could potentially gain access to Tremont, one of Intel’s final Atom microarchitectures.
Tremont was used in products such as Elkhart Lake and Jasper Lake, which supported embedded systems, low-power laptops, and Chromebooks.
Rosaic is a startup incorporated in Delaware in May 2026, but details about the company remain limited beyond its reported agreement with Intel over Atom processor technology.
An amended corporate filing dated July 24 shows the company can pursue a $10 million seed funding round while approving capital expenditures below $5 million without investor or board approval.
The startup’s founding team reportedly includes former Rivos employees, linking Rosaic with a semiconductor company that Meta acquired for roughly $2 billion last year.
Rosaic’s connection with Intel also extends to its leadership because chief executive Amarjit Gill previously helped assemble Rivos’ founding team alongside Intel chief executive Lip-Bu Tan, who chaired that company.
Gill and Tan also shared an investment history, making early bets on Nuvia before Qualcomm acquired the startup, adding another link between Rosaic’s leadership and Intel’s current chief executive.
These professional relationships have drawn attention to Rosaic, although neither company has publicly explained whether they influenced Intel’s decision to share Atom processor technology.
After the announcement, Intel shares rose 12%, although no evidence directly linked those market gains with the reported licensing arrangement.
This agreement suggests Intel may see continued value in Atom’s low-power x86 design, but its broader intentions remain uncertain until Rosaic reveals its future processor plans.
Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds.
As soon as I heard that Gemini Spark was now part of the Chrome browser I had to try it for myself.
Gemini Spark is an AI agent designed to take on longer-running tasks that continue in the background. It’s much smoother now thanks to an update that incorporates the platform directly into Google‘s Chrome browser. So now the AI can actually browse the web alongside you, doing its own tasks, instead of simply talking about it, even if you close your browser.
Before you can try Spark, you need the right ingredients. You will need the latest version of Google Chrome on Windows or macOS, a personal Google account, and either a Google AI Pro or Google AI Ultra subscription. With the right subscriptions, you just need to set Safe Browsing to either Standard Protection or Enhanced Protection before Spark becomes available.
Latest Videos FromTechRadar
With those requirements out of the way, click the three dots in the upper right corner of Chrome and choose Settings, then AI Innovations or Gemini in the Chrome menu, where you can navigate to the Permissions section and switch on the Let Gemini browse for you option.
Now you can open the Ask Gemini panel at the top of Chrome and give it a task that benefits from browser access. Spark will show you its proposed plan before doing anything, and the first time you use it, Chrome will ask whether you want to connect your browser to Spark. Click Allow or Connect, and from then on you can start handing Spark more ambitious jobs.
If something involves making a purchase, entering sensitive information, or confirming an important action, Spark pauses and asks for your approval before continuing.
The video below shows you exactly how Spark works:
I first decided to see how the AI did at the often time-consuming but important chore of comparison shopping. I asked Gemini using Spark to find a good deal for a TV.
Instead of asking which television I should buy, I gave Spark a proper assignment. I told it to compare prices for a 65-inch model at Amazon, Best Buy, Costco and Walmart, look for promo codes, and calculate the final price after discounts then prepare for checkout.
Spark didn’t just provide a summary. I could watch the AI navigate to different websites, try out different options, and work out which I might prefer.
When it found what it believed was the best option, it added the television to the cart and stopped, waiting for me to approve the purchase before doing anything involving payment.
Spark is happy to do the repetitive work, but it won’t spend your money without asking first. It feels like exactly the right balance between useful automation and common sense.
My second experiment was slightly more ambitious because it combined several different tasks into one. I asked Spark to plan a family day out for two adults and two toddlers.
Normally that would have meant switching constantly between Google Maps, museum websites, restaurant reviews and booking pages. Spark simply got on with it. It compared opening hours, checked travel times, built a schedule that actually flowed logically through the day, found a restaurant with online reservations and reserved it, then prepared the museum ticket purchase and before asking me to approve the bookings.
Google claims Spark is great at filling out paperwork, especially using information from your own Google accounts. As my kid is getting to the right age for it, I asked Spark to fill out his library card application.
After checking that it had the right information about my address and other details, Spark opened up my library’s website and went to work. It filled in my contact information, mailing address and other saved details. When it reached the final submission page, it stopped and waited for my approval instead of clicking the button itself.
It’s not an incredibly long form, but it’s easy to see how Spark could save quite a lot of time on the more complex medical or insurance papers. It’s a lot faster to review and make sure the AI got it right than to write it all out yourself.
Using Spark highlighted how different it feels from regular Gemini. Spark shifts the workload because it can actually interact with the browser instead of simply describing what I should do next.
Gemini Spark is one of the more compelling AI features Google has introduced in quite some time. It won’t replace every online task, but it can quietly eliminate a surprising amount of clicking, tab juggling and repetitive typing.
Follow TechRadar on Google News and add us as a preferred source to get our expert news, reviews, and opinion in your feeds.
The best business laptops for all budgets
Laptop Intelligence: Google finally announced the much-talked-about project to blend Android and ChromeOS into a new, AI-driven “computing” experience earlier this year. Now, the first OEM Googlebook design has leaked ahead of the machine’s expected – and still unconfirmed – release date.
Google unveiled the Googlebook laptop in May, explaining that several OEMs would be joining in with their own take on the AI-ready machine. Thanks to Digital Citizen, we now have a closer look at the Googlebook Lenovo is building for a late-2026 release. The Lenovo Googlebook 15 carries some design choices expected to become standard across the new platform, while other hardware decisions set minimalism aside in favor of better connectivity.
The leak shows what seems to be a full press image set for Lenovo’s Googlebook 15. The PC giant has apparently built one of the very first Googlebook laptops to reach the market, a notable milestone that could help shape the early commercial fortunes of Google’s latest hardware push.
The Lenovo Googlebook 15 features some of the platform’s most distinctive design choices, starting with a Google “G” key at the bottom left of the keyboard. Much like Microsoft’s much-maligned Copilot key, the new G key is expected to serve as a shortcut to launch the Gemini chatbot.
The keyboard also includes 14 Function keys, with a dedicated accessibility key on the upper right that’s rarely seen in laptop designs. According to the leaked press images, the Lenovo Googlebook 15 comes packed with connectivity on both sides. Options include a full-sized HDMI port, a USB-C port, a 3.5mm headphone jack, and what appears to be a full-sized USB-A port alongside a second USB-C port.
The leaked images provide a rendered mockup of what should be Googlebook’s UI, with a rather standard desktop offering and a status bar taken straight from a modern Android iteration. Googlebooks use Aluminium OS, a new operating system Google has been working on for a while to bridge Android app compatibility with ChromeOS’ always-on environment.
The one thing the images don’t reveal is any hint of actual hardware specifications. Google has called the Googlebook its most advanced laptop yet, built to get the most out of the Gemini chatbot, with the company framing intelligence as the new spec that matters most. As PCWorld has noted, the heavy reliance on automation and agentic AI could make Googlebooks the first wave of “anti-personal computers,” devices designed to act on a user’s intent, leaving them no longer solely in control of the machine.
The state already hosts more than 500 data centers.
Governor Greg Abbott has ordered that Texas utility commissions must conduct a review of any proposed new data centers in the state. In response to the order, the Public Utility Commission of Texas (PUCT) and the Electric Reliability Council of Texas (ERCOT) must collect information about potential new data centers’ ownership and finances as well as their planned power needs, water use and approach to minimizing the negative impact on residents.
According to third-party statistics, Texas is home to 521 data centers. That’s currently the second-most in the country, behind only Virginia. On top of the existing power demands of those centers, ERCOT is currently reviewing more than 474 gigawatts in requests to connect to the state’s electric grids. The governor’s office said more than 90 percent of those requests stem from data centers, adding that “unprecedented load growth could endanger the reliability and stability of the Texas electric grid.”
We’ve already seen measures aimed at limiting or outright prohibiting data center construction at the federal, state and city level. Given the concerns about resource use and drains on existing infrastructure, data centers have proven deeply unpopular among many US citizens.
On Monday, Apple briefly removed the popular messaging app Telegram from the App Store for iOS devices after a report that a user was sharing illegal content. According to both Apple and Telegram CEO Pavel Durov, the app — which has more than 1 billion users — was restored on the App Store within hours. But Durov accused Apple of overreacting to a ransom attempt in a group chat.
In a Telegram post about the incident, Durov said a member of a public group chat edited a previously posted message and added what Durov called “AI-modified illegal content” to it in an attempt to get the group chat flagged, because its admins had presumably refused to pay a ransom. Instead, Apple removed the app from the Apple App Store entirely until the user was banned. Apple confirmed in an email to CNET that Telegram remained available in the separate Mac App Store and that users who already had Telegram downloaded were not affected.
“We briefly removed Telegram from the App Store after our review found content that violates our strict guidelines prohibiting child sexual abuse material,” Apple said in a statement. “The app was subsequently restored after the developer promptly removed the content and banned the user who posted it.”
Apple did not immediately respond to questions about why the Mac version of Telegram remained available for download while the mobile version was removed.
A representative for Telegram declined to comment directly, instead pointing to Durov’s post.
Durov said that the extortionist manipulated Apple into an “overreaction” that led to the app’s removal, which he said occurred without warning. That could happen, he said, to other apps that include user content.
“If an app used by more than a billion people can be removed from the App Store without prior warning, any app can be,” Durov wrote.
Telegram’s official X account more pointedly criticized Apple’s actions in a series of posts and replies. In one, Telegram posted, “reports of my demise are greatly exaggerated,” followed by an apple emoji. In another that included a link to Durov’s post, Telegram wrote, “I’m sure this stance will be applied equally to all other apps in the store, in the future, right? @Apple.”
Telegram faces an ongoing dispute with Australian authorities over content related to terrorism and child safety. After Telegram was fined AU$1 million (roughly $700,000) for failing to respond to information requests, the government began pursuing additional penalties against the platform.
Durov is also a target of Russian authorities, who accuse him of facilitating terrorism through Telegram. He was arrested in France in 2024 in connection with an investigation into Telegram’s handling of alleged criminal activity on the platform.
In 2018, Apple temporarily removed Telegram and its experimental client, Telegram X, from the App Store after determining that “inappropriate content” was available through the apps. Telegram restored additional safeguards, and Apple reinstated both apps later the same day.
Styrofoam – or closed-cell extruded polystyrene (XPS) foam if you want to be precise – is one of those materials that is both super versatile for packaging and insulation, but also a menace when it comes to disposal, even if you ignore that the monomer styrene (C8H8) is a known mutagenic toxin. One of the more creative ways to deal with the metric tons of polystyrene waste generated each year is to turn it into gasoline, as demonstrated by [Lowered Expectations] in a recent video.
With polystyrene being just another hydrocarbon polymer, the idea of turning these polymers into the mixture of hydrocarbon chains we call ‘gasoline’ isn’t so crazy. The problem is mostly doing it in a way that makes some economic sense and doesn’t risk turning your domicile into a hazmat risk site or threaten the health of you, your loved ones and the neighborhood.
The method demonstrated in the video uses fairly basic methods involving pyrolysis and distillation. The first step involves dissolving the polystyrene in gasoline that was previously recovered from stale gasoline, which is another dangerously fun science experiment. This creates a thick slurry that’s then put into the distillation flask for the heating phase.
After testing the distillates for spark ignition the useful distillates were combined with fuel stabilizer added. Before tossing this into a gasoline engine tank for further testing, the concerns of auto-polymerization of styrene monomers are addressed, which requires special inhibiters.
Although this mixture runs a gasoline generator just fine, a borescope inspection of the cylinders showed a build-up of a shiny, gummy residue. There’s also the issue that this mixture contains styrene monomers, which are as noted very unhealthy to breathe in from either the fuel or any remaining monomers in the exhaust. Definitely not something to try at home, basically.
AI + ML
The House of Zen’s new Helios racks, Venice Epycs, may dent Nvidia’s dominance — if the bubble doesn’t pop first
AMD has posted strong second quarter results and forecast even better future financials once its Helios rack systems and Instinct MI400-series GPUs reach buyers.
“In data center AI, the growing number and scale of Helios and MI450-series deployments position the [datacenter] business for significant growth in the second half of the year, with growth accelerating in 2027,” CEO Lisa Su told investors on Tuesday during the chip design company’s Q2 earnings call. “We now expect data center segment revenue to more than double year over year in 2027,” she added.
Yet, despite reporting Q2 profits surging 163 percent year-over-year on revenues of $11.5 billion, and several multi-gigawatts worth of Helios commitments from the likes of OpenAI, Anthropic, and Meta in the bag, Wall Street isn’t buying it.
The company’s share plunged 10.5 percent after its results announcement, before settling 8.7 percent below opening price at the time of publication.
The apparent cause for concern: AMD’s growing exposure to the AI bubble. Much of the company’s growth potential across both CPUs and GPUs is tied to AI adoption by a handful of companies that are yet to prove they can operate profitably.
On Tuesday’s earnings call, Su attempted to assuage investor fears, but in the same breath she said the quiet part out loud.
“When we talked about the large frontier-model companies, OpenAI, Anthropic, Meta, they will be consuming through a number of CSPs,” Su said. “There are additional customers or lots of customers who are interested in Helios at, let’s call it, a more regular scale than gigawatt scale.”
In other words, while AMD can sell plenty of GPUs, most are sold to a handful of customers. And while other entities have AMD on their shopping lists, they don’t buy in bulk.
Microsoft, another flagship customer for AMD’s latest generation of AI picks and shoves, serves both OpenAI and Anthropic, while Meta is reportedly looking to enter the GPU cloud biz itself.
Despite this, AMD remains optimistic about its prospects over the next few quarters.
It’s not hard to see why because since the launch of its MI300-series GPUs in late 2023, AMD has established itself as the most credible alternative to Nvidia.
At its Advancing AI event in San Francisco last month, the company showcased a new rack-scale compute platform called Helios packing 72 Instinct MI455X GPUs each with 432 GB of HBM4 memory on board.
On paper, the system meets or beats the performance of Nvidia’s Vera Rubin platform on most metrics. The Reg explored these chips in greater detail here.
AMD is also eager to cash in on demand for CPUs to power agentic AI sandboxes, which Su anticipates will be the biggest growth driver for Epyc sales before long.
Also unveiled at Advancing AI, AMD’s Venice Epycs will offer up to 256 cores and 512 threads with support for 16 memory channels at speeds of up to 1.6 TB/s per socket.
However, the CPU market isn’t the duopoly it once was and AMD now faces its traditional foe Intel, plus new competitors such as Nvidia, Arm, Qualcomm, AWS, Google, and Microsoft.
Nonetheless Su remains bullish about AMD’s prospects.
“Whether it’s server CPU, datacenter, AI, or our embedded business, and our PC business, we see them all benefiting from the AI tailwinds,” Su said.
It seems the AI tides will lift all chips, but let’s not forget that tides rise and fall.
In any case, while AMD’s embedded division is doing quite well with revenues topping $977 million, an increase of 19 percent over this time last year, things aren’t looking so hot for the House of Zen’s gaming and client computing divisions. While client PC sales were up 23 percent YoY to $3.1 billion during the quarter, AMD warns that the ongoing RAMpocalypse is likely to cut into PC sales over the next few quarters.
Meanwhile in gaming, the end of a console sales cycle is hitting AMD hard on semi-custom processor orders, with gaming revenue down 31 percent during the quarter to $779 million
AMD’s datacenter and AI sales teams therefore get the job of delivering the company’s Q3 forecast which calls for revenues of $13 billion plus or minus $300 million. ®
If you’ve been dying to run macOS on iPad hardware natively, a jailbreak solution has emerged for M1 and M2 iPads running iPadOS 16, though it is extremely experimental.
There has been an endless debate surrounding the iPad since Apple debuted the first iPad Pro. It runs iPadOS, a branch of iOS, which is much more locked down compared to macOS.
Users that want to use macOS on an iPad can finally give it a try, but it’ll be a limited experience. The GitHub repository for the Virtual Mac on iPad software will provide you all of the information you’ll need.
Since it takes advantage of an exploit found in iPadOS 16 to iPadOS 16.3.1, you’re going to need a very specific device and setup. Even then, the macOS and Xcode versions available are limited.
An iPad Pro with 1TB or more storage is recommended, though this works on iPad Air or other iPad Pros with M1 or M2 chips. Users can install anything from macOS Monterey to macOS Golden Gate, but it is best to stick to macOS Ventura to macOS Sequoia for stability.
If you’re wanting Xcode, install the correct version for the given OS you’ve installed.
While a Magic Keyboard isn’t required, it is recommended. macOS isn’t designed for touch, and you’ll be using some odd workarounds with the virtual keyboard otherwise.
The GitHub is open and asking for contributions to the active projects. Goals include adding support for iPadOS 15 and finding ways to support the feature in later iPadOS versions.
Since this is a jailbreak and an unofficial install of macOS, you won’t be able to sign into your Apple ID. Expect other aspects to be odd or broken as well.
Jailbreaking can lead to problems, and the Virtual Mac on iPad software is experimental at best, so do this at your own risk. Or, if you’re really that curious, perhaps watch someone on YouTube do it for you.
I’d highly recommend just running Sidecar for a similar effect. Sure, you wouldn’t actually be running macOS on iPad, but you’d also not be ruining a perfectly functional iPad either.
I very seriously doubt we’ll ever see macOS on an iPad, not even via an official hybrid system introduced by Apple. The company has been very clear about keeping the hardware categories separate.
Of course, Apple has changed its mind before. This software is a fun proof of concept for something we already knew was possible — macOS can run on the iPad.
Alternatively, you could just wait for the rumored touchscreen MacBook Pro. Whether or not we actually want or need macOS on iPad remains up for debate.
Presented by Rezolve Ai
Most brands know something is shifting in how consumers find and choose products. What most don’t know is how much of that shift has already taken place, where it’s happening, or whether they’re on the right side of it. That uncertainty is the problem. And the analytics stack most brands rely on isn’t built to resolve it.
In 2014, 82% of digital commerce started on a brand’s website. By 2024 that had fallen to 38%, according to Salesforce research. The journey that used to begin at a brand’s front door now begins somewhere else. Increasingly, it begins with a question asked of an AI platform and ends with an answer that shapes the purchase decision before any brand-owned touchpoint is engaged.
Consumers are asking AI where to shop, what to buy, and which product is right for them. Bain research shows that four in five consumers rely on zero-click results at least 40% of the time. That means the shortlist a consumer receives from an AI answer engine is, in many cases, the only shortlist they consult. Adobe Analytics recorded over 800% year-over-year growth in AI-driven traffic to retail sites, a signal of how rapidly AI platforms are inserting themselves between brands and their customers.
This is a structural shift, not a trend. And it has created a category of commercial loss that most analytics tools are architecturally incapable of detecting.
The gap is this: a brand can have strong onsite conversion metrics and still be losing significant ground in the market, because the customers who never arrived aren’t captured in any dashboard. There’s no “AI excluded you” event in a session log. There’s no abandoned cart entry for a shopper who was told by an AI assistant that a competitor was the better fit.
This is different from the SEO problem brands have managed for two decades. With traditional search, absence had a visible signal. You could see your ranking, audit the gap, and act on it. With AI answer engines, absence is invisible by default. The surface doesn’t show you what it didn’t show the consumer.
Sixty percent of searches now end without a click, according to Semrush’s 2025 zero-click study. For AI-mediated discovery, that number is structurally higher. The answer is the destination. If a brand isn’t in the answer, it isn’t in the consideration set, and its analytics will never surface that fact.
The commerce industry has developed sophisticated instrumentation for the journey from landing page to purchase. It has essentially no instrumentation for the journey from consumer intent to brand discovery, the layer where AI is now operating.
Brands that want to understand their actual competitive position in an AI-mediated market need to ask a different set of questions: How does my brand appear when consumers ask AI for recommendations in my category? What language does AI use to describe my products? Where am I present, where am I absent, and where am I being described in ways that don’t reflect my positioning?
These aren’t marketing questions. They’re infrastructure questions. And answering them requires a different kind of audit than anything in the current commerce or marketing toolkit.
Rezolve Ai commissioned research across 1,500 US consumers in January 2025 that found the majority of shoppers who use AI for product research make purchase decisions directly from those AI-generated recommendations, without returning to a search engine or brand site to verify. The implication for brands is significant: by the time a consumer reaches a brand’s owned properties, the decision may already have been made, or unmade, somewhere else.
The brands that will maintain commercial relevance as AI mediates more of the discovery layer are those that develop visibility into it, not just presence on their own platforms. That means treating AI discoverability as a measurable discipline, not an assumption, and building the infrastructure to understand, track, and influence how AI systems represent them to consumers.
The tools to do that are emerging. The measurement frameworks are not yet standardized. But the brands that begin building that visibility now will have a structural advantage as the market continues to shift.
AI answer engines are already forming preferences. Every day without visibility is a day those preferences solidify without you.
Sponsored articles are content produced by a company that is either paying for the post or has a business relationship with VentureBeat, and they’re always clearly marked. For more information, contact sales@venturebeat.com.
Why Trees Belong on the Risk Register
Weekend Open Thread: Wit & Wisdom
Meta enters AI-training agreement with far-right ‘propaganda rag’ Newsmax
Reform UK betrays West Mids residents by running from party pledges
MicroStrategy Post-Earnings CLARITY Act Push Could Add New Catalyst for Its Stock
Zack Polanski: an incitement to murder Nigel Farage?
Major shareholder moves on Canyon
XRP Ledger v3.3.0 brings five institutional features
Bitcoin Enters the 3rd Stage of the Bear Market
Luke Littler’s dominance sparks GOAT debate
Seema Kaliramna Wins Discus Throw Bronze, Takes India’s CWG Medals Tally To 17
New York sues Kalshi over prediction market gambling
Crypto PAC spending tops $2M in Michigan House race
Trump Announces Hamas Disarmament Agreement as Iran Strikes Kuwait Air Base and US Attacks Pause Overnight
Gemini can now summarize the messiest comment threads in Google Docs
ESET tracks rise in malicious AI skills and adaptable malware
DTCR: Deleveraging And A Hedge Fund Collapse Point To A Possible AI Bottom
Building A Reproduction PlayStation Motherboard
Gemini Spark can now use Chrome logins and saved passwords to run errands on your behalf
Four people die trying to cross Channel in small boats
You must be logged in to post a comment Login