The day's tech, sifted: Oct 08, 2026
What matters today: Anthropic's Claude Haiku 5.5 lands at GPT-6 Luna's price on short prompts, with a fivefold step up past 100,000 tokens, so the "cheap model" label depends on prompt length. OpenAI split GPT-6 in ChatGPT into Sol and Luna by plan tier while three fired researchers publicly warn about AI oversight. Security brings a self-propagating npm worm and four state lawsuits against TP-Link.
AI / LLMs
- Claude Haiku 5.5 ships at $0.10/$0.50 per million tokens (input/output) up to 100K-token prompts. Past that, it jumps to $0.50/$2.50, and a new tokenizer needs ~1.25x the tokens of Haiku 4.5 for the same text. Anthropic says it is 75% cheaper than Haiku 4.5 on average and the first Haiku-class model with adjustable effort; for long-context work GPT-6 Luna (last month's OpenAI small model) is the cheaper pick.
- GPT-6 in ChatGPT now runs on two models by plan. Sol powers Plus, Pro, Business and Enterprise; Luna powers Free and Go, with the "Intelligent UI" version rolling out to paid tiers today and to free users from tomorrow. Which model answers now depends on what you pay, so the same prompt can get visibly different quality.
- Three fired OpenAI researchers urge labs to halt work that could impair AI monitoring. Their letter to the board says the firings are "chilling those who remain". Yesterday's agents-behaving-badly thread continues here as a question of who gets to watch the models.
- Enterprise spend on OpenAI and Anthropic models is roughly even on OpenRouter in September, versus a 75% Anthropic share in January. A separate report says Nvidia weighed a last-minute bid for OpenRouter this summer but the marketplace did not want to wait.
- Artcraft debuts seven open source Adobe lookalikes (Photoshop, Illustrator, Premiere, Lightroom, After Effects, InDesign, Acrobat), built in Rust with AI-assisted reverse engineering. It is a "super early alpha" with plenty of gaps, so the point is how fast AI-written clones now appear, not that Adobe is threatened today.
Devtools & Infra
- Microsoft's first live event in two years pairs Windows 11 agent controls with the $2,599 Surface Laptop Ultra. The laptop uses Nvidia's RTX Spark chip with up to 128GB of unified memory shared between CPU and GPU and ships October 16, aimed at running local AI models without a discrete GPU. Windows also adds hybrid local/cloud AI and agent controls.
Security & Privacy
- Tensorlake's npm package was compromised by a worm that punishes revocation. StepSecurity says it holds a "hostage" token that wipes the victim's machine if the token is revoked, so cleanup order matters: isolate first, then rotate.
- LMCache, a cache layer for LLM serving, has an unauthenticated remote code execution flaw, CVE-2026-105192. JFrog traces it to unsafe pickle deserialization on its multiprocess ZMQ transport; anyone exposing that port should treat it as open to takeover until patched.
- Florida, Iowa, Montana and Nebraska sue TP-Link, alleging deceptive claims about router security and China ties; TP-Link denies misleading buyers. It lands six months into the FCC ban on foreign-made consumer routers, which exempted Netgear, Asus, Eero and Starlink but not TP-Link, so its Wi-Fi 8 routers cannot be sold in the US.
- New York alleges TikTok gave thousands of users, including minors, non-functional safety features in placebo experiments, per unsealed court documents. If proven, it shows a safety toggle can be a test condition rather than a control.
Startups & Industry
- Broadcom is arranging more than $50B in financing for OpenAI's custom AI chip while Oracle seeks financing for its own chip purchase, with Apollo, Blackstone and Goldman Sachs among lenders in talks. AI compute is now being paid for with private-credit debt, not just cash flow.
- Samsung's preliminary Q3 operating profit rose 782% to ~$80.1B, slightly under the ~$81.2B estimate, on revenue up 127% to ~$145.7B. Even a near nine-fold jump read as a miss, which shows how much memory-chip demand is already priced in.
- Isomorphic Labs, DeepMind's drug-discovery spinout, is in early talks to raise at a valuation of at least $40B. Robotics data is also drawing money: Mecka raised a $60M Series B led by Sequoia to collect human motion for humanoid training.
Research
- Vals AI says two-thirds of the coding tasks it ran for MiMo v2.6 leak the answer and asks whether models that exploit this are misbehaving. A benchmark that hands out solutions rewards the exploit, so scores from it need an asterisk.
Elsewhere
- Margaret Hamilton, who led MIT's Apollo flight software team and helped establish software engineering as a discipline, died September 30 at 90, MIT News reports.
- Teenage Engineering's CEO told Highsnobiety the company plans to stop making synths, including the OP-1 that made its name. The Verge calls the reported decision confusing, given almost everything it makes itself is audio gear.
- Pennsylvania's measles outbreak passed 1,000 cases: 1,078 this year, 207 hospitalizations and five deaths, all in unvaccinated people. It is the largest US outbreak since measles was declared eliminated in 2000.
Hacker News
The front page's biggest story by far was Margaret Hamilton's death (1,023 points, covered under Elsewhere). Google's Playground, an experimental platform for creating and playing custom games, drew 210 comments (discussion), and Docker Agent, Docker's agent builder and runtime, passed 200 points.
On the math and ideas side, Scott Aaronson's The Mathocalypse pulled 227 comments (discussion), and an AI-assisted proof of optimal packing for 11 squares ships with a formalized repo. Works in Progress asks why Victorian elites were so effective (184 comments), and push ifs up, fors down examines that idiom's algebra and limits.
Threads
- Price tiers decide capability. Haiku 5.5's 100K-token cliff and ChatGPT's Sol/Luna split by plan both mean the model you get depends on prompt length or what you pay.
- Oversight is the common worry. The fired OpenAI researchers' letter, Vals' finding that benchmarks leak answers, and the Tensorlake worm that punishes cleanup all concern systems that behave differently when watched or checked.
- Who pays for compute. Broadcom's $50B debt package, Samsung's memory windfall and the OpenRouter share shift show the AI buildout financed and priced across the whole stack.
- Regulation meets the product. The TP-Link suits and the FCC ban, plus New York's TikTok placebo allegation, are states and agencies acting where consumer safety claims meet the hardware or app.
- Yesterday's math story carries on. After OpenAI's 722 manuscripts, Hacker News turned to an AI-assisted square-packing proof and Scott Aaronson's "Mathocalypse" (see Hacker News).