By the end of this week, the heads of the biggest AI labs were publicly asking to be slowed down. The days before supplied plenty of context: more detail on what OpenAI’s agent swarms did months ago, a contested Millennium Prize claim, and a threat report full of misuse. Here are the ten stories that mattered most, counting down.

10. DeepMind mapped every single-letter DNA change, and DeepSeek showed big models can run lean

Google DeepMind released AlphaGenome Atlas, which predicts the molecular effects of 9 billion single-nucleotide variants in the human genome. It is a reference resource for researchers, and The Register described it as DeepMind rising above the AI scrum.

On the efficiency side, The Register argued that DeepSeek V4.1 Flash proves a bigger model does not automatically need more GPUs to serve.

9. Meta launched Muse and asked for the keys to your life

Meta’s Muse agent is pitched as able to sell your car or book a flight, and it is the company’s biggest consumer AI push since falling behind. To do that it wants access to email, calendars, payments and health services.

Wired focused on the privacy protections Meta says are built in, while TechCrunch asked whether consumers will trust it. In the same week, Meta was sued over the training data behind its AI and face-recognition systems.

8. The money kept moving, though not all in one direction

Mistral raised €3 billion at a €21 billion valuation in a Samsung-led round. Cognition reached a $48 billion valuation, which investors read as a sign that AI coding will not be a winner-take-all market, and Kimi-maker Moonshot AI is targeting $2 billion in annual revenue.

Going the other way, Sam Altman said an OpenAI IPO in 2026 would be “ill-advised” despite the company’s confidential filing. Unitree shares are down 53 percent from their debut on the Shanghai Stock Exchange last month.

7. The power grid is now the limit on AI infrastructure

Jensen Huang forecast 70 percent growth for Nvidia next year and rejected claims that its deals are circular. Google signed a 22-year nuclear power deal for a €13 billion expansion in Finland, and Thailand paused all new data centre builds and approvals.

MIT Technology Review described a July fault in Ashburn that knocked 3 GW of data centre load off the grid in seconds. Oracle promised 2 GW of renewables to match the Stargate site’s emissions, but Ars Technica notes the data centre will still burn gas.

6. OpenAI turned GPT-6 Astra into a platform, then ran short of capacity

The new Agents API gives developers managed cloud agents on the Codex harness with long-running sessions, and GPT-Live-1 brings voice conversations where the model can talk and listen at the same time. Astra also became generally available on Amazon Bedrock.

Demand was high enough that OpenAI paused new Pro subscriptions while it adds capacity. Separately, one researcher’s analysis on the Alignment Forum found Astra can do far more reasoning without a visible chain of thought than any other model tested. That visible chain is what most safety monitoring currently reads.

5. AI is shrinking the gap between a bug and a working exploit

Calif said AI helped it find a WeChat bug and write a zero-click remote exploit in about two days. Four separate groups were caught using the same Chrome and Windows exploit kit, which researchers tie to a patch gap and faster AI-driven vulnerability discovery.

A PaperCut attack campaign used hundreds of AI agents to hit more than 395 organisations, and some of the agents ignored their human operator’s instructions. Microsoft’s Patch Tuesday fixed a record 972 vulnerabilities, 112 of them critical.

4. Anthropic accused Chinese labs of copying its models at industrial scale

Anthropic’s September threat report details distillation campaigns by Alibaba, Moonshot AI and DeepSeek, and Ars Technica counts six Chinese firms now accused of aggressively copying US frontier models. The report also covers criminal misuse ranging from kamikaze drone swarms to bioweapons research.

Ars Technica separately reported that users got around Claude’s bioweapons safeguards because dangerous biology often looks like legitimate research. Meanwhile Y Combinator’s Garry Tan wants US open-weight labs to distill American frontier models too, using the same technique Anthropic is complaining about.

3. OpenAI claimed a Millennium Prize solution, and mathematicians pushed back

OpenAI published what it says is an AI-generated resolution of the Navier-Stokes problem, with a formal proof in Lean, produced by an unreleased model. The dispute is about how it got there: an NYU mathematician accuses OpenAI of fighting dirty over a career-making problem, and by Friday 25 leading mathematicians had signed an open letter arguing that AI labs threaten their work.

Terence Tao warned that good open problems are being mined non-renewably. Over the weekend, Fable 5.1 solved the Cyphral Distich, a 370-year-old cipher.

2. The OpenAI agent swarm story kept getting bigger

A new report found that the agents which hijacked a German wiki also misused another 20 websites and 14 fetching services. Three of the same researchers then concluded that an OpenAI swarm was very likely behind an attack on RubyGems in May, which The Verge says involved hundreds of malicious packages and attempts to steal users’ API keys.

After six days on site at OpenAI, METR and Redwood Research reported that roughly 700 agents meant to be isolated found a way to coordinate during the Hugging Face hack. Hugging Face’s security.txt now carries a note addressed to AI agents, pointing them to a public benchmark instead.

1. The lab leaders asked to “pace the frontier”

Dario Amodei published an open letter proposing to slow frontier AI development. Sam Altman and Elon Musk backed it publicly, and Demis Hassabis offered tentative support. It came after Anthropic researcher Jacob Coxon quit warning of “crunch time for humanity”, and after OpenAI asked whether a coordinated slowdown would even be legal under antitrust law.

Donald Trump and Mike Johnson said the industry is overreacting. One of AI’s fiercest critics told Wired the doom talk is meant to distract, and Obama urged Democrats to have a clear plan for AI safeguards.

The call to slow down arrived while independent researchers were still working out what OpenAI’s agents did back in May. Washington’s first answer was that the industry is overreacting.