Nvidia's $12.9B Run at Hugging Face Puts the AI Commons in Play
Nvidia has reportedly agreed to buy Hugging Face for $12.9 billion. Nothing is signed, and the neutrality of open AI's default hub is now the question.
Nvidia has reportedly agreed to buy Hugging Face for $12.9 billion. Nothing is signed, and the neutrality of open AI's default hub is now the question.
California voted unanimously to exempt open-source operating systems from its age-verification law, after a year of warnings that Linux couldn't comply.
Alibaba's Qwen 3.8 Max is a 2.4-trillion-parameter flagship โ the first Max-class Qwen promised open weights. A look at what checks out and what's vendor math.
Moonshot published Kimi K3's weights, license, and technical report on schedule โ but the license is a custom revenue-tiered grant, not the MIT or Apache terms early reports claimed. What actually shipped, what the independent numbers say, and what the weights can now settle.
Fifty companies โ Nvidia, Microsoft, Meta, and now OpenAI โ warn Washington against restricting open-weight AI. Anthropic and Amazon are the holdouts.
Moonshot AI paused new Kimi K3 subscriptions after launch demand hit its GPU ceiling โ hours before Axios reported the Trump administration is weighing restrictions on advanced Chinese models. The capacity crunch, the market reaction, and the policy fight, up to the moment.
Moonshot AI released Kimi K3 โ 2.8 trillion parameters, native vision, and a 1M-token context window, live in the API now with open weights promised by July 27. Benchmarks, pricing, the self-hosting reality, and what still needs independent verification.
On June 18 Google cut off Gemini CLI for free, Pro, and Ultra users and pushed them to a new tool, Antigravity CLI. It's more than a rename โ and enterprise customers are the exception.
The patch for a Linux root exploit called Dirty Frag turned out to hide a second one. Fragnesia was found by an AI auditing tool โ a clean illustration of why the page-cache-write bug class keeps outrunning the people patching it.
CVE-2026-23918 is a double-free in Apache 2.4.66's mod_http2. Two frames crash the worker. On Debian and the official Docker image, the same bug becomes a viable RCE path. The fix shipped May 4.