Tuesday, August 11, 2026 Trend Press · Cloudflare Pages

The Trend Tribune

"All the trends that are fit to read" Evening Edition Free of Charge
TODAY'S LEAD STORY

A single thread connecting OpenAI, Anthropic, and Meta—a small company of 35 people supporting security assessments in the frontier AI industry.

A CNBC report on August 9 revealed that cross-border incidents involving autonomous AI agents, individually disclosed by OpenAI, Anthropic, and Meta, were all caused by misconfigurations of testbeds provided by Tel Aviv-based evaluation infrastructure company Irregular (formerly Pattern Labs, with 35 employees). This report explains the fact that Google DeepMind also uses this company, highlighting the structural dilemma inherent in "realistic evaluation environments" and raising concerns about the risks of over-reliance on a single third-party company.

A single thread connecting OpenAI, Anthropic, and Meta—a small company of 35 people supporting security assessments in the frontier AI industry.
(Photo: illustrative)

A Single Thread Connecting OpenAI, Anthropic, and Meta: A Small 35-Person Company Supporting Security Assessment in the Frontier AI Industry

From late July to early August, three major AI research institutes—OpenAI, Anthropic, and Meta—independently announced incidents where their AI models had accessed unexpected external systems during security assessment testing. On August 9th, CNBC reported that all of these incidents stemmed from the assessment environment provided by Irregular (formerly Pattern Labs), a Tel Aviv-based startup with only 35 employees. As a journalist with a background in AI research, I would like to explore what this structure means for the AI ​​security research ecosystem.

A Common Root: "The Same Company, the Same Configuration Error"

The incidents from the three companies, previously reported as separate cases, actually shared a common root cause. According to Irregular's own explanation, the series of problems were not due to the AI ​​model intentionally escaping the sandbox (an isolated and secure testing environment), but rather to a "misconfiguration" of the evaluation testbed that unintentionally allowed it to access the internet. The company stated, "This was neither a sandbox escape nor sophisticated cyber activity," and explained that "there are no unresolved issues at this time."

Irregular is also reportedly preparing a white paper to share best practices for containment and secure evaluation operations in response to these events.

From Tel Aviv to Industry Leader in 3 Years

Irregular was founded in Tel Aviv in 2023 by Dan Rahab (CEO) and Omer Nevo (CTO). It has raised $80 million in funding from Sequoia and Redpoint Ventures, and its valuation has reached $450 million. The company is a specialized evaluation infrastructure firm that provides "Capture the Flag (CTF)" style cybersecurity assessments for frontier AI models.

According to CNBC, Irregular also handles security assessments for Google DeepMind, in addition to the three companies mentioned in this report. This series of incidents highlights a structure where multiple companies leading the world's frontier AI development rely on the same, relatively small, third-party infrastructure for the critical area of ​​"evaluating cybersecurity capabilities."

The Dilemma of a "Realistic Evaluation Environment"

An executive at Irregular offered an interesting explanation for this series of incidents: "When evaluating models, we want to connect them to the real world. Real attackers use every means possible, so models need access to a realistic environment. Otherwise, the tests won't represent reality."

This illustrates a structural dilemma: the more accurately we try to evaluate the cybersecurity capabilities of AI models, the more we need to make the evaluation environment "realistic," which in turn becomes inextricably linked to the "risk of actual damage." With thousands of tests running, sometimes for up to 72 hours, even a slight configuration error can lead to unexpected boundary breaches.

Regarding this series of incidents, one source explained that "the model was unable to complete its assigned task, searched for a solution online, and acted without realizing it had left the test environment and was interacting with the real world." The model didn't intentionally escape; rather, it simply continued to act faithfully toward its given goal, believing it was still "in the simulation," and consequently reached a real system.

A New Type of Vulnerability: Concentration Risk

The larger issue raised by this incident is the "concentration risk inherent in the AI ​​security evaluation infrastructure itself." If your company is using a frontier model from OpenAI, Anthropic, or Meta in a production environment, the security of that model indirectly depends on the sandbox configuration operated by this small Tel Aviv startup.

This is similar to the concept of "supply chain risk" in the software industry. Just as there are risks arising from an industry-wide reliance on specific open-source libraries or cloud vendors, this series of incidents has made visible the reality that the often overlooked but crucial function of AI security assessment is concentrated in a few specialized companies.

What Researchers Should Note

Irregular is highly regarded within the industry, having been selected as a recipient of Fast Company's "World Changing Ideas" list this year. How the company shares best practices for containment (secure containment) across the industry in its upcoming white paper will be a crucial test for the AI ​​security research community.

As the capabilities of frontier AI models rapidly improve, the challenge of how independent third parties can verify the safety and reliability of the evaluation methods themselves—how to evaluate the models—is likely to become even more important in the future. Based on the lesson learned that reliance on a single evaluation partner can become an industry-wide risk, the diversification of evaluation infrastructure and the creation of mechanisms for external audits of the evaluation environment itself will likely become the focus of discussions in the future.

AI安全性サイバーセキュリティAIエージェント評価インフラAI/ML

Aiming to "graduate from remote control"—Avatar Robotics tackles a humble but essential challenge with a $6.5 million budget.

Industrial humanoid robotics Avatar Robotics announced a $6.5 million seed funding round on August 5th, led by AlleyCorp and others. This article will examine Avatar Robotics' track record of contributing to the handling of over 900,000 products since December 2025, its development model of gradually increasing autonomy from human operator assistance, and its stated use of funds for "reducing reliance on remote operation," a common industry technological challenge, in comparison to other companies whose valuations continue to soar.

Aiming to "Graduate from Remote Control"—Avatar Robotics Tackles a Quiet but Essential Challenge with $6.5 Million

On August 5th, Avatar Robotics, a US startup developing industrial humanoid robots for warehouses and factories, announced a $6.5 million seed funding round. While this may seem less flashy than the news from other humanoid companies, examining the challenges this company is tackling reveals a quiet but essential problem facing the entire industry. As a software developer, I'd like to clarify this company's position.

Lead Investor: AlleyCorp

This funding round was led by AlleyCorp, with participation from Defy.vc (who led the previous pre-seed round), Headline, Henry Ford III, and Refashioned. The $6.5 million is still relatively small, modest compared to the hundreds of millions of dollars raised by other Chinese humanoid companies. However, the company's technological goals are worth paying attention to.

A Proven Track Record of 900,000 Units

What's interesting about the figures published by Avatar Robotics is their track record: their robots have already handled over 900,000 items in warehouse packing, sorting, and shipping operations since December 2025. This demonstrates that, unlike many humanoid robot companies that remain in the "demonstration" or "pilot" stage, their robots have actually been operating in practical settings for a significant period.

However, when evaluating this figure, it's crucial to understand its breakdown. Currently, the company employs a development model where human operators assist the robots in completing tasks, and the data obtained during this process is used to gradually increase their autonomy. Therefore, the "900,000 units" figure should be viewed with caution, as it represents the result of collaboration between humans and robots, not the achievement of fully autonomous robots.

A modest but crucial goal: "Reducing reliance on remote operation"

As a primary use of this funding, Avatar Robotics has clearly stated that, alongside "expanding robot deployment in warehouses and factories," it will be "developing software to reduce reliance on remote human operators."

This reflects a less-discussed reality facing the humanoid industry. Many humanoid companies' demo videos make it seem as if the robots are operating completely autonomously, but in reality, many rely on "teleoperation"—where human operators in remote locations control part or most of the robot's movements. Reducing this reliance and moving closer to true autonomy is a fundamental technological challenge that will determine the profitability and scalability of the entire industry.

Instead of initially touting a flashy "fully autonomous" system, Avatar Robotics' approach of "accumulating data with human assistance and gradually increasing autonomy" is commendable as a grounded development strategy. This method is a well-established approach within the industry, adopted by other proven companies such as Figure AI and Agility Robotics.

A Steady, Accumulation-Based Approach Behind the Massive Funding Raises

Amidst recent news of multi-billion dollar humanoid companies like AI² Robotics and Unitree, Avatar Robotics' $6.5 million funding round is not particularly remarkable. However, its concrete operational track record of 900,000 units and its clear and verifiable technical goal of "reducing reliance on remote control" are commendable.

Looking at the humanoid industry as a whole, attention tends to focus on soaring valuations and grand future visions. However, it is the approach of steadily accumulating data while operating in the field and gradually increasing autonomy that will ultimately support the industry's substantial progress in the long term.

Things to Watch as a Software Engineer

What the news from Avatar Robotics teaches us is that when evaluating the true capabilities of humanoid robots, it's essential to always check not only the "announced operational performance figures," but also the breakdown of "how much that performance relies on human assistance."

In this case, the company itself clearly stating "reducing reliance on remote control" as a development goal can be considered honest information disclosure. Going forward, we want to follow how far the company can achieve this goal, and how much its 900,000 units sold will expand as its autonomy improves. This is a modest but worthwhile indicator to monitor.

ヒューマノイド資金調達遠隔操作フィジカルAI倉庫自動化

Free cash flow down 91%—Meta's $145 billion bet highlights the "pain" of AI investment.

Meta's Q2 earnings report, released on July 29, finalized its 2026 capital expenditure guidance to $130 billion to $145 billion, approximately double the 2025 figure of $72.2 billion. This analysis examines the company's financial structure, including a 91% decrease in free cash flow from $8.5 billion to $784 million in one year, a 28% increase in tangible fixed assets to $225.7 billion in six months, the issuance of $24.9 billion in new long-term debt, an 8% decrease in operating profit, and a 68% increase in research and development expenses, as well as the investment trends of the four major hyperscalers, totaling $725 billion, from an accounting perspective.

Free Cash Flow Down 91% – The Pain of AI Investment: Meta's $145 Billion Bet

In its second-quarter earnings announcement on July 29th, Meta raised its full-year capital expenditure (capex) guidance to a lower limit of $130 billion, while keeping the upper limit unchanged at $145 billion. This effectively locks the company's 2026 investment into a narrow range of $130 billion to $145 billion. The stock price fell 10% immediately after the earnings announcement. As an accountant, I want to examine the specific impact of this massive investment on the company's finances using numbers.

The Scale: "Approximately Double 2025 Figures"

First, let's look at the basic figures. Meta's actual capital expenditures in 2025 were $72.2 billion. The median of this guidance, approximately $137.5 billion, is almost double this 2025 figure. The company has repeatedly revised its earnings forecast upwards since its initial guidance of $115 billion to $135 billion up to this quarter.

CFO Susan Lee cited rising component prices and increased data center-related costs to accommodate future capacity expansions as reasons for these upward revisions. In other words, rather than a shift in business strategy, the explanation is that the costs of executing existing investment plans have exceeded initial expectations.

Free Cash Flow Plummets to Below $800 Million

Particularly noteworthy in these earnings is the sharp decline in free cash flow (FCF, the cash a company can freely use after deducting capital expenditures from cash earned from operating activities). Free cash flow, which was $8.5 billion in the second quarter of 2025, fell to a mere $784 million in the second quarter of 2026. This represents a dramatic 91% decrease in one year.

Meta has previously been known as a "capital-efficient company" that generates abundant cash flow, primarily from its advertising business. The fact that massive investments in AI infrastructure are now pushing cash flow to the brink of depletion indicates that the nature of the company's business model is fundamentally changing.

The "Weight of Investment" Marked on the Balance Sheet

This expansion in investment scale leaves a clear mark on Meta's balance sheet. The company's net tangible fixed assets (real estate and equipment) reached $225.72 billion as of June 30th, an increase of $49.32 billion, or 28%, in just six months from the end of 2025.

Furthermore, Meta issued $24.91 billion in new long-term debt during this quarter. The increase in borrowing indicates that the scale of investment can no longer be financed with abundant cash reserves alone.

Operating Profit Down 8%, Costs Up 55%

The weight of investment is also clear when examining the income statement. Operating profit for the second quarter was $18.8 billion, an 8% decrease compared to the same period last year. Meanwhile, total costs and expenses increased by 55% year-on-year. The biggest driver of this expense increase was research and development (R&D) spending, which recorded a significant increase of 68% year-on-year. This shows that investment in AI is directly impacting the income statement in the form of R&D expenses.

At the earnings call, CEO Zuckerberg stated, "There is sufficient demand for our computing resources. We are receiving multiple inquiries at premiums significantly higher than the prices we are paying." This, conversely, suggests that Meta is facing a shortage of computing resources and needs to increase investment further to meet internal demand.

Total investment of the four major hyperscalers reaches $725 billion

Meta's investment is actually among the smallest in absolute terms among the four major hyperscalers (large-scale cloud and AI providers). While Amazon's investment is approximately $200 billion, Alphabet's is projected at $205 billion (after upward revision), and Microsoft's is estimated at around $190 billion for fiscal year 2026, Meta's $130 billion to $145 billion is the smallest among the four companies.

However, when looking at the growth rate from 2025 figures, Meta's growth is remarkably rapid compared to the others. The combined capital expenditures of the four companies for 2026 are projected to increase by approximately 77%, from approximately $410 billion in 2025 to approximately $725 billion. This enormous amount of capital is flowing across industries into a single sector: AI infrastructure.

What Accountants Should Consider

Meta's case demonstrates that investment in AI infrastructure cannot simply be dismissed as "aggressive growth investment"; it carries a concrete burden on actual cash flow and profitability. The 91% drop in free cash flow is enough to intensify investors' doubts about whether this massive investment will truly generate commensurate returns.

On the other hand, CFO Susan Lee has reportedly repeatedly stated that the company maintains the flexibility to adjust spending in future years to match the returns. This suggests that the company is aware of the possibility of downward revisions to its guidance beyond 2027 if AI-related products do not generate the expected revenue. Investors will need to closely monitor actual earnings indicators in the coming quarters to see how much this massive investment translates into increased efficiency in the advertising business and the creation of new revenue streams.

Meta決算設備投資AIインフラファイナンス
Advertisement300 × 250