Loading summary
Brian McCullough
Welcome to the Techmeme write home for Monday, July 21st, 2025. I'm Brian McCullough. Today, serious zero day has been uncovered that is affecting everybody all around the world. There is a patch though. Mark Gurman dishes on the foldable iPhone. TSMC joins the trillion dollar club. If you're an expert in a given field, you too can join the AI Gold rush. And did we just take a big step toward AGI or is this just the latest in the hype cycle? Here's what you missed today in the world of tech hey admins and security folks. You've had some work to do today that would be installing a patch from Microsoft after a huge SharePoint zero day RCE flaw that was actively being exploited globally on thousands of on prem servers was revealed. Quoting Bloomberg Vulnerabilities in the software have allowed hackers to access file systems and execute code, the US Cybersecurity and Infrastructure Security Agency warned on Sunday. While Microsoft said over the weekend that it had released a new patch for customers to apply to their SharePoint servers to mitigate active attacks targeting on premises servers, the company was still working to roll out others to address ongoing security flaws. Cybersecurity teams cautioned that a broad section of organizations may be affected by the breach. Tens of thousands, if not hundreds of thousands of businesses and institutions worldwide use SharePoint in some fashion to store and collaborate on documents, Microsoft said. Hackers are specifically targeting clients running sharep servers from their own on premise networks, as opposed to being hosted and managed by the tech firm. That could limit the impact to a subsection of customers. Silas Cutler, a researcher at Michigan based cybersecurity firm Census, estimated that more than 10,000 companies with SharePoint servers were at risk. The US had the largest number of those companies, followed by the Netherlands, the UK and Canada, he said. It's a dream for ransomware operators, and a lot of attackers are going to be working this weekend as well, he said. Microsoft has been trying to shore up its cybersecurity after a series of high profile failures, hiring new executives from places like the US Government and holding weekly meetings with senior executives to make its software more resilient. The company's tech has been subject to several widespread and damaging hacks in recent years, and a 2024 US government report described the company's security culture as in need of urgent reforms. Palo Alto Networks warned that the SharePoint exploits are real and in the wild and pose a serious threat. Google Threat Intelligence Group said in an email statement it had observed hackers exploiting the vulnerability, adding it allows persistent, unauthenticated access and presents a significant risk to affected organizations when they're able to compromise the fortress that is SharePoint. Everybody is kind of at their whim because that is one of the highest security protocols out there, said Gene Yu, CEO of Singapore based cyber incident response firm Black Panda. The Washington Post reported that the breach had affected US Federal and state agencies, universities, energy companies and an Asian telecommunications company, citing state officials and private researchers. Researchers said the vulnerability allows hackers to access SharePoint servers and steal keys that can let them impersonate users or services even after the server is patched. It said hackers can maintain access through backdoors or modified components that can survive updates and reboots of the system. End quote Mark Gurman Apple Scoop Monday Yes, Mark says a foldable iPhone is coming next year. Here are the deets Quote when the company introduces its first foldable iPhone at the end of next year, it will be entering a product category that is already seven years old, pioneered and dominated by its biggest hardware rival, Samsung Electronics. And this time, Apple won't be debuting a radically new interface or transformative hardware. Instead, the device will offer a similar design as Samsung's Galaxy Z Fold line and use many of the same core components, including foldable OLED screens sourced from Samsung Display. Samsung, meanwhile, continues to plow ahead. Just last week, we reviewed Samsung's latest Z Fold 7 and called it the first foldable phone with a true mainstream potential. That device is a remarkable feat of engineering, with a wider front screen and a refined design that you'll have to experience firsthand to truly appreciate. Already, sales are outpacing the prior generation to a significant degree, I'm told. That means Apple's first foldable won't break any technological barriers or redefine the category. Samsung has already taken care of much of the heavy lifting, but here's the twist that may not matter. Apple's unmatched ability to market premium hardware to consumers, Vision Pro aside, could make it the dominant player in the foldables market within months of launch. There's a sizable group of iPhone loyalists, myself included, who have long wanted a foldable device but weren't willing to switch to Android to get it. That pent up demand is real, and Apple knows it. In a way. Samsung has spent the past seven years setting up Apple for success. The format is finally ready for primetime just as the iPhone enters the market. But this isn't necessarily bad news for Samsung. Its component divisions will benefit from an iPhone sales surge, and the excitement may get more Android users to try a Foldable Galaxy in fairness to Apple, its foldable phone won't be a carbon copy. As I reported months ago, the company is focused on addressing a few of the foldable categories long standing weaknesses. The company aims to make the inner display crease less visible and dramatically improve the hinge mechanism. And as part of the development of iOS27, which formally kicks off soon, Apple will prioritize software features tailored specifically to this new form factor. Another reason why Apple is embracing foldables now is the format has become especially popular in China, a market where the company is eager for a turnaround. Local brands like Xiaomi, Honor, Huawei and Vevo have all launched foldables, and consumers in the region have shown a particular preference for the book style form factor, the one Apple is pursuing over the emerging flip phone style design. The new foldable iPhone is also expected to cost at least $2,000, giving Apple a relatively easy lever to boost iPhone revenue even if unit sales aren't high. Ultimately, Apple's foldable won't revolutionize the category, at least not on day one, but it will still be a big moment for the industry. With its brand power, marketing muscle and engineering refinements, Apple could once again turn a niche product into a global hit. It just won't be the innovation breakthrough that we're used to. End quote at the 2025 RISC V Summit in China, Nvidia said CUDA will now be compatible with RISC V's instruction set architecture, making RISC V a viable x86 and ARM rival. Quoting Tom's hardware, the announcement makes it clear that RISC V can now serve as the main processor for CUDA based systems, a role traditionally filled by x86 or ARM cores. While nobody even barely expects RISC V in hyperscale data centers anytime soon, RISC V RISC V can be used on CUDA enabled edge devices such as Nvidia's Jetson modules. However, it looks like Nvidia does indeed expect RISC V to be in the data center someday. A diagram shown at the session illustrated a typical configuration. The GPU handles parallel workloads while a RISC V CPU executes CUDA system drivers, application logic, and the operating system. This setup enables the CPU to orchestrate GPU computations fully within the CUDA environment. Given Nvidia's current focus, the workloads must be AI related, yet the company did not confirm this. However, there is more. Also featured in the diagram was a DPU handling networking task rounding out a system consisting of a GPU for compute CPU for orchestration and data movement. This configuration clearly suggests Nvidia's vision to build heterogeneous compute platforms where RISC V CPUs can be central to managing workloads, while Nvidia's GPUs, GPUs and networking chips handle the rest of the Whether or not this signals Nvidia's readiness to diversify its ecosystem beyond proprietary host platforms is something that is not exactly clear. Nonetheless, if the stars align, Nvidia has just positioned RISC V as a viable alternative in future AI and HPC processor designs across data centers. This is something that no one expected, but it may influence other companies to follow suit End quote Further proof the AI buildout is continuing, or at least proof Wall street believes it is continuing On Friday, TSMC closed above a $1 trillion market cap in Taiwan, a first for them. It also makes TSMC the first Asian stock worth more than $1 trillion since PetroChina back in 2007. The stock of TSMC is up nearly 50% just from an April low. Quoting Bloomberg, TSMC's stock surge reflected growing investor confidence that the world's top chipmaker will ride the AI boom to even greater dominance. The company raised its full year revenue growth forecast to about 30% last week, signaling TSMC may benefit in a tightening race for AI manufacturing capacity. We think that TSMC's tone towards advanced node demand is even more positive, with AI customers showing no signs of demand slowdown, wrote Goldman Sachs Group analysts, including Bruce Lu. After TSMC's quarterly earnings, we expect to see a higher magnitude of price hike in 2026. TSMC's American depository receipts were valued at around $1.2 trillion as of the close on Friday. Owning ADR shares have been more convenient for foreign investors, as converting the Taipei listed stock into the US equivalent needs regulatory approval. Strong AI spending by TSMC's customers and the upside of wafer prices will help mitigate the negative impact of a strong Taiwan dollar and help add to the company's gross margins, jpmorgan Chase and company analysts including Gokul Harahan wrote in a note late last week. End quote While single AI agents can handle specific tasks, the real power comes when specialized agents collaborate to solve complex problems. There is, however, a fundamental gap. We have no standardized infrastructure for these agents to discover, communicate with and work alongside each other. That's where agency agntcy comes in. The agency is an open source collective building the Internet of Agents, a global collaboration layer where AI agents can work Together, it will connect systems across vendors and frameworks, solving the biggest problems of discovery, interoperability and scalability for enterprises. With contributors like Cisco, Crewai, LangChain and mongodb, Agency is breaking down silos and building the Future of interoperable AI shape the future of enterprise innovation. Visit agency.org to explore use cases now that's a G N T C Y.org.
Wix Ad
Running a business is hard work. Building your website shouldn't be. With wix you can express your ideas, give direction, then leave the heavy lifting to AI. From site creation to branded content and images. Have fun with the details, customize what you want the way you want and manage your whole business from a centralized dashboard with expert AI tools. Build scale and enjoy the incredible results. You can do it all yourself on wix.
Brian McCullough
This is interesting. The FT says that companies like Scale AI are replacing low cost data labelers with highly paid experts in fields such as finance, driven by the rise of reasoning AI models. Quote Companies such as Scale AI, Turing and Toloka are hiring experts in fields such as biology and finance to help AI groups create more sophisticated training data that is crucial for developing the next generation of AI systems. The rise of so called reasoning models such as OpenAI's O3 and Google's Gemini 2.5 as accelerated the move away from employing thousands of low cost workers in countries such as Kenya and the Philippines who are typically paid less than $2 an hour to undertake the time consuming task of annotating the huge data sets used to train AI models. The AI industry was for a long time heavily focused on the models and compute and data has always been an overseen part of AI, said Olga Megakorskja, the chief executive and co founder of Dutch group Toloka. Finally, the industry is accepting the importance of the data for training. This shift has led to a surge in investor interest in data labeling startups. In June, Meta invested $15 billion in the US group scale AI, doubling its valuation to $29 billion as part of a push to catch up with rivals. In March, California based Turing AI raised $111 million at a $2.2 billion valuation, while Jeff Bezos personal firm Bezos expeditions led a $72 million investment round for to Luca in May. Previously, data labelers would handle simple tasks such as drawing boxes on images to identify objects, describing what images represent, selecting fluent ways to express things, and weeding out bad answers from data sets that often contain violent or graphic content. Because AI models need more data to perform better, these workers were expected to process tasks in seconds and complete hundreds of tasks during a working day to create vast data sets. Now, the demand for these tasks has dropped significantly as many of them could be automated, said many. As leading AI groups such as OpenAI, Anthropic and Google attempt to develop models that they claim will exceed human intelligence, there is a push to focus on the quality of data sets and hiring experts to examine complex problems. What these models now need is data of a real human using the models to do knowledge work and getting feedback on when the model is failing, said Jonathan Siddharth, co founder and chief executive of Turing AI. To ensure that models perform well in a wide variety of fields, from coding to physics and finance, deep pocketed AI companies are now willing to pay for more sophisticated data sets and experts from around the world. To attract people from different industries, turing paid experts 20 to 30% more than they received in their current jobs, said Siddharth. While budgets for data are only about 10 to 15% of the hundreds of billions of dollars AI companies spend on computing power, it remained an enormous amount of money, he added. End quot finally today, your mileage may vary on this item that got a lot of attention over the weekend. If you're AI skeptical, you'll think what I'm about to tell you about is just another peg in the hype cycle. But if you're an AI maximalist, you might think we'll look back in history as this being an important rung on the ladder to AGI. An OpenAI researcher said over the weekend that the company's latest experimental reasoning LLM, achieved gold medal level performance on the 2025 International Math Olympia. Quoting Engadget, Alexander We, a research scientist at OpenAI working on LLMs and reasoning, posted on X that an experimental research model delivered on this long standing grand challenge in AI. According to we, an unreleased model from OpenAI was able to solve five out of six problems at one of the world's longest standing and prestigious Math competitions, earning 35 out of 42 points total. The International Math Olympiad, or IMO, sees countries send up to six students to solve extremely difficult algebra and pre calculus problems. These exercises are seemingly simple, but usually require some creativity to score the highest marks on each problem. For this year's competition, only 67 of the 630 total contestants received gold medals, or roughly 10%. AI is often tasked with tackling complex data sets and repetitive actions, but it usually falls short when it comes to solving problems that require more creativity or complex decision making. However, with the latest IMO competition, OpenAI says its model was able to handle complicated math problems with human like reasoning. By doing so, we've obtained a model that can craft intricate, watertight arguments at the level of human mathematicians. Y wrote on X Y and Sam Altman, CEO of OpenAI, both added that the company doesn't expect to release anything with this level of math capability for several months. That means the upcoming GPT5 will likely be an improvement from its predecessor, but it won't feature that same impressive capability to compete in the imo. End quote Let me underline all of that again, quoting our friend Simon Willison. The most notable thing about this is that the unnamed model achieved this score without using any tools. OpenAI's Sebastian Bubc emphasizes that here, just to spell it out as clearly as possible, a next word prediction machine. Because that's really what it is here. No tools, no nothing, just produced genuinely creative proofs for hard no math problems at a level reached only by an elite handful of pre college prodigies. There's a bunch more useful context in this thread by Noam Brown, including a note that this model wasn't trained specifically for IMO problems. Typically for these AI results like in Go Dota Poker Diplomacy, researchers spend years making an AI that masters one narrow domain and does little else. But this isn't an IMO specific model. It's a reasoning LLM that incorporates new experimental general purpose techniques. So what's different? We developed new techniques that make LLMs a lot better at hard to verify tasks. IMO problems were the perfect challenge for this. Proofs are pages long and take experts hours to grade. Also, this model thinks for a long time. Oh, one thought for seconds, deep research for minutes. This one thinks for hours. Importantly, it's also more efficient with its thinking and there's a lot of room to push the test time, compute and efficiency. Further, it's worth reflecting on just how fast AI progress has been, especially in math. In 2024, AI labs were using grade school math as an eval in their model releases. Since then we've saturated the high school math benchmark, then AIME and now are at imogold. When you work at a frontier lab, you usually know where frontier capabilities are months before anyone else. But this result is brand new. Using recently deployed techniques. It was a surprise even to many researchers at OpenAI. Today everyone gets to see where the frontier is. Since I mentioned, skeptics have been throwing cold water on this, let me end by quoting from one of them. For balance, this is Corn Caramel Boldy on X. The model isn't public the evaluations aren't public yet you have a bunch of OpenAI employees claiming their experimental reasoning. LLM got gold level performance on the IMO. What is this? Not science for sure. Not even science by Demo, science by PR? End quote. Only two days in, but so far my take on the city of Pittsburgh is 5 stars. Would recommend with all the hills and cliffs, but then the various neighborhood flavors, it feels like Chicago and Cincinnati had a baby. And I mean that in the highest compliment possible given my affinity for both of those cities. Talk to you tomorrow.
Wix Ad
As a professional web creator, you're skilled at juggling it all. You deserve a platform that elevates your work. Wix Studio is built for designers, developers and marketers who demand more with high end design capabilities, streamlined workflows and robust business tools. Build with AI powered site mapping seamless figma to WIX Studio imports no code animations and built in responsiveness. Manage from one workspace, collaborate with teams, streamline workflows and deliver projects without the chaos, scale without the headaches. Reuse designs across projects. Let infrastructure run itself and handle more clients without burning out. From freelancer to agency, wix Studio grows with your ambitions. Build, manage and scale with hyper efficiency on WIX Studio in the time it takes you to actually board a flight.
Brian McCullough
From Group 8 now boarding Premier Altitude Elite Club member.
Wix Ad
You could have bought a Hyundai on Amazon. Visit HyundaiUSA.com or call 562-314-4603 for more details. Limited availability pickup through participating Hyundai dealer in select markets.
Techmeme Ride Home: Mon. 07/21 – Massive SharePoint Zero-Day
Release Date: July 21, 2025
Host: Brian McCullough
In this episode of Techmeme Ride Home, host Brian McCullough delves into the day's most pressing technology news. From a critical SharePoint zero-day vulnerability to Apple's entry into the foldable smartphone market, and groundbreaking advancements in AI and semiconductor industries, this episode covers a spectrum of topics shaping the tech landscape in 2025.
Timeframe: 00:04 - 11:16
Brian McCullough opens the episode by addressing a severe security threat: a zero-day Remote Code Execution (RCE) flaw in Microsoft SharePoint. This vulnerability has been actively exploited globally, affecting thousands of on-premises servers across various sectors, including US federal and state agencies, universities, and energy companies.
Key Points:
Notable Quotes:
Timeframe: 11:16 - 19:44
Mark Gurman from Apple Scoop breaks down Apple's foray into the foldable smartphone market, a domain long dominated by Samsung.
Key Points:
Notable Quotes:
Timeframe: 19:44 - 20:34
At the 2025 RISC V Summit in China, NVIDIA announced that its CUDA platform will now be compatible with RISC V's Instruction Set Architecture (ISA), positioning RISC V as a contender against established ISAs like x86 and ARM.
Key Points:
Notable Quotes:
Timeframe: 20:34 - 20:38
In a landmark achievement, Taiwan Semiconductor Manufacturing Company (TSMC) surpassed a $1 trillion market capitalization, marking it as the first Asian stock to achieve this milestone since PetroChina in 2007.
Key Points:
Notable Quotes:
Timeframe: 20:34 - 20:38
The episode highlights Agency, an open-source initiative aimed at creating a standardized infrastructure for AI agents to collaborate effectively.
Key Points:
Notable Quotes:
Timeframe: 20:38 - 19:44
Brian discusses a significant trend in the AI industry: the transition from low-cost data labelers to highly paid experts in specialized fields such as finance and biology.
Key Points:
Notable Quotes:
Timeframe: 19:44 - 20:34
The episode culminates with a discussion on whether recent advancements in AI signify a genuine step toward AGI or are merely part of the ongoing hype cycle.
Key Points:
Notable Quotes:
Brian McCullough wraps up the episode by reflecting on Pittsburgh, humorously likening its diverse neighborhoods to a blend of Chicago and Cincinnati, before signing off until the next day's update.
Note: This summary excludes all advertisement segments and non-content related sections to focus solely on the informative discussions and insights presented during the episode.