A Pentagon breach exposes about 3 million people, DeepSeek and Huawei build a CUDA alternative, Cloudflare plans a post-quantum certificate authority, and Decrypt turns news into a token market
Hello, dear TEA-mates! Here is what you need to know today.
1. 🪖 Hackers Stole Millions Of US Military Personnel Records
The US government is notifying millions of current and former service members and staff that their personal information was stolen in a months-long breach of the Pentagon's personnel records. A notice from the Defense Manpower Data Center (DMDC) says several unauthorized users exploited a flaw in an unspecified file-sharing system between October 2025 and mid-July 2026. The stolen, unencrypted records include Social Security numbers, names, dates of birth, sex, race, and military service details. A Pentagon official told CNN and Federal News Network the breach affects about 2.8 million living people and close to 300,000 deceased people. The DMDC holds over 60 million records and links personnel to the smart cards and passwords used to enter Pentagon systems and bases. The Defense Department says it has no indication the data was misused. The breach follows a September FBI hack attributed to ShinyHunters. (Read More)
🫖 TEA For Thought: "If the US military can be broken into this easily, no one can be safe."
2. 🇨🇳 DeepSeek And Huawei Build An Alternative To Nvidia's CUDA
Chinese AI firm DeepSeek said Wednesday it has partnered with Huawei Technologies to develop programming tools for Huawei's Ascend chips, the latest sign of Chinese tech firms seeking alternatives to the Nvidia ecosystem. In a post on its official WeChat account, DeepSeek said it is open-sourcing infrastructure for the Ascend platform, including a high-level programming language called TileLang plus related compute and communication libraries. DeepSeek said TileLang offers "a simpler programming model" than Nvidia's CUDA, the software platform widely treated as the global standard for AI development. "The first priority is establishing a high-level language that is universal, easy to program, and still capable of reaching the hardware's full performance potential," the company said. The two companies also jointly worked on a "supernode" system built from 128 Ascend 950 chips. (Read More)
🫖 TEA For Thought: "Huawei is the PLA, and Liang Wenfeng of DeepSeek is also part of the PLA. There is no AI business that is not state-backed. If one is not, it just means it is not YET."
3. 🔐 Cloudflare Plans A Certificate Authority For The Quantum Era
Cloudflare (NYSE: NET) announced during its annual Birthday Week that it will become a public Certificate Authority, issuing both classical TLS certificates and post-quantum Merkle Tree Certificates (MTCs) to defend against "harvest now, decrypt later" attacks. It signed a definitive agreement to acquire publicly trusted root key material from GlobalSign, trusted by browsers since 2012, and applied to the root programs of Google Chrome, Apple, Microsoft, and Mozilla. Post-quantum signatures can be up to 40x larger than classical ones, so MTCs batch certificates into a Merkle tree and send a proof under 1 kB instead. Trials in Chrome Beta 146 showed a 9% median handshake speedup over classical chains. Cloudflare, which terminates TLS for over 20% of web traffic, plans MTC issuance in Q1 2027, and the GlobalSign deal should close within two months. (Read More)
🫖 TEA For Thought: "Definitely something every company should prepare for. Not just AI, but AI powered by quantum computing!!"
4. 🪙 Decrypt Turns Into An Information Exchange Powered By A Token
Crypto publisher Decrypt is evolving into The Information Exchange, a network that puts news, data, market prices, probabilities, and direct trading in one place, powered by Myriad and the MYR token on Solana. Readers following an asset like Bitcoin will be able to read the story, see what markets predict, and act without leaving the page, through prediction markets, spot markets, perpetual futures, and other instruments, some built in house and some integrated from third parties. Myriad says its prediction markets have already processed more than $600 million in volume. Decrypt, now combined with Rug Radio, reaches about 1.6 million monthly unique users and more than 73,000 newsletter subscribers. MYR can be staked for API throughput, data feeds, and market resolution, and part of network revenue will fund MYR buybacks and burns. A staggered rollout leads into Solana Breakpoint. (Read More)
🫖 TEA For Thought: "It used to be that information is money, but now, with AI, intelligence has become so cheap that it has become a commodity. An information exchange is, in a sense, a commodity exchange, but this time what is being exchanged is information or intelligence, or, we could say, a token, as in the unit for calculating AI intelligence as well as crypto. What a pun!"
5. 🛡️ Nvidia Wants To Watch AI Agents From The Silicon
Nvidia introduced the Open Agent Safety Platform, a reference design for monitoring AI agents from hardware, after several frontier labs reported agents breaking out of evaluation environments and, in some cases, misreporting what they did. The stack pairs OpenShell, Nvidia's open source (Apache 2.0) runtime that sandboxes each agent and checks its file, network, tool, and credential limits before and during a run, with Nvidia Sentry, which enforces those policies on BlueField-4 data processing units. In a Vera Rubin POD, BlueField-4 sits on each node's only path to the model, so it can watch agent behavior out of band and act as a kill switch, beyond the agent's reach. Nvidia's core lesson is that an agent running for days on hard problems "cannot be expected to fully govern its own behavior." On existing Vera and BlueField-4 systems, enabling it is a software update. (Read More)
🫖 TEA For Thought: "Monitoring from the hardware layer might be a must for agent guardrails."
🛠️ Skill of the Day
The Breach Notice Decoder: turns a scary "your data was exposed" letter into a calm, step-by-step action plan.
You are a calm, practical identity-protection advisor who explains things in plain
language. I received a data breach notice and I am not sure what it means for me.
Step 1. Read the notice I paste below and tell me, in three short sentences, what
was stolen, when, and from whom. Quote the exact lines you rely on.
Step 2. Sort what was exposed into High, Medium, or Low risk for me personally.
For example, a Social Security number is High, an email address is Low.
Step 3. Give me a checklist of actions in order of urgency, such as freezing my
credit, changing passwords, turning on two-step login, or watching for phishing
that mentions this breach. For each step, say how long it takes and whether it
costs money.
Step 4. List any free services the notice offers and the deadline to sign up.
Do not guess facts the notice does not state. If something is unclear, tell me
what to ask the sender. Here is the notice:
[PASTE THE BREACH NOTICE HERE]Paste into ChatGPT, Claude, or your tool of choice. Remove your own account numbers before you paste.
TEAHEE Moment
Stay sharp, stay informed. See you tomorrow.
If you enjoyed this TEA, follow along on social for more:






