## Sources

1. [Radar Trends to Watch: May 2026](https://www.oreilly.com/radar/radar-trends-to-watch-may-2026/)

---

### Radar Trends to Watch: May 2026 by Mike Loukides and Claude

**Main Arguments**
*   **Security Tension in Frontier AI:** There is a significant industry tension regarding how to handle highly capable, potentially dangerous AI models [1]. This is highlighted by Anthropic's decision to restrict its powerful Claude Mythos model to a small corporate cohort (Project Glasswing) to manage vulnerability risks, while OpenAI chose to release its similarly capable GPT-5.5 to the general public [1]. 
*   **AI is Becoming Operational:** The focus of AI development has shifted away from large language models that merely play word games toward highly operational tools [2]. AI agents are now being designed to automate complex enterprise processes and be shared across teams to ensure consistent toolsets [2]. 
*   **The Economics of AI are Shifting:** The expanding open-weight model market is fundamentally reshaping the economics of artificial intelligence [2]. With highly capable open models closing the performance gap with closed providers, organizations are increasingly evaluating trade-offs between cost, portability, and support [2].

**Key Takeaways**
*   **Open-Weight Models Rival Frontier Models:** The current cycle saw significant releases from DeepSeek, Alibaba, Google, Z.ai, and Moonshot [2, 3]. DeepSeek-V4, for instance, performs closely to frontier models like Claude Opus 4.7 on coding benchmarks but operates at a radically lower cost [2, 3].
*   **The Rise of Agentic Software Engineering:** Chat interfaces and traditional IDEs are fading into the background as agentic interfaces take over [4, 5]. Tools like Cursor 3 are prioritizing agent orchestration over traditional code editing, and shared "workspace agents" are enabling teams to collaboratively build automated workflows [4, 6].
*   **Vulnerability Timelines Have Collapsed:** The integration of AI into cybersecurity has reduced the time between the discovery of a vulnerability and its exploitation to nearly zero [1, 7]. Furthermore, recent attacks on secure networks like Tor and Signal demonstrate that systems are often compromised by their surrounding software environments rather than the core protocols themselves [7, 8].
*   **A Standardized Agentic Stack is Emerging:** A standard three-layer architecture for AI agents—consisting of orchestration, execution, and review layers—is rapidly developing, supported by interchangeable open-source modules and new infrastructure registries from providers like Amazon [6, 9].

**Important Details**

**AI Models**
*   **OpenAI's GPT-5.5** was released to general availability and is described as "Mythos-like hacking, open to all," though some sources report it is highly prone to hallucinating incorrect answers [1, 3]. 
*   **Anthropic's Claude Opus 4.7** was launched as an intermediate model with improved multimodal capabilities, but it utilizes a new tokenizer that effectively raises inference costs [3].
*   **Google's Gemma 4** was released, featuring reasoning models designed for agentic workflows, including a small version capable of running natively on iPhones and Androids [3].
*   OpenAI introduced **GPT-Rosalind**, a unique model tuned specifically for biology workflows that acts skeptical rather than sycophantic [10].

**Software Development & Design**
*   **Apple's App Store** experienced an 84% surge in new apps in the first quarter of 2026 due to AI generation, though Apple has started removing apps created via "vibe coding" [6].
*   Anthropic faced a public stumble when **Claude Code** experienced a behavioral regression and an accidental source code leak [4, 5]. The leaked code was subsequently weaponized on GitHub to distribute Vidar malware under the guise of unlocked enterprise features [7].
*   Anthropic is entering the design software market with **Claude Design**, a tool in research preview positioned to directly compete with Figma and Canva [6].

**Security Risks & Innovations**
*   Anthropic purposefully pulled **Claude Mythos** from broader release because it proved too adept at discovering software vulnerabilities [7]. However, the NSA is utilizing a preview version of the model, despite Anthropic being blacklisted by the Pentagon [7].
*   Claude has successfully uncovered zero-day remote code execution vulnerabilities in foundational software tools like **Vim and Emacs** [7].
*   Cybercriminals are adapting quickly; ransomware gangs like Kyber are already transitioning to **postquantum encryption**, and Microsoft noted a rise in criminals using Teams to impersonate help desk staff to steal credentials [7, 8]. 

**Infrastructure, Operations, and The Web**
*   Demonstrating that energy is the new bottleneck for AI scaling, Anthropic purchased **3.5 gigawatts of computing power** from Google and Broadcom, focusing the deal on watts rather than chips [9].
*   Google released two new eighth-generation specialized TPUs: the **8t for training** and the **8i for inference** [9].
*   Web infrastructure faces an aging crisis, highlighted by concerns over who will maintain the web when veteran **PHP developers retire** [11].
*   Cloudflare released **EmDash**, a ground-up reimagining of WordPress designed for the modern, agentic web [11].

**Robotics**
*   Boston Dynamics' **Spot the robotic dog** can now visually read gauges and thermometers using Google's Gemini Robotics-ER 1.6 model [10].
*   Major League Baseball has implemented a robotic system to rule on challenges to human umpire ball and strike calls [10].