Daily brief at 7am Melbourne. Unsubscribe any time.

Sunday 30 August 2026

Sony and Warner Drop a Multi-Billion-Dollar Bomb on Anthropic Over AI Copyright

Sony Music and Warner are demanding billions from Anthropic over alleged wholesale piracy of copyrighted lyrics — and it could reshape how every AI company licenses creative content.

Lead story

Sony and Warner Drop a Multi-Billion-Dollar Bomb on Anthropic Over AI Copyright

Sony Music and Warner Chappell have filed a sweeping copyright lawsuit against Anthropic in the US District Court for the Northern District of California, alleging the company ran a "brazen campaign" of intellectual property theft by training its Claude models on tens of thousands of copyrighted songs without permission.

The damages being sought are eye-watering. The labels are claiming up to $150,000 per infringed work, plus up to $25,000 for every instance where copyright management information — the metadata that identifies who owns a song — was stripped from the training data. With "tens of thousands" of works named, the theoretical maximum runs into several billion dollars. That's not a number that gets thrown around for effect; in US copyright law, statutory damages at those levels are reserved for what courts treat as wilful infringement.

What makes this lawsuit different from the usual AI training scuffles is the specificity of the piracy allegation. Most AI copyright cases circle around whether training itself constitutes infringement — a genuinely unsettled legal question. This complaint reportedly goes further, accusing Anthropic of actively sourcing material from piracy sites rather than licensed datasets, which is a much harder position to defend. If the facts bear that out, the "fair use for training" argument that every AI lab has been sheltering under starts to look a lot shakier.

This isn't Anthropic's first brush with music copyright — Universal Music Group and others filed similar (if narrower) suits last year — but the Sony-Warner combination adds significant financial muscle and catalogue depth to the opposition. Between them, the two companies control catalogues that cover a substantial slice of recorded music history. That matters because the larger the catalogue, the higher the statutory damages ceiling climbs.

Why this matters beyond Anthropic. Every major AI lab has trained on internet-scale data scraped without explicit licensing agreements. OpenAI, Google DeepMind, Meta — all face versions of this question. What's different here is that if a court finds Anthropic specifically sought out pirated sources, it creates a factual distinction that could expose the company to damages that dwarf anything seen in AI litigation so far. A settlement, whenever it comes, is likely to set a de facto licensing rate that the rest of the industry will have to match.

The Australian angle is real. Australian copyright law doesn't have the same statutory damages regime as the US, but the government's ongoing review of the Copyright Act specifically flagged AI training as an unresolved area. If US courts establish that unlicensed training is infringement (rather than fair use), Australian AI developers and researchers operating under the assumption that training is implicitly permitted would need to recalibrate fast. ARIA and APRA AMCOS have both been watching this space closely.

Watch for Anthropic's initial response — whether they contest the piracy-sourcing allegation head-on or try to shift the argument back to fair use will tell you a great deal about how strong their internal evidence actually is.

Also today

Berlin Won't Pay. Hackers Got In Anyway.

Berlin's state government has publicly confirmed it was hit by a significant network intrusion in August and is now fielding an extortion demand — which it says it will not pay. Forensic investigators found data was exfiltrated from multiple departments, including the Senate Department for Mobility and Environment. The refusal to pay is the right call by most expert consensus, since paying ransoms funds future attacks and rarely guarantees data deletion. What's notable here is the breadth: this wasn't a single agency breach, it was the city-state's shared administrative network. Governments running centralised shared infrastructure face a single-point-of-failure problem that private sector orgs solved (imperfectly) years ago. Expect this to fuel European debate about sovereign cloud infrastructure for government systems.

The Hacker News

Five Critical WordPress Flaws Open Millions of Sites to Takeover

Researchers at Wordfence and Patchstack have disclosed five critical vulnerabilities across widely-used WordPress plugins and themes — WPMU DEV Dashboard, Avada, TranslatePress, Pods, and GiveWP. The worst carries a CVSS score of 9.8 and allows authentication bypass, meaning attackers can walk straight into admin panels without a password. Others enable arbitrary code execution and full account takeover. Collectively these plugins have tens of millions of active installations worldwide. WordPress powers around 43% of the web, including a significant share of Australian small business and government agency sites. If you manage WordPress infrastructure, treat these as patch-now rather than patch-soon — unauthenticated flaws at CVSS 9.8 are exactly what automated exploit kits target within hours of disclosure.

The Hacker News

Hasbro Confirms Employee Data Exposed in Earlier Cyberattack

Hasbro — the company behind Monopoly, Dungeons & Dragons, and a sprawling entertainment empire — has confirmed that a cyberattack earlier this year resulted in a data breach exposing employee personal information. The toy giant had previously disclosed operational disruptions from the incident but had not quantified the data impact until now. The disclosure is a reminder that large consumer brands with complex global supply chains are attractive targets not just for financial data but for employee records, which can be used in follow-on social engineering campaigns. Hasbro has not disclosed how many employees were affected or whether the breach extended to contractors and third-party partners — both of which would significantly expand the scope.

SecurityWeek

AI Giants Warn of Cybersecurity Crisis 'Within Months'

Several major AI companies have reportedly warned that AI-accelerated cyberattacks could reach crisis levels within months — not years. The Wired roundup also covers hackers targeting more than 100 US water treatment systems in a coordinated campaign, and ICE purchasing robot dogs for border patrol use. The water infrastructure angle is the most consequential: water systems are chronically underfunded on cybersecurity, often running decades-old SCADA equipment with little network segmentation. Australia's water utilities fall under the SOCI Act critical infrastructure framework, and the ACSC has previously flagged operational technology security at water facilities as a priority gap. The AI-acceleration thesis — that AI lowers the skill floor for sophisticated attacks — is increasingly treated as settled rather than speculative.

WIRED Security

I Asked 100 Companies for My Data. It Did Not Go Well.

A journalist submitted data access requests to 100 companies under various privacy laws and documented the results: confusion, ignored requests, broken portals, and — in a particularly ironic twist — some companies deleting data instead of providing it, which is technically a different right entirely. The experiment is a useful stress-test of how paper rights translate into practice. In Australia, the Privacy Act reforms currently progressing through parliament are intended to strengthen individual access and deletion rights, bringing them closer to GDPR standards. This kind of real-world audit suggests that legal rights mean little if companies can comply by making the process miserable enough that most people give up. Regulators in the EU have started fining companies specifically for obstructive compliance processes — Australia's OAIC may need similar enforcement teeth.

Ars Technica

Cities Are Dropping Flock Safety's Licence Plate Surveillance at Record Speed

August has seen an unprecedented wave of US city governments terminating contracts with Flock Safety, the automated licence plate reader (ALPR) network that has quietly built one of the largest private surveillance infrastructures in America. Flock's cameras are installed across thousands of neighbourhoods, feeding a database that law enforcement can query. The cancellations appear driven by a combination of civil liberties concerns, data retention disputes, and growing public awareness of the network's scale. The trend is relevant beyond the US: Australian police forces and local councils have been expanding ALPR deployments, largely outside any dedicated legislative framework. The public backlash in America may accelerate calls for Australia to establish clear statutory limits on how long plate data can be retained and who can access it.

Ars Technica

Nvidia's Moat Is No Longer Just About GPUs

A new analysis argues that Nvidia's sustained AI infrastructure dominance isn't simply about having the fastest chips — it's increasingly about the networking and traffic management layer that sits between GPUs in large-scale data centres. The company's NVLink and InfiniBand interconnect technologies, combined with its software stack, mean that raw GPU performance is only part of what customers are buying. Competitors can match Nvidia on individual chip benchmarks but struggle to replicate the full-system efficiency gains. This matters for AI economics: as model training and inference workloads scale, the bottleneck shifts from compute to data movement. Nvidia appears to have anticipated this earlier than almost anyone else, and is now monetising the insight aggressively.

TechCrunch AI

A Rumour of a Bug Is Now Enough to Trigger a Real Exploit

Simon Willison's latest essay makes a striking observation: in the current security environment, attackers have become so adept at reverse-engineering patches and hunting for related weaknesses that even a vague public rumour of a vulnerability — without a CVE, without a PoC — is enough to prompt active scanning and exploitation attempts within hours. The implication for defenders is uncomfortable: the window between 'someone heard something' and 'you're being probed' is now effectively zero. Willison traces several recent incidents where incomplete disclosures triggered exploit waves before vendors had finished their internal triage. The piece is a useful read for anyone thinking about responsible disclosure timelines and why coordinated disclosure processes that seemed reasonable five years ago may now be dangerously slow.

Simon Willison

Google Is Auto-Expanding AI Overviews, Burying Search Results Further

Google has begun automatically expanding its AI Overview summaries at the top of search results for a growing range of queries, pushing the traditional list of links significantly further down the page. Previously, users could see a collapsed summary and choose to expand it. Now, for affected searches, the full AI answer renders immediately alongside a follow-up question box — and the actual links don't appear until you scroll. For publishers, this is the next turn of a very uncomfortable screw. Traffic from search has already declined significantly as AI Overviews have rolled out; automatic full expansion accelerates that trend. Australian news publishers, already operating under the News Media Bargaining Code framework, may find the economics of search referral deteriorating faster than anticipated.

The Verge

Musicians Are Becoming AI Detectives to Catch Grifters Using Their Work

A growing community of musicians — particularly in genres like EDM where AI-generated audio can closely mimic established styles — have started systematically investigating artists they suspect of using generative AI tools without disclosure. The investigations use a combination of audio analysis software, metadata forensics, and crowd-sourced listening tests to build cases. Some have successfully pressured platforms to take down content or forced artists to publicly admit AI use. It's a grassroots response to a detection gap that platforms have so far been unwilling to close with hard rules. The piece highlights the uncomfortable position streaming platforms occupy: they profit from the volume of AI-generated content while having little incentive to police it aggressively.

The Verge

Xbox's Project Helix Is Now a 'Family of Devices,' Not One Console

Xbox CEO Asha Sharma has clarified that Project Helix — announced in March as Microsoft's next-generation console — will actually be a range of devices rather than a single hardware release. Speaking to the BBC, Sharma declined to confirm specifics but the language shift from 'console' to 'family of devices' strongly implies a strategy similar to what Xbox pursued with the Series S/X split, potentially extending further into handheld or hybrid form factors. Microsoft has been under sustained pressure in the console market and has publicly committed to being 'platform agnostic' as Game Pass expands. A hardware family rather than a single flagship gives the company more pricing flexibility and allows it to compete at multiple points in the market simultaneously.

The Verge

Sources consulted