Daily News Coverage: AI Infrastructure Drives Tech Rally as Chip Demand, Cybersecurity Risks, and Supply Chain Investment Accelerate
The CODEW Daily News Coverage | August 13, 2026
Good Morning! AI infrastructure earnings fueled a broad tech rally Wednesday, while policymakers and company insiders sent mixed signals about the industry's trajectory. Meanwhile, a logistics cyberattack demonstrated just how quickly a single breach can cascade across the supply chain. Here's today's briefing from The CODEW's The NewsRoom. What happened: US stocks closed mostly higher Wednesday, with the S&P 500 rising 0.26% to 7,748.5 and the Nasdaq gaining 0.54% to 26,588.49. The rally was driven by quarterly results and forecasts from CoreWeave and Super Micro Computer that reinforced expectations of continued demand for AI infrastructure. CoreWeave shares jumped around 18% after its quarterly revenue doubled year-over-year. Super Micro Computer climbed 17% after issuing stronger-than-expected revenue and earnings guidance. Dell Technologies gained roughly 10%, Micron Technology nearly 5%, and Cisco Systems more than 2.8%. Why it matters: The market is signaling that AI infrastructure demand remains resilient despite broader economic uncertainty. Mild July CPI data — 0.1% month-on-month and 3.4% annually — reinforced bets the Fed will hold rates steady in September. The combination of benign inflation and strong AI earnings created a favorable setup for tech stocks. Who is affected: AI infrastructure providers, data center operators, chipmakers, and the broader tech sector. Cloud infrastructure company Nebius surged more than 34% on US exchanges. What to watch next: Whether this rally is sustainable or a short-term relief bounce. CoreWeave and Super Micro's guidance will be closely watched as bellwethers for AI infrastructure spending through year-end. Sen. Bernie Sanders called on the nation's top artificial intelligence companies to pause development of the technology, arguing they have "already lost control of models that could cause potentially cataclysmic results" for millions of people. In a letter to the CEOs of OpenAI, Anthropic and Meta, Sanders cited their own statements about halting or delaying new models if the technology became too risky — and argued that threshold has already been passed. A separate letter from House Democrats called on Speaker Mike Johnson to "immediately schedule" hearings with CEOs of the largest AI companies. Why it matters: This represents the most prominent political call for an AI pause since the industry's rapid acceleration. While Sanders lacks direct legislative power over AI companies, the move signals growing bipartisan scrutiny. Politicians are increasingly focused on AI as voters express unease about electricity costs, job displacement, and retirement savings risk. Who is affected: OpenAI, Anthropic, Meta, and the broader AI industry. Data center operators face particular political heat from Americans blaming facilities for rising energy bills and pollution. What to watch next: Whether other legislators join the call and whether any AI company publicly responds to Sanders' letter. This could shape the regulatory landscape heading into 2027. Google held an all-hands meeting last week as co-founder Sergey Brin pushes an AI restructuring to bring the delayed Gemini 3.5 Pro back to the frontier, months after its May announcement. Jeff Dean, employee No. 30 and co-lead of the Gemini effort, is leaving after 27 years to head Discovery Loop, an AI startup automating scientific research, taking three key researchers with him. Demis Hassabis, DeepMind's CEO, moves to chairman and assumes Dean's chief scientist role. Koray Kavukcuoglu, formerly DeepMind's CTO, becomes chief AI architect in charge of Gemini models. Reports indicate Gemini 3.7 Flash is already in development even as 3.5 Pro's delivery date remains undisclosed. Why it matters: Google's flagship Gemini model trails Anthropic's Claude and OpenAI's GPT on key benchmarks — a painful irony for the company that invented the transformer architecture underpinning modern generative AI. The restructuring consolidates Google's AI research under a single chain of command, absorbing Google Brain into DeepMind. Google Cloud revenue rose 81.8% to $24.77 billion in Q2, with operating income up 3.1x to $8.81 billion, but Alphabet raised 2026 capital expenditures to $195-205 billion and is reportedly planning a $25 billion bond offering to fund AI infrastructure. Who is affected: Google's enterprise cloud customers, AI researchers, and competitors. The Pixel 11 lineup unveiled this week puts Gemini Intelligence at the center of Google's hardware strategy. What to watch next: Whether the restructuring accelerates Gemini 3.5 Pro's release and whether Jeff Dean's departure signals a broader talent exodus from Google's AI units. Cerebras Systems raised its annual revenue and gross margin forecasts, buoyed by robust demand for its chips from companies ramping up data-center capacity. The chip designer expects 2026 adjusted revenue between $880 million and $890 million, up from $855-865 million. Annual adjusted gross margin is forecast at 41% to 43%, up from 38-41%. Second-quarter sales rose 74.3% to $180.11 million; adjusted loss narrowed to $6.91 million from $40.5 million a year ago. Cerebras is racing to expand chip volumes to support a $20 billion multi-year agreement to provide AI compute to OpenAI. Its core cloud and services revenue — reflecting the OpenAI ramp — nearly quadrupled to $127.73 million in Q2. Why it matters: Cerebras' wafer-scale engine (WSE) — a single chip the size of a dinner plate with trillions of transistors — offers an alternative architecture to Nvidia's GPU clusters. By placing memory directly on the chip, Cerebras claims to accelerate inference and reduce data-transfer delays. The company's remaining performance obligations stand at $25.4 billion, suggesting significant contracted revenue ahead. Who is affected: Nvidia, AMD, and the broader AI chip market. Cerebras' success would validate wafer-scale architecture as a viable alternative to conventional GPUs. What to watch next: Whether Cerebras can scale production to meet its OpenAI commitment and whether the WSE architecture gains broader enterprise adoption. NCC Group has warned that the cyberattack on Ceva Logistics has become a wider supply chain incident affecting multiple organizations. Disruption has been reported at customers including Valve, Bol, De Bijenkorf, and Ajax. Ceva occupies a critical position in the supply chain, linking manufacturers, retailers, carriers, and end customers. The attack has affected a limited number of warehouses, but consequences have cascaded across retailers, financial organizations, consumer brands, and their customers. Several consumer-facing brands have reported shipping disruptions and delays. The incident shows how cyberattacks can spread from back-office systems into physical operations such as warehousing and transport. Why it matters: This demonstrates a familiar weakness in cyber risk management: heavy reliance on suppliers that customers do not directly control. Logistics providers hold sensitive customer data, making them valuable targets. Attackers don't need to compromise dozens of organizations individually when breaching a single trusted supplier can create widespread disruption. Who is affected: Retailers, consumer brands, e-commerce platforms, and their customers. Compromised contact data can be used in convincing phishing attempts based on real order or shipment information. What to watch next: Whether the attack expands further and how quickly affected companies restore normal operations. The incident is likely to accelerate third-party risk management requirements for logistics providers. Israeli cybersecurity company A Security disclosed that researchers, using a publicly available AI model and fewer than 20 prompts, discovered a vulnerability in Zoom's annotation tool within 24 hours and built a runnable attack program. The vulnerabilities — CVE-2026-53413, CVE-2026-53414, and CVE-2026-53415 — allow attackers to join or host meetings without any action or visible prompts from the victim, attacking any participant and taking over their device. The attack has been tested in Zoom's Windows, macOS, Linux, Android, and iOS apps. After takeover, attackers can steal personal data, activate microphones or cameras, or install malware. A security researcher first reported the vulnerability to Zoom on June 10th, and Zoom patched it between June 22nd and July 20th. However, server-side protection in end-to-end encrypted meetings cannot filter malicious messages, so users still need to update to the latest version. Why it matters: This is a stark demonstration of how AI lowers the barrier to entry for sophisticated cyberattacks. The ability to discover and weaponize a zero-day in 24 hours with minimal prompts represents a fundamental shift in the threat landscape — one that security teams at companies like CrowdStrike and Palo Alto Networks have been warning about. Who is affected: Zoom's hundreds of millions of users across enterprise and consumer segments. Any organization using Zoom for internal or external communications is potentially exposed if running unpatched versions. What to watch next: Whether this triggers broader scrutiny of AI's role in vulnerability discovery and whether platform vendors implement additional safeguards against AI-assisted attack research. A privilege escalation vulnerability in the Palo Alto Networks Prisma Access Agent app on Windows and macOS devices enables a local user to execute code with elevated privileges. The vulnerability is tracked as CVE-2026-0294 and was published on August 13. Why it matters: Prisma Access is widely deployed across enterprise environments. A local privilege escalation flaw could allow malicious insiders or attackers with limited access to gain broader control over corporate endpoints. Who is affected: Enterprises using Palo Alto Networks Prisma Access Agent. Security teams should prioritize patching. What to watch next: Whether an exploit is developed and whether the vulnerability affects additional platforms beyond Windows and macOS. Nasdaq-listed NXP Semiconductors is expanding its assembly and test operations in Malaysia with a new highly automated facility that will more than double its production capacity in the country when fully operational. Why it matters: The expansion reflects continued investment in Southeast Asian semiconductor assembly and test capacity as companies diversify supply chains beyond China. Malaysia has emerged as a key hub for semiconductor packaging and testing. Who is affected: NXP's automotive, industrial, and IoT customers. The expansion should improve supply chain resilience and capacity for NXP's broad portfolio. What to watch next: The timeline for full operational capacity and whether other semiconductor companies announce similar Malaysia expansions. AI semiconductor stocks surged Wednesday following CoreWeave and Super Micro Computer's earnings. Nvidia rose 3.03% to $224.09, AMD gained 1.82%, and Intel climbed 3.32%. SK Hynix surged over 9%, SanDisk over 5%, Western Digital over 3%, and Seagate over 7%. Storage chip, optical communications, and semiconductor stocks collectively rallied. Why it matters: The broad-based rally across the AI semiconductor value chain — from chip designers to memory manufacturers to optical communications providers — signals that the AI infrastructure buildout remains on track. Super Micro Computer and other AI server manufacturers are benefiting significantly from the data center construction boom. Who is affected: AI chip companies, server manufacturers, data center operators, and the broader semiconductor supply chain. What to watch next: Applied Materials reports fiscal Q3 results on August 13 — a key indicator of semiconductor equipment demand and the health of the chip manufacturing supply chain. Shopify's hard cutoff for legacy checkout scripts took effect August 13, 2026, with Plus stores now hard-blocked from using checkout. liquid and legacy script tags. Hundreds of merchants are scrambling to rebuild discount logic, upsells, and custom fields inside Checkout Extensibility. Shopify confirmed that after August 13, any customizations still running on checkout. liquid or legacy checkout script tags will no longer function. The company gave Plus merchants until August 13 to migrate fully. Why it matters: This is a major infrastructure shift for Shopify merchants. Checkout Extensibility represents Shopify's modernized, more flexible checkout architecture, but the migration requires significant development work. Merchants who failed to migrate face broken checkout functionality — a critical revenue-impacting issue. Who is affected: Shopify Plus merchants and any stores still relying on legacy checkout customizations. Agencies and developers supporting Shopify merchants are also affected. What to watch next: Whether merchants report significant issues post-migration and whether Shopify extends any grace period. This migration could create opportunities for Shopify app developers and agencies specializing in Checkout Extensibility. Scammers are abusing Shopify's legitimate Shop notification pipeline to send fake order and invoice alerts directly within the app. The notifications appear native to Shopify and may arrive as push alerts, making them feel more credible than traditional phishing emails. The campaign relies on fake or compromised Shopify accounts that generate fake orders, then embed a callback number in the receipt. Victims are typically pressured into calling numbers owned by scammers, then convinced to grant remote access, share bank logins, or return fake overpayments via gift cards or wire transfers. Between May 2026 and August 2026, several Huntress employees reported receiving these scam messages. Why it matters: This attack exploits Shopify's own trusted infrastructure rather than using spoofed domains or emails. Victims receive notifications through the legitimate Shop app — the same channel they'd expect for real order confirmations. This represents a sophisticated "Living Off Trusted Sites" technique. Who is affected: Shopify Shop app users. Anyone using the Shop app for order tracking and notifications could receive these fraudulent alerts. What to watch next: Whether Shopify implements additional safeguards to prevent abuse of its notification pipeline and whether similar attacks emerge on other e-commerce platforms. Two competing narratives are converging today. On one hand, CoreWeave and Super Micro's earnings confirm AI infrastructure demand is real and growing — the market rewarded them with double-digit gains. On the other, Sanders' call for a pause and Google's leadership turmoil suggest the industry's trajectory is far from smooth. The Ceva Logistics attack, meanwhile, offers a sobering reminder that digital and physical supply chains are now inextricably linked — a breach in one propagates to the other with alarming speed. For business decision-makers, the signal is clear: AI remains a growth driver, but the risks — regulatory, operational, and security-related — are escalating just as quickly. The winners will be those who can balance aggressive buildout with disciplined risk management. Source AttributionTHE LEAD
AI Infrastructure Earnings Fuel Broad Tech Rally as CoreWeave, Super Micro Beat Expectations
AI & Computing
Sen. Sanders Calls on OpenAI, Anthropic, Meta to Pause AI Development
Google Reshuffles AI Leadership as Gemini 3.5 Pro Delays Mount
Cerebras Raises Annual Targets on Strong AI Chip Demand
Cybersecurity
Ceva Logistics Cyberattack Spreads Across Supply Chain, Hits Retailers and Consumer Brands
Researchers Built a Zoom Exploit in 24 Hours Using Fewer Than 20 AI Prompts
Palo Alto Networks Prisma Access Agent Flaw Allows Local Privilege Escalation
Semiconductors & Infrastructure
NXP Semiconductors Expands Malaysia Assembly and Test Capacity With New Plant
AI Chip Stocks Rally as Infrastructure Demand Remains Strong
E-Commerce & SMB
Shopify's Legacy Checkout Deadline Arrives: Plus Stores Hard-Blocked on August 13
Fake Refund Scam Hits Shopify Shop App Users via Legitimate Notification Pipeline
What to Watch
THE CODEW TAKE
Reviewed by Erwin Castro
on
Thursday, August 13, 2026
Rating:
