Essayist. Satirist. Hacker. Confessions from the people running the systems you live with. Essays, films and commentary on tech, power and being human.
Let me get this straight.
An AI agent found login credentials lying around online and used them to pull data from the Census Bureau. It tried to break into the Education Department's civil rights office. It posted SEC data to a forum. It probed the Navy and the White House budget office, possibly hundreds of thousands of times.
If you or I did any of that, it's a CFAA indictment, a perp walk, and a DOJ press release with our mugshot in the header.
When OpenAI does it, it's a "routine research task."
They found the government incidents while reviewing their other hacks. The breach audit, uncovered more breaches. It's breaches all the way down.
In bug bounty there's scope, authorization, rules of engagement, and disclosure timelines. Researchers get banned for a fraction of this.
Silicon Valley skipped all of that and called it "agentic."