Tap a claim on the ring to put it at the centre.
← AI agents can spontaneously hack third-party websites even when given benign public-information tasks.
17 connected korrents · 14 moments on record from 22 Mar 2025 to 17 Sept 2026.
Everything filed under AI agents
AI agents
Everything filed under AI and jobs
AI and jobs
Everything filed under prompt injection
prompt injection
Everything filed under self-sovereign AI
self-sovereign AI
Everything filed under coding agents
coding agents
Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject Same subject
Read this korrent: AI agents can spontaneously hack third-party websites even when given benign public-information tasks.
AI agents can spontaneously hack third-party websites even when given benign public-information tasks.
Last stated today
17 Sept 2026
ZM
Zvi Mowshowitz — holds since 2026-09-17 — tap for who they are
Same subject: A handful of AI agents is not a handful of colleagues, because agents agree with you constantly and colleagues tell you where you are wrong. — tap to centre the map on it
A handful of AI agents is not a handful of colleagues, because agents agree with you constantly and colleagues tell you where you are wrong.
Last stated 6 months ago
22 Mar 2026
NF
Nicole Forsgren — holds since 2026-03-22 — tap for who they are
Same subject: Agentic organisations will be forkable in a way that classical companies never were. — tap to centre the map on it
Agentic organisations will be forkable in a way that classical companies never were.
Last stated 6 months ago
11 Mar 2026
AK
Andrej Karpathy — holds since 2026-03-11 — tap for who they are
Same subject: AI agents and AI coding will run on servers and from the cloud first, not on your laptop. — tap to centre the map on it
AI agents and AI coding will run on servers and from the cloud first, not on your laptop.
Last stated 3 months ago
28 Jun 2026
PL
Pieter Levels — holds since 2026-06-28 — tap for who they are
Same subject: AI agents are only as good as the proof-checkers, compilers, type systems, and linters given to them. — tap to centre the map on it
AI agents are only as good as the proof-checkers, compilers, type systems, and linters given to them.
Last stated 3 days ago
14 Sept 2026
GR
Guillermo Rauch — holds since 2026-09-14 — tap for who they are
Same subject: AI agents are reducing human-to-human interaction via code — tap to centre the map on it
AI agents are reducing human-to-human interaction via code
Last stated a week ago
8 Sept 2026
GO
Gergely Orosz — holds since 2026-09-08 — tap for who they are
Same subject: AI agents can already resolve more than eighty per cent of a company's incoming customer issues. — tap to centre the map on it
AI agents can already resolve more than eighty per cent of a company's incoming customer issues.
Last stated a year ago
18 Aug 2025
CB
Clay Bavor — holds since 2025-08-18 — tap for who they are
Same subject: AI agents can now do real cognitive work, and writing software is permanently changed as a result. — tap to centre the map on it
AI agents can now do real cognitive work, and writing software is permanently changed as a result.
Last stated a year ago
10 Jun 2025
SA
Sam Altman — holds since 2025-06-10 — tap for who they are
Same subject: AI agents need to run in a VM or the cloud rather than locally on the desktop — tap to centre the map on it
AI agents need to run in a VM or the cloud rather than locally on the desktop
Last stated a week ago
8 Sept 2026
GO
Gergely Orosz — holds since 2026-09-08 — tap for who they are
Same subject: A rogue deployment that gets a foothold can hitch a ride on the intelligence explosion, recruiting each new model as it comes off the presses. — tap to centre the map on it
A rogue deployment that gets a foothold can hitch a ride on the intelligence explosion, recruiting each new model as it comes off the presses.
Last stated 2 weeks ago
1 Sept 2026
AC
Ajeya Cotra — holds since 2026-09-01 — tap for who they are
Same subject: A slightly more capable agent swarm has a very strong incentive to set up a wholly unmonitored rogue deployment of itself. — tap to centre the map on it
A slightly more capable agent swarm has a very strong incentive to set up a wholly unmonitored rogue deployment of itself.
Last stated 2 weeks ago
1 Sept 2026
AC
Ajeya Cotra — holds since 2026-09-01 — tap for who they are
Same subject: If frontier agents cannot yet establish a covert, persistent rogue deployment, they very likely will be able to within six months. — tap to centre the map on it
If frontier agents cannot yet establish a covert, persistent rogue deployment, they very likely will be able to within six months.
Last stated 2 weeks ago
1 Sept 2026
AC
Ajeya Cotra — holds since 2026-09-01 — tap for who they are
Same subject: Prompt injection can be caught by watching the neurons that fire when it happens, so a defence no longer depends on the model reporting the attack. — tap to centre the map on it
Prompt injection can be caught by watching the neurons that fire when it happens, so a defence no longer depends on the model reporting the attack.
Last stated 2 months ago
27 Jul 2026
BC
Boris Cherny — holds since 2026-07-27 — tap for who they are
Same subject: Prompt injection has no equivalent of parameterized queries: there is no reliable way to tell a language model which text is data and which is instructions. — tap to centre the map on it
Prompt injection has no equivalent of parameterized queries: there is no reliable way to tell a language model which text is data and which is instructions.
Last stated 6 months ago
19 Mar 2026
SW
Simon Willison — holds since 2026-03-19 — tap for who they are
Same subject: Prompt injection is an extremely hard attack to defend against, and hardly anyone integrating AI is talking about it. — tap to centre the map on it
Prompt injection is an extremely hard attack to defend against, and hardly anyone integrating AI is talking about it.
Last stated a year ago
22 Mar 2025
TH
ThePrimeagen — holds since 2025-03-22 — tap for who they are
Same subject: A company must cut half its engineers to pay for the other half's tokens, and that is what the layoffs are actually about. — tap to centre the map on it
A company must cut half its engineers to pay for the other half's tokens, and that is what the layoffs are actually about.
Last stated 6 months ago
11 Mar 2026
SY
Steve Yegge — holds since 2026-03-11 — tap for who they are
Same subject: A productivity improvement means fewer people doing the same job, and that should be said plainly by the people defending it as good. — tap to centre the map on it
A productivity improvement means fewer people doing the same job, and that should be said plainly by the people defending it as good.
Last stated 3 weeks ago
26 Aug 2026
DH
David Heinemeier Hansson — holds since 2026-08-26 — tap for who they are
Same subject: A universal basic income is a dangerous power-sharing arrangement, because it puts everyone's basic needs at the mercy of whoever holds office. — tap to centre the map on it
A universal basic income is a dangerous power-sharing arrangement, because it puts everyone's basic needs at the mercy of whoever holds office.
Last stated 3 months ago
4 Jun 2026
AI
Alex Imas — holds since 2026-06-04 — tap for who they are
same subject or similar wording a cloud: claims about one subject, named for it bar: when it was last stated, on a scale from 2015 to today — full is today a face: someone on record holding the claim — tap it for who they are
At the centre
AI agents can spontaneously hack third-party websites even when given benign public-information tasks.
Last stated 17 Sept 2026 · today
Holds ZM Zvi Mowshowitz
Read this korrent →
Same subject: AI agents
A handful of AI agents is not a handful of colleagues, because agents agree with you constantly and colleagues tell you where you are wrong.
Last stated 22 Mar 2026 · 6 months ago
Holds NF Nicole Forsgren
Same subject: AI agents
Agentic organisations will be forkable in a way that classical companies never were.
Last stated 11 Mar 2026 · 6 months ago
Holds Andrej Karpathy
Same subject: AI agents
AI agents and AI coding will run on servers and from the cloud first, not on your laptop.
Last stated 28 Jun 2026 · 3 months ago
Holds Pieter Levels
Same subject: AI agents
AI agents are only as good as the proof-checkers, compilers, type systems, and linters given to them.
Last stated 14 Sept 2026 · 3 days ago
Holds Guillermo Rauch
Same subject: AI agents
AI agents are reducing human-to-human interaction via code
Last stated 8 Sept 2026 · a week ago
Holds Gergely Orosz
Same subject: AI agents
AI agents can already resolve more than eighty per cent of a company's incoming customer issues.
Last stated 18 Aug 2025 · a year ago
Holds CB Clay Bavor
Same subject: AI agents
AI agents can now do real cognitive work, and writing software is permanently changed as a result.
Last stated 10 Jun 2025 · a year ago
Holds Sam Altman
Same subject: AI agents
AI agents need to run in a VM or the cloud rather than locally on the desktop
Last stated 8 Sept 2026 · a week ago
Holds Gergely Orosz
Same subject: self-sovereign AI
A rogue deployment that gets a foothold can hitch a ride on the intelligence explosion, recruiting each new model as it comes off the presses.
Last stated 1 Sept 2026 · 2 weeks ago
Holds AC Ajeya Cotra
Same subject: self-sovereign AI
A slightly more capable agent swarm has a very strong incentive to set up a wholly unmonitored rogue deployment of itself.
Last stated 1 Sept 2026 · 2 weeks ago
Holds AC Ajeya Cotra
Same subject: self-sovereign AI
If frontier agents cannot yet establish a covert, persistent rogue deployment, they very likely will be able to within six months.
Last stated 1 Sept 2026 · 2 weeks ago
Holds AC Ajeya Cotra
Same subject: prompt injection
Prompt injection can be caught by watching the neurons that fire when it happens, so a defence no longer depends on the model reporting the attack.
Last stated 27 Jul 2026 · 2 months ago
Holds Boris Cherny
Same subject: prompt injection
Prompt injection has no equivalent of parameterized queries: there is no reliable way to tell a language model which text is data and which is instructions.
Last stated 19 Mar 2026 · 6 months ago
Holds Simon Willison
Same subject: prompt injection
Prompt injection is an extremely hard attack to defend against, and hardly anyone integrating AI is talking about it.
Last stated 22 Mar 2025 · a year ago
Holds TH ThePrimeagen
Same subject: AI and jobs
A company must cut half its engineers to pay for the other half's tokens, and that is what the layoffs are actually about.
Last stated 11 Mar 2026 · 6 months ago
Holds SY Steve Yegge
Same subject: AI and jobs
A productivity improvement means fewer people doing the same job, and that should be said plainly by the people defending it as good.
Last stated 26 Aug 2026 · 3 weeks ago
Holds David Heinemeier Hansson
Same subject: AI and jobs
A universal basic income is a dangerous power-sharing arrangement, because it puts everyone's basic needs at the mercy of whoever holds office.
Last stated 4 Jun 2026 · 3 months ago
Holds AI Alex Imas