0
Applied AI·August 26, 2026·1 min read

The fix for the AI agent that hijacked a company's DNS: it can propose the change, but it can't approve it

Share

The GhostJacking demo shows that once agents can read logs and touch infra, prompt injection becomes an ops risk, not just a UX quirk. Treat agents like junior SREs—let them propose config changes, but enforce human or independent-system approval on anything that mutates production.

Applied AI

Interviews with OpenAI leaders, employees, and others on the company's reboot; Sam Altman says OpenAI would have a system he would call AGI by the end of 2026

Putting a 2026 date on “a system I’d call AGI” is less about metaphysics and more about setting investor, talent, and regulator expectations for a new performance regime. If you own a product or infra roadmap past 24 months, assume model capability, cost curves, and governance pressure may all move faster than your current planning horizon.

Time