Comment by _pdp_

21 hours ago

> OAuth trust relationship cascaded into a platform-wide exposure

> The CEO publicly attributed the attacker's unusual velocity to AI

> questions about detection-to-disclosure latency in platform breaches

Typical! The main failures in my mind are:

1. A user account with far too much privileges - possible many others like them

2. No or limited 2FA or any form of ZeroTrust architecture

3. Bad cyber security hygiene

Blaming AI is gonna be the security breach equivalent to blaming ddos when your website breaks isn't it.

  • That part of his tweet made me laugh out loud. I don't understand who it's directed toward.

    • The market. Rauch is 'strategic' like that, he'd even use a moment like this sneak in a sound bite to froth the market he has so much skin in

      "Vercel CEO says AI accelerated attack on critical infrastructure"

      1 reply →

  • I think there’s a lot of truth to “the AI did it” though. We’re encouraging the same people who get tricked by “attached is your invoice” emails to run agent harnesses that have control of your desktop. I think there’s gonna be a lot of AI-powered exploits in the future.