‘the only form that this kind of product can take is a botnet factory’
https://www.youtube.com/watch?v=HytNZfilDJs&list=UU9rJrMVgcXTfa8xuMnbhAEA - video
https://pivottoai.libsyn.com/20260928-metas-muse-ai-agent-a-hilarious-security-disaster - podcast
time: 6 min 59 sec



The best (worst) part of all is that Jonny keeps going to meta and being like “hey this is bad” and theyre like “nah that’s intended behaviour”
This morning he confirmed that it’s possible to get unlimited arbitrary and untraceable access to their LLM infra through these containers and that meta said that’s “intended behaviour”
From jonny: