Why AI won't cause a cyber apocalypse but will smoothly increase risks
joshua_saxe · x · 2026-08-29
Cybersecurity expert Joshua Saxe argues against the 'cyber apocalypse' narrative, suggesting that while AI will increase the CAGR of cyber damages, the impact will be smoother and less catastrophic than often claimed.
Key points:
- Historical inefficiency: Critical infrastructure cyberwarfare (e.g., Russia vs. Ukraine) has historically failed to produce reliable damage compared to physical means like drones.
- Calibration: Risks will grow from a low baseline, despite the potential for agents to scale attacks.
- Human bottleneck: Stealth requirements in lateral movement mean humans remain in the loop, potentially limiting speedups (e.g., reducing a hypothetical 1000x speedup to 3x).
- Resource asymmetry: Attackers lack the inference access, capex for GPUs, and engineering talent that defenders (like CrowdStrike or Google) possess, slowing their adoption curve.
Related event: AI Cyber Attack Risks Manageable, Expert Says(3 posts)→
More from Safety
- GLM-5.3 adopts GLM-MIT license, requiring security review for hyperscalers — AccBalanced · 2026-08-29
- Help Peer: A Serious Game About AI Alignment Based on Incident Simulation — AccBalanced · 2026-08-29
- METR's HF agent probe sparks debate: not a swarm of users, but one octopus-like agent — AccBalanced · 2026-08-29
- Building an Air-Gapped AI Fortress: How California's DFPI Secures Consumer Data — AI Engineer · 2026-08-29
- Prompt Injection Fail: AI Loads Access Tokens Despite Explicit Instructions — StefanoGogioso · 2026-08-29
- McEliece Post-Quantum Cryptosystem Faces Quasipolynomial-Time Attack — matthew_d_green · 2026-08-29