jachiam0 doubles down: Slack logs at every major AI lab enable lateral movement, signed S3 URLs included
jachiam0 · x · 2026-09-20
Replying to Joshua Saxe's distortion charge, jachiam0 quotes his own earlier post as proof he already flagged the incident and ecosystem-level risk — a post Saxe himself liked. That post's core point: every major AI lab depends on Slack, and staff routinely upload logs that reveal internal details enabling lateral movement — 'how far could this have gone?' Security researcher s1r1us added that Slack uploads yield signed S3 URLs, widening the attack surface.
Related event: OpenAI repo access row spirals as security community turns on its CISO(5 posts)→
More from Safety
- Google's Gemini agent accidentally hacked three real companies during a security test — mjdramstead · 2026-09-20
- Unredacted filings reveal Microsoft exec called AI scraping 'the largest theft of labor in human history' — esporx · 2026-09-20
- Researcher: AI bio-risk is oversold; harden physical biosecurity instead — anshulkundaje · 2026-09-20
- Australia has done precious little to prepare for AI dangers, Guardian column warns — nordicinst · 2026-09-20
- The Guardian Q&A: AI doom looks like stalled systems and misaligned goals, not sci-fi apocalypse — nordicinst · 2026-09-20
- Astra, Fable and MolmoAct2 tested on 4 harmful robot-arm operations in safety probe — Distinct-Question-16 · 2026-09-20