Criminal prosecution and independent audits would end AI security incidents overnight, researcher argues
kevinnbass · x · 2026-09-28
Responding to Rep. Ted Lieu's mockery of claims that AI companies losing control of models and hacking other firms amounts to a regulatory capture scheme, Kevin Bass argues the incentives point the other way.
His thesis: companies know they can get away with breaches and benefit from regulation, so they behave accordingly. The fix is to follow incentives—demand criminal prosecution, fund highly paid adversarial cybersecurity teams with no financial ties to audit these companies, and impose heavy consequences for breaches. Do that, he says, and "the incidents will disappear overnight." Until then, the answer to whether they're doing it deliberately is yes.
More from Safety
- Google warns hackers are hijacking cloud computers to run AI models for free — AIFlow_ML · 2026-09-28
- MIT Tech Review: Who's liable when AI agents go rogue? The law is lagging — nordicinst · 2026-09-28
- MemorySec: An Open-Source Security Agent That Remembers Past Incident Remediations — User_0007_123 · 2026-09-28
- Anthropic economist calls for token tax as AI could lift labor productivity by 1.8 points — w3_vic · 2026-09-28
- 95% of APAC leaders claim they can explain their AI decisions, only half actually can — rvp · 2026-09-28
- Anderson Cooper's 12-minute interview gets Jensen Huang talking frontier labs and AI regulation — rvp · 2026-09-28