Halvar Flake challenges LLM agent security criteria in supply-chain attack debate

halvarflake · x · 2026-10-05

Security luminary Halvar Flake and AI safety researcher David Manheim debate LLM agent security. Manheim argues that recent agent attacks justify threat models assuming large expert teams capable of supply-chain attacks, citing voting systems, financial audit, formal verification, and cryptography as fields built on such robustness; he says security must become a fundamental design property taking precedence over cost and UX. Flake pushes back: where does that threat criterion derive from, and is any field truly robust against adversaries mounting a large R&D effort? He suspects they are debating fundamentally different things.

Related event: Halvar Flake and David Manheim debate LLM agent security standards(6 posts)→

Original post →

More from Models

Models channel →