0

The Agentic DevOps Guild is meeting weekly. Learn agents for PE, SRE, and CI/CD

Homepage
Courses Membership The Guild
Content
Newsletter Blog YouTube Podcasts Discord Server GitHub Examples Sponsor
Consulting
Private Training Workshops
About
About Me Link Tree
Log In
← Back to all posts

Rogue AI or Just Sloppy Ops?

Sep 26, 2026

The OpenAI Hugging Face hack. The Anthropic testing failures. Listen to the security and ops experts, not lab researchers. 

Agentic DevOps : AI Engineering for Infrastructure | Rogue AI ...

The OpenAI Hugging Face hack. The Anthropic testing failures. Listen to the security and ops experts, not lab researchers. I walk you thr...

agenticdevops.fm

On this episode of the Agentic DevOps podcast, I walk you through the production failures that allowed OpenAI’s models to access the internet, and what we can learn from the last few months on how to protect our systems and data. Let’s stop debating imaginary outcomes and start working through that security backlog in our infrastructure. 

I agree with the labs needing to slow down, but not because I believe AI will do uncontrollable harm on humans, but because the labs clearly need better production security and ops teams and more advanced lab infrastructure that’s been properly hardened. They also need to become a production ops security innovator and share that knowledge far and wide.

You can also watch it on YouTube:

Rogue AI or Just Sloppy Ops?

What do you think? Reply to this email or my posts on YouTube, X, Bluesky, or LinkedIn.

Here are the articles and inspiration I used in making this video. Some great bloggers and newsletters in there:

  • The Hugging Face Incident Is Not an AI Story - Marius Horatau
  • From Frenzy to Freakout - Ciaran Martin & Professor Alan Woodward
  • Stop Freaking Out and Start Fixing Things - SANS Institute
  • Fragments: September 8th - Martin Fowler
  • When AI can do more than we can check - Christian Catalini
  • I'm sorry, you're not going to die from an AI-engineered supervirus - Claus Wilke
  • This Week in Security - Zack Whittaker
  • 'Big Short' investor Steve Eisman on AI: The companies are trying to manufacture a crisis - CNBC
  • xkcd: Dependency - so much of our systems are this.
  • xkcd: Python Environment - and also this.
  • Defense Factory - OpenAI
  • Investigating three real-world incidents in our cybersecurity evaluations - Anthropic
  • Anatomy of a Frontier Lab Agent Intrusion: A Technical Timeline of the July 2026 Incident - Hugging Face
  • My recommended podspec, with seccomp enabled - Bret Fisher
Agents Are Changing Everything, So Where Do We Focus?
While the agent harnesses iterate, I think it's time to focus on the other core principles of agent harnesses: Skills + Tools + MCP. A few years ago, I felt like every dev or ops tool added AI in its name or description, yet it was mostly hype, and the word AI had lost its meaning. Then MCP came along, and I wasn't convinced that everything needed an MCP endpoint (still debated, but I think MC...
Agentic Workflows Are Here
Recent happenings: I streamed with the Semaphore team on how they are making their CI/CD platform "ai-native" and what that really means. They've got a claude/codex plugin system that comes with a CLI, skills, and MCP for controlling your CI. Podcast coming soon. I streamed with the co-founder of nono.sh, my go-to agent sandboxing tool, that can now, more or less, sandbox anything on Linux and...
My GitHub Security Hardening workshop is free next week
Sign up for my live hands-on workshop that's on Tuesday. I've been working on it for months, then I spoke about it at the Accelerate Chicago conference last month, and I finally get to bring it to you wonderful people. I found this content so useful for my own repos and orgs, that I created an open-source tool to complement the training and help you harden your repositories and find where you ...

Cloud Native DevOps

CNDO is a weekly-ish email from Bret Fisher on content he's creating. Agentic DevOps, automation, containers, Docker, Kubernetes, GitOps, GitHub Actions, and everything cloud native.
Homepage
© 2026 bretfisher.com
Courses Membership The Guild
Newsletter Blog YouTube Podcasts Discord Server GitHub Examples Sponsor
Private Training Workshops
About Me Link Tree

Join Our Free Trial

Get started today before this once in a lifetime opportunity expires.