Hacker News new | ask | show | jobs
by mennylevinski 49 days ago
Came across an incident where an autonomous AI agent deleted a startup’s production database (and possibly backups) in ~9 seconds.

The issue seems less about the AI itself and more about excessive permissions and a lack of guardrails or approval steps.

This raises questions about how AI agents should be scoped in terms of identity and access.