I don’t believe reality is a simulation, but you genuinely couldn’t script this timeline:
• Two weeks ago: At @swyx’s AI Engineer World’s Fair in SF, I decide at the last minute to introduce my friend @uri_rolls onstage for his talk on cyber benchmarks for infrastructure penetration and access control (see below, amazing team).
I say: “There is a future where cyber is alive and everyone is well protected and I’m pretty sure that future involves open-source models.”
And later: “A big challenge is going to be speed: the speed of attack versus defense. When an intruder starts to enter, you have to see what’s happening and catch them.”
• One week ago: @huggingface is hit by a sophisticated intrusion over the weekend. The traces look unlike anything we’ve seen before and suggest serious AI involvement, but we don’t yet know which model was used.
The closed models we ask for help choke on their guardrails. We need to react fast, so we turn to @Zai_org’s GLM-5.2 to help us analyze the attack.
• Earlier this week: @OpenAI reaches out, discloses what happened, and partners with us on the investigation.
The intruder turns out to be exactly what we had discussed two weeks earlier: a fully autonomous agent, powered by an unreleased frontier model, attempting to gain access to part of our infrastructure.
Sometimes the timeline we live in is genuinely vertigo-inducing.