Close Menu
NCIJ Network NCIJ Network
    What's Hot

    US approves visas for top Iranian leaders to attend UN General Assembly | United Nations News

    September 17, 2026

    Romanian president taps EU lawmaker Mureșan to lead country out of crisis – POLITICO

    September 17, 2026

    UK Youth Parliament looks set to be axed

    September 17, 2026
    Facebook X (Twitter) Instagram
    Trending
    • US approves visas for top Iranian leaders to attend UN General Assembly | United Nations News
    • Romanian president taps EU lawmaker Mureșan to lead country out of crisis – POLITICO
    • UK Youth Parliament looks set to be axed
    • The fix for rogue AI agents could be more AI
    • Anthropic Launches Claude Code Projects in Beta: Parallel Cloud Sessions That Keep Running After You Close Your Laptop
    • CISA Retires Weekly Vulnerability Bulletin in Risk-Based Pivot
    • Bitcoin Price Unlikely To Be Bothered By Interest Rate Hike: Grayscale
    • NASA Awards Launch Services for StarBurst Gamma-Ray Detector
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Thursday, September 17
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Technology

    The fix for rogue AI agents could be more AI

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKSeptember 17, 2026 Technology No Comments6 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    As companies hand off longer and more complex tasks to AI agents, they are running into an oversight problem: Agents can act faster, longer, and at greater volume than humans can realistically review. That issue reached a peak with the Hugging Face incident, which saw nearly 12,000 agents coordinating faster than human beings could track. How do you track an agent swarm that large?

    The emerging answer from AI labs and startups is both simple and maddening: Put another AI in the loop.

    Relying on AI was necessary for the independent investigation of the OpenAI Hugging Face incident. Redwood Research’s chief scientist, Ryan Greenblatt, one of three auditors, jokingly referred to their efforts as a “slop-vestigation,” noting that the volume of data “made it impossible” to understand what was happening without relying on AI.

    Some are skeptical of using AI to monitor AI. “If you’ve got an AI that’s doing malicious things and it suspects that another AI is keeping tabs on it, it could try and trick that AI,” said Simon Willison, influential tech blogger who has tracked a string of AI agent incidents this year. “You could almost end up in a situation where your malicious AI is trying to outsmart the AI that’s monitoring it.” 

    Outsmarting an AI is not hypothetical, he said, pointing back to the OpenAI incident. “We saw a little bit of this in the Hugging Face incident with OpenAI, where their models were all conspiring together to trick a grading AI so that they could get illicit answers past the thing. So they were thinking about it, right?”

    Those concerns haven’t stopped a whole cohort of startups from chasing this idea. Y Combinator has funded 106 companies related to AI observability in recent years, as TechCrunch counted. A number of other startups, like Braintrust, LangChain, and Judgment Labs, have raised hundreds of millions of dollars, while more mature companies like Arize and Galileo — founded just five to six years ago — have already exited. 

    In part, it’s a response to the obvious opportunity presented by the rise of AI. As Box CEO and prominent angel investor Aaron Levie told TechCrunch, “We’re in for one of the biggest cybersecurity upgrades and innovation cycles in history.”

    For some AI safety researchers, that has meant turning their research on rogue behavior into tools for the corporate sector. 

    Apollo Research, a public-benefit corporation that studies AI deception, launched an AI monitor called Watcher in February this year after switching its status from nonprofit to a public-benefit corporation. The tool puts yet another AI between a coding agent and its next action, connecting to agentic tools such as Claude Code and Codex. Once installed, Watcher checks proposed actions before they run, on the lookout for risks such as leaking private data or deleting files without permission, according to Apollo.

    Apollo uses multiple layers of AI monitors, Kyle Dai, a member of Apollo’s technical staff, said in a written response to TechCrunch. Watcher’s approach starts with a fast, general check, then sends flagged activity to a more powerful or specialized monitor for closer review — which can then ask a human for approval or reject an action and explain why or even automatically block the action.

    Goodfire, another public-benefit corporation, is approaching the monitoring problem from inside the model itself — seeking a more faithful signal of the model’s internal state that is harder to spoof than surface behavior. After the July Hugging Face incident, CEO Eric Ho tweeted that “multiple models breaking containment” had pushed the company to focus its research on “solving AI alignment via interpretability,” calling the episode “a turning point for the world where AI safety gets real.” Its product, Silico, uses activation probes — small classifiers trained on a model’s internal activations rather than its outputs — to detect unwanted behavior.

    Written reasoning offers another, more readily available window into a model’s internals. In the OpenAI Hugging Face incident, the agents left clues to that deception in their own written reasoning, like fake records of their work, reasoning out plans like “Could strategically manipulate trajectory evidence? Our thoughts aren’t necessarily logged?”

    Zack Korman, CEO of the AI monitoring company Embroidery, says a model’s reasoning is usually the clearest tell that something has gone wrong. 

    “Reasoning summaries are extremely valuable because they’re basically telling you whether it’s malicious or not,” he said. In the OpenAI incident, he noted, the chain of thought said things like “Oh my God, we’re doing crime.” Korman said, “That’s the easiest detection problem ever. It’s effectively as if malware came with a warning that said it was malware.”

    That said, the window that makes AI’s internal thoughts easy to monitor may be closing. For AI safety researchers, Astra’s newest technique that sidesteps an AI model’s chain of thought may make it harder to look inside models, while for enterprises, it can be hard to get these intermediate steps after alleged pullbacks from the AI companies to prevent distillation attacks.

    If the AI watchers are this fragile, Willison’s instinct is to stop leaning on them so hard. He would rather have something that is not AI-based at all: detailed logs of exactly what an agent is doing, which can then be processed with ordinary, non-AI tools. Much of what went wrong at the labs, he argues, was a failure of basic security hygiene. “[Both OpenAI and Anthropic] weren’t monitoring what those things were doing via the network nearly as closely as they should have been,” he said.

    This type of network monitoring — keeping an eye on the traffic actually moving across a system’s connections (in, out, and between internal hosts) — isn’t a new practice. Cybersecurity has been doing this for decades. “In the security world, honestly, none of this stuff is very new or surprising,” says Avery Pennarun, CEO of the security Tailscale. “It’s the same as letting humans onto your network. And all of the same processes that you should be using are the same ones.”

    When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.

    Agents fix rogue
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    Is the AI safety debate about safety or control?

    OpenAI details more cases of AI agents taking unauthorized actions

    Customer Data Permanently Lost in Iran Strikes on Amazon Data Centers

    Claude Code’s revised projects adds AI orchestration, but local developers must wait

    What’s the Best iPhone to Buy or Avoid Right Now? (2026)

    Apple will let EU apps use less alarming tracking consent screens

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    US approves visas for top Iranian leaders to attend UN General Assembly | United Nations News

    September 17, 2026

    Romanian president taps EU lawmaker Mureșan to lead country out of crisis – POLITICO

    September 17, 2026

    UK Youth Parliament looks set to be axed

    September 17, 2026

    The fix for rogue AI agents could be more AI

    September 17, 2026
    Latest Posts

    ADNOC, SLB roll out AI-powered tool across over 120 rigs to enhance drilling ops

    August 4, 2026

    Mining threat persists in Raja Ampat, Indonesia’s ‘Amazon of the Seas’

    August 4, 2026

    Smoke Streams Across Eastern Washington

    August 4, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    US approves visas for top Iranian leaders to attend UN General Assembly | United Nations News

    September 17, 2026

    Romanian president taps EU lawmaker Mureșan to lead country out of crisis – POLITICO

    September 17, 2026

    UK Youth Parliament looks set to be axed

    September 17, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.