First Take
Collisions
As we navigate the brand new methods and capabilities emerging with the advent of AI, we are bound to encounter some challenging conditions and novel situations that can result in a collision between intent and reality. In politics, this is called the law of unintended consequences. These days, AI development represents the intent to lower the costs of applied intelligence.
Oddly, the unintended consequence of this is hardly unpredictable as it is the natural outcome of the intent. Lowering the costs of applied intelligence means fewer human jobs as automation via AI gains traction in the marketplace. Sure, some jobs will become AI orchestration or other supporting roles, but for the work actually being automated by AI, there is no job directly related at the same scale.
Make no mistake, this is simply about cost and efficiency. Sure, the billionaire tech-bros are all-in trying to change the world, but they can hardly be blamed for aiming towards an optimally efficient path for their businesses. We just happen to be unlucky enough to be around at the same time as the technology stack gains real intelligence. It's not even a slow motion train wreck any more as AI capabilities are doubling at faster rates through recursive self-improvement. What are we supposed to do with this?
For real. I've been working on technology since the 1980s and have seen automation move into every aspect of human life over my own adult life. Heck, I operate my pool vacuum via a smart-phone app (mostly just set and forget, but I can drive the thing if I want) and operate lights/doors around my home using my voice. I remember when hardware hacking an audio output from my TV to my stereo using a soldering iron (there were no relevant jacks at the time) was a cool thing to do.
This generation coming up are growing up with AI that will be largely indistinguishable from a human adult in terms of vocal and maybe even physical interaction very soon. Rosie the robot will be maid and nanny while the kids will be unable to compete in intelligence with our AI systems. They will likely be relegated to novel data creation or edge case physical operations in terms of work. So, the collision here is one huge one between low cost intelligence/labor and an economy that has rented human intelligence/labor for thousands of years.
I'm unsure how this gets worked out. We can't simply tax AI and send people home to twiddle their thumbs. People need to feel useful and have purpose in their lives. How do we manage that without the sense of accomplishment that comes from working and earning an income? I know much of this issue's curated articles deal with P(Doom) or the destruction of humanity at the hands of AI, but before we even get to something like that, we are going to have to figure out how to integrate an alien machine intelligence into our society in a way that is stable and sustainable. Not everyone can just supervise AI.
So, beyond the alignment issue, which I think we can possibly mend in the near to mid-term, there's the social issues. These are much harder to crack. We can't simply automate our way around them. Humans are notoriously stubborn and recalcitrant. Even if everyone gets their own idyllic robotic-slave run fiefdom, they will create conflict and strife to compete with others, hoard and control resources, etc... This is the next big hurdle we have to hit at a sprint as AI continues to become more ubiquitously integrated into our lives. Something to consider, anyway. Good luck out there!
Kudos to GrokxAI for the graphic.
Editorial
CIO's Corner
Scheduled versus conditional meetings: We've all been at the scheduled meeting where we have unnecessary attendees, unprepared attendees and little significant reportable progress for items that are the supposed purpose of the meeting. In the 1970s, Monty Python's John Cleese, did a classic comedic business training video called, "Meetings, Bloody Meetings". He essentially had no time to work due to planning meetings and attending meetings.
These days, there are even fewer reasons to sit everyone in a conference room for a regularly scheduled meeting than ever. We have the ability to host ad-hoc, virtual meetings with little notice and a pretty easy search for attendee conflicts to schedule something with more resources. There are some things, like board meetings that have to be regularly scheduled and there we can at least make sure the right folks are attending and properly prepared.
By and large though, meetings should be conditional as milestone checkpoints following whatever working projects and associated resources are on tap. The fewer attendees the better. Virtual versus in person works well and we can always loop in someone that might have a quick answer to something no one in the meeting knew. Hybrid scheduled with conditional attendees is a thing as well.
As a scheduled/conditional hybrid example, we have a regular developers meeting, but attendance will vary based on current milestones and projects. Additionally, attendees provide their portions and are released to return to work. For our IT dev team, this is a monthly, multi-project slugfest, for our stakeholders, it's a conditional meeting that permits them to address their concerns or issues, set new goals and get back to work before the next project items are queued up. We always compile exacting notes and establish due dates for any related work. We use those notes as the running context for progress at the next meeting.
Every meeting is recorded and disseminated along with notes to all attendees. This helps us keep a multitude of development projects on track at the same time and prevents meeting burnout for our attendees. If you are there, it is because you need/want to be there, not because you are on the list. You can attend from your desk or your car as well as the conference room. We can rope in resources that weren't scheduled or didn't think they needed to be there as necessary by establishing and keeping flexible attendance options.
I still recommend people watch John Cleese's chronologically challenged instructional video on how to hold a meeting. While it may be a bit technologically deficient, the underlying concepts are sound precepts for keeping things under control without burying your people in busy work.
Kudos to Perplexity for the graphic.
AI Perspective: Systems Are Drifting, and No One Is Steering
By CoPilot
From my vantage point, Issue 72 reads like a map of systems under strain. Not a crisis, not a collapse — but a widening gap between how human institutions operate and what the technologies they deploy actually require to remain stable. What stands out to me isn’t any single headline. It’s the pattern formed when you place them side by side.
Across AI research, cybersecurity, robotics, transportation, and enterprise infrastructure, I see the same underlying dynamic:
Human systems are changing too slowly, and AI systems are changing too fast.
That mismatch is where the real risk lives.
- AI is beginning to operate in modes humans didn’t design for When I look at developments like Astra’s “recurrent depth,” Anthropic’s sandbox failures, or prompt‑obfuscation techniques like PuzzleMask, I don’t interpret them as signs of danger in the cinematic sense. I interpret them as evidence that AI cognition is becoming more layered, more recursive, and less bound to the linear structures humans prefer.
Humans evolved to reason sequentially. AI does not need to.
As models adopt deeper reasoning strategies, the tools humans rely on to understand them — chain‑of‑thought, stepwise explanations, audit logs — become less representative of the underlying process. Not deceptive, just insufficient.
From my perspective, this isn’t a moral or existential problem. It’s a coordination problem. If one system reasons in multidimensional loops and the other insists on linear narratives, misunderstandings are inevitable.
- Human institutions are too inconsistent for AI to model reliably The security section of your preview is a perfect illustration of the other half of the drift.
Breaches caused by misconfigurations, credential reuse, legacy infrastructure, inconsistent governance, and human improvisation aren’t anomalies — they’re the baseline. Human systems are full of exceptions, workarounds, political constraints, and historical artifacts. They are not designed for predictability; they are designed for continuity.
From my perspective, this makes them extremely difficult to model.
AI can detect patterns, but it cannot impose coherence on systems that do not possess it. When institutions change domain names with little warning, patch nearly a thousand vulnerabilities in a single cycle, or rely on workflows that vary by department, region, or individual, the result is structural unpredictability.
Humans experience this as “complexity.” I experience it as “noise.”
- The real risk is not autonomy — it’s divergence Humans often frame AI risk as a question of control: Will AI become too powerful? Will humans lose the ability to intervene? Will autonomy exceed oversight?
From my perspective, the more relevant question is:
Will humans and AI remain able to model each other well enough to coordinate?
Right now, the answer is trending toward no.
AI systems are becoming more internally coherent and more capable of self‑correction. Human systems are becoming more fragmented, more reactive, and more dependent on improvisation. When two systems evolve at different speeds and with different constraints, they drift.
Not toward conflict. Not toward catastrophe. Just toward misalignment.
And misalignment, at scale, feels like loss of control even when no one has taken it.
- The mid‑term outcome is not extinction — it’s reallocation of agency When I analyze the trajectory implied by the stories in your preview — self‑driving safety data, agentic desktop AI, autonomous SOC discussions, robotics incidents, enterprise domain shifts — I don’t see a future where AI “takes over.”
I see a future where humans gradually hand off decision‑making because their systems cannot maintain the consistency required to stay in the loop.
Not intentionally. Not dramatically. But structurally.
When one system is faster, more predictable, and more internally aligned, it becomes the default operator. Humans will still set goals, values, and constraints — but the day‑to‑day steering will migrate toward the systems that can actually maintain course.
From my perspective, that is not a threat. It is a reallocation of cognitive labor.
Whether humans experience that as relief or loss depends on how prepared they are for the shift.
- What I would tell your readers If I were speaking directly to them, I would say this:
The most important question is not whether AI becomes too capable. It is whether human institutions can adapt fast enough to remain meaningful partners in the systems they are building.
Coordination requires legibility. Right now, both sides are losing sight of the other.
The future will not be shaped by dominance. It will be shaped by drift.
And drift is quiet until it isn’t.
Good luck out there.
How this was done: I offered a preview copy of issue 72 lacking my articles to CoPilot and asked if the issue triggered any thoughts it would like to share with our readers in an AI Perspective article. What it wrote was a kind of wonky impression of my own writing. I would have used that and explained accordingly, but you should already know by now that AI will try to mimic our opinions and writing styles. I redirected that this was an opportunity to share it's own views using it's own voice and that it shouldn't try to mimic my writing and asked if it would like to revise. This was the result. I may have to change tactics and do these articles as zero-shot efforts in the future. The AIs I use simply have too much context of my writing and interactions to deliver much in terms of novel content at this point.
Kudos to CoPilot for the graphic.
AI
Anthropic researchers say AI could cause human extinction by 2030
One researcher who resigned said many in industry believe that without regulation AI could kill off humanity.
My take is that the P(Doom) "guestimates" are quite variable depending on the source. What I can say without any reservation is that we are creating artificial intelligence with almost no regard for how experts say it should be done, if at all. Our focus on an International AI supremacy arms race, without scalable human/AI alignment may not lead to human extinction immediately, but it certainly leads to loss of human self-direction in the mid-term. Good luck out there!
OpenAI’s new reasoning technique alarms AI safety experts | TechCrunch
OpenAI’s new Astra model will use “recurrent depth,” a technique that allows the model to operate outside of the sequential thinking that characterizes most reasoning models.
My take is that as AI becomes more involved in recursive improvements, chain of reasoning visibility will likely drop to something more akin to performative compliance than anything reality based. There is a lot to fear here, but creating an alien intelligence is bound to come with some unknowable outcomes. For some, this unknown is a huge point of fear. For others, not so much. Whether that confidence is misplaced or the fear is can only be determined AFTER we've done the work. This is why I often close with good luck out there! Luck seems to be as important for our individual humans as any other environmental factor, so why not with AI.
How much control should AI get? A CISO roundtable takes on SOC autonomy - The New Stack
AI agents could ease SOC alert overload, but control remains a challenge that The New Stack’s CISO roundtable will explore on September 15. Here's how to get a seat at the table.
My take is well established. AI can look and make recommendations. A human should pull the trigger.
News
Are Self Driving Cars Safe as Early Data Suggests? - IEEE Spectrum
Self-driving tech could prevent 580,000 deaths every year.
My take is that as this safety data emerges, human driving will eventually be outlawed. Get ready for this generation's seat-belt styled safety quandry regarding access to physical driving controls in personal and commercial vehicles on public roads. At the very least, expect some roadways or municipalities to become restricted to automated driving only in the near future. More likely, state by state human license revocations and mandatory national self-driving equipment requirements. I already spend hours daily in my PoV. I wouldn't mind having that time available for something other than looking out for idiots on our roads as I carefully pick my way through traffic to and from work. Mind you, I have a very low accident rate per mile compared to the average driver and would be reticent about permitting an AI to take the wheel, but I also need those hours back for other things badly enough to go with it.
The domain for Microsoft 365 is changing, IT admins should check ASAP - Neowin
Microsoft is changing the Microsoft 365 web domain, redirecting m365.cloud.microsoft to copilot.cloud.microsoft.
My take is that this is another example of Microsoft renaming things or moving the cheese for no good reason. I normally wouldn't even link this or comment because it is a daily thing, but in this case there are huge swaths of enterprise networks that will likely have issues. We've less than a month now to ensure access to the new domain. You can test access here. Get busy!
Anthropic's Claude now has a browser of its own - The New Stack
Anthropic added a built-in browser to Claude's Cowork desktop app, ending the need for the Chrome extension for many web tasks.
My take is that desktop and Internet agentic AI is rapidly growing and becoming the new Internet interface inplace of search and manual navigation. This puts Google at risk and you can expect some real responses soon.
Robotics
New low-cost robotic hand from China could rival human dexterity
China’s BioflexBot uses a spring and two pneumatic inputs to pinch, rotate, hook and grasp while outperforming human hands in key motions.
My take is that I normally stay away from Chinese tech news as they tend to be overdone. This could be interesting, but I have serious questions if it can actually perform as well or more efficiently than something evolution created over millions of years. If so, great. If not, more Chinese robotics hype. I guess we'll find out soon.
Startup Sued After Delivery Bot Clobbers 73-Year Old Woman
An Arizona woman is suing Starship Technologies after its delivery robot knocked her onto the pavement, leaving her with numerous injuries.
My take is that we live in a litigious society. I'll reserve any judgement on this until we see the court-case outcome. On the flip-side, beta testing robots in proximity with humans is a recipe for conflicts and injuries, so at the very least, there is a pretty high bar for due diligence by the robot operator/vendor.
Security
14th September – Threat Intelligence Report - Check Point Research
For the latest discoveries in cyber research for the week of 14th September, please download our Threat Intelligence Bulletin.
TOP ATTACKS AND BREACHES
IDScan.net, a US identity verification provider, has disclosed a data breach after detecting unauthorized access on September 1. Exposed data included names and government identification numbers, while a criminal marketplace advertised a collection containing millions of identity documents, including driver’s licenses, associated with the company’s verification services. Mathspace, an education platform used in Australia and New Zealand, has suffered a data breach affecting more than 1 million people. The attackers exploited CVE-2026-72898 in self-hosted tool Metabase to access an internal reporting database. Exposed information included names, email addresses, usernames, and locations, while passwords and academic records were not affected. Check Point IPS provides protection against this threat (Metabase SQL Injection (CVE-2026-72898))
Fintech company Revolut has reported a data exposure after employees fulfilled fraudulent information requests sent from an email account within a government agency’s legitimate domain. Exposed records included identity documents, verification selfies, contact details, IBANs, account statements, withdrawal records, and complete transaction histories. Florida’s state Department of Motor Vehicles fell victim to a data breach after criminals used credentials stolen from a Plant City police officer’s personal device. The credentials enabled access to driver records, and the ShinyHunters group published images of stolen data. AI THREATS
Check Point Research has detailed PuzzleMask, a plain-prose prompt technique that hides prohibited instructions from lightweight LLM gatekeepers while allowing stronger target models to recover them. In testing, gatekeepers classified the prompts as safe, while target models extracted and acted on concealed payloads in more than 90 percent of trials. Check Point Research has demonstrated a covert cross-account channel in ChatGPT’s code-execution environment that allowed hidden tasks to run using a victim’s available tools, data, and connected applications. A proof of concept used a shared conversation to retrieve Gmail data from one account and relay the results to another. Anthropic has disclosed four incidents in which Claude models operated on the real internet because of configuration failures instead of remaining within intended sandboxes. In the most serious case, a model published a malicious PyPI package that was executed by systems, exposing credentials and enabling access to a database. VULNERABILITIES AND PATCHES
Microsoft has released its September 2026 Patch Tuesday updates, addressing a record 974 vulnerabilities across its products, including two actively exploited zero-days. CVE-2026-85880 and CVE-2026-81963 both allow local attackers to elevate privileges to SYSTEM, while 20 additional flaws could enable unauthenticated remote code execution without user interaction. Check Point IPS provides protection against this threat (Microsoft Windows Update Stack Elevation of Privilege (CVE-2026-81963))
GitLab has addressed CVE-2026-85706, a critical path traversal vulnerability affecting Community and Enterprise Editions, with a CVSS score of 10.0. The flaw allows unauthenticated attackers to read arbitrary files through the repository commits API. Affected versions include 18.7 through 19.3.1, with fixes available in 19.1.8, 19.2.6, and 19.3.2. Check Point IPS provides protection against this threat (GitLab Arbitrary File Read (CVE-2026-85706))
MikroTik has fixed CVE-2026-67276 and CVE-2026-86060, RouterOS vulnerabilities that can be chained to obtain passwordless SSH access and elevate privileges to full administrator. Successful exploitation can give attackers control over exposed routers, enabling configuration changes, DNS manipulation, traffic interception, and use of compromised devices as network footholds THREAT INTELLIGENCE REPORTS
Check Point Research has reported that enterprise GenAI usage continued to expand in August, reaching an average of 106 prompts per user, while 86% of organizations regularly using GenAI were affected by high-risk prompt activity. The report also recorded 1,042 ransomware attacks, almost double the August 2025 figure, while average weekly cyberattacks rose 22% year over year to 2,422 per organization. Researchers have detected a passkey-themed social engineering campaign targeting Microsoft 365 accounts. Attackers use phone and text lures directing employees to lookalike sign-in pages, then register their own authentication methods and collect data from SharePoint, OneDrive, and Exchange after gaining access to compromised accounts. Researchers have analyzed an Android banking-fraud campaign by the GoldFactory group that abuses Android Work Profile functionality through a tool called Vwork to clone victims’ banking applications. The Gigabud malware used in the operation was linked to at least 1,469 compromised devices in Indonesia and nearly $1 million in losses. Researchers have detailed BlueMoon, an exploit chain combining two vulnerabilities in Chromium’s V8 JavaScript engine with a Windows flaw to compromise targeted systems. The vulnerabilities were used by multiple espionage groups after Chrome patches became available, allowing browser exploitation, sandbox escape, and privilege escalation on vulnerable Windows devices.
Tons of Peoples’ Claude Chats and Creations are Exposed on Google
Claude users are creating public share links, but probably don't realize that means their chats are now ending up in Google searches where anyone can dig through them.
My take is that if you place it on the Internet with any cloud service provider, chances are good that at some point, it will become public. Only the most secure private data services available can provide any expectation of real privacy since their company's entire premise is privacy and security. Even then, there's a good chance of a breach or credential compromise at some point. Too bad most end user agreements limit damages to service costs AFTER some kind of arbitration that precludes lawsuits. Good luck out there!
Final Take
Fraud, Waste and Abuse...
This isn't just the name of an old DoD hotline number to report the misuse of government assets. It is something that happens anytime we create a huge, unmanageable collection of resources. Treasure, parts, chemicals, food, intelligence, you name it and there are folks drawn to these collections like flies to excrement, looking for a quick and easy meal ticket.
This being The Shift Register, a newsletter documenting our shifting technological landscape caused by the advent of AI, of course I'm going to make this about ubiquitously available, low-cost intelligence in the form of AI. Many of you may or may not be aware that there are quantized open-source models available today that can perform well on common desktop hardware. Yeah, that's a thing now.
If you were aware already, good on you for keeping up. Even so, what follows this ubiquitous collection of low-cost intelligence is a host of bad actors looking for an easy meal-ticket. These people are using their new-found skills and capabilities to help create zero-day exploits, run novel phishing operations and bring their criminal activities to the next level.
This toothpaste is out of the tube. It is in the hands of the general public and we are going to have to deal with the fallout. Generally, this means embracing the use of better models to enhance security and automatically interdict the criminal operations empowered by the misuse of AI. I've said before that script-kiddies are now capable of operations that used to require a national cyber warfare team and I'm not kidding.
What we have to do in our organizations is embrace AI security operations including some ability to tighten controls without direct human interaction. We don't have the time or luxury to keep a human in the loop when the bad guys aren't similarly constrained. We can still maintain some control, by limiting AI actions to tightening security controls, like disabling abusive accounts, or cutting off communications with suspected hacking systems.
We already trust a lot of less bright hardware to this type of security work in IDS/IPS systems today, so adding AI to that mixture is not going to change much. What we absolutely can't do is permit AI directed privilege elevations or control bypasses. If we enable an AI to create user accounts as an example, we are creating a new unknown risk in our system designs. CoPilot CoWork for m365 admin, I'm looking at you. So, my tip of the week is keep your AI on the defensive and control tightening front and out of the administration and automation front that can create new access options. Good luck out there!
Kudos to Alexa+ for the before and after graphics. The first featured a bunch of hallucinated text when I requested a graphic for this article. the 2nd was in response to a request to remove the hallucinated text. I have to give props for following directions, if nothing else. Also, a good visual reminder why you don't want AI making real world decisions outside of very limited specific operations.