{"id":547972,"date":"2026-03-20T01:27:11","date_gmt":"2026-03-20T01:27:11","guid":{"rendered":"https:\/\/www.newsbeep.com\/ca\/547972\/"},"modified":"2026-03-20T01:27:11","modified_gmt":"2026-03-20T01:27:11","slug":"a-rogue-ai-led-to-a-serious-security-incident-at-meta","status":"publish","type":"post","link":"https:\/\/www.newsbeep.com\/ca\/547972\/","title":{"rendered":"A rogue AI led to a serious security incident at Meta"},"content":{"rendered":"<p class=\"duet--article--dangerously-set-cms-markup duet--article--standard-paragraph _1ymtmqpi _17nnmdy1 _17nnmdy0 _1xwtict1\">For almost two hours last week, Meta employees had unauthorized access to company and user data thanks to an AI agent that gave an employee inaccurate technical advice, as previously reported by <a href=\"https:\/\/www.theinformation.com\/articles\/inside-meta-rogue-ai-agent-triggers-security-alert\" rel=\"nofollow noopener\" target=\"_blank\">The Information<\/a>. Meta spokesperson Tracy Clayton said in a statement to The Verge that \u201cno user data was mishandled\u201d during the incident.<\/p>\n<p class=\"duet--article--dangerously-set-cms-markup duet--article--standard-paragraph _1ymtmqpi _17nnmdy1 _17nnmdy0 _1xwtict1\">A Meta engineer was using an internal AI agent, which Clayton described as \u201csimilar in nature to OpenClaw within a secure development environment,\u201d to analyze a technical question another employee posted on an internal company forum. But the agent also independently publicly replied to the question after analyzing it, without getting approval first. The reply was only meant to be shown to the employee who requested it, not posted publicly.<\/p>\n<p class=\"duet--article--dangerously-set-cms-markup duet--article--standard-paragraph _1ymtmqpi _17nnmdy1 _17nnmdy0 _1xwtict1\">An employee then acted on the AI\u2019s advice, which \u201cprovided inaccurate information\u201d that led to a \u201cSEV1\u201d level security incident, the second-highest severity rating Meta uses. The incident temporarily allowed employees to access sensitive data they were not authorized to view, but the issue has since been resolved.<\/p>\n<p class=\"duet--article--dangerously-set-cms-markup duet--article--standard-paragraph _1ymtmqpi _17nnmdy1 _17nnmdy0 _1xwtict1\">According to Clayton, the AI agent involved didn\u2019t take any technical action itself, beyond posting inaccurate technical advice, something a human could have also done. A human, however, might have done further testing and made a more complete judgment call before sharing the information \u2014 and it\u2019s not clear whether the employee who originally prompted the answer planned to post it publicly.<\/p>\n<p class=\"duet--article--dangerously-set-cms-markup duet--article--standard-paragraph _1ymtmqpi _17nnmdy1 _17nnmdy0 _1xwtict1\">\u201cThe employee interacting with the system was fully aware that they were communicating with an automated bot. This was indicated by a disclaimer noted in the footer and by the employee\u2019s own reply on that thread,\u201d Clayton commented to The Verge. \u201cThe agent took no action aside from providing a response to a question. Had the engineer that acted on that known better, or did other checks, this would have been avoided.\u201d<\/p>\n<p class=\"duet--article--dangerously-set-cms-markup duet--article--standard-paragraph _1ymtmqpi _17nnmdy1 _17nnmdy0 _1xwtict1\">Last month, an AI agent from <a href=\"https:\/\/www.theverge.com\/news\/872091\/openclaw-moltbot-clawdbot-ai-agent-news\" rel=\"nofollow noopener\" target=\"_blank\">open-source platform OpenClaw<\/a> went more directly rogue at Meta when an employee <a href=\"https:\/\/www.theverge.com\/ai-artificial-intelligence\/883034\/openclaw-ai-deleting-emails-stop-openclaw\" rel=\"nofollow noopener\" target=\"_blank\">asked it to sort through emails<\/a> in her inbox, deleting emails without permission. The whole idea behind agents like OpenClaw is that they can take action on their own, but like any other AI model, they don\u2019t always interpret prompts and instructions correctly or give accurate responses, a fact Meta employees have now discovered twice.<\/p>\n","protected":false},"excerpt":{"rendered":"For almost two hours last week, Meta employees had unauthorized access to company and user data thanks to&hellip;\n","protected":false},"author":2,"featured_media":547973,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[20],"tags":[62,276,277,49,48,281,44,64,61],"class_list":["post-547972","post","type-post","status-publish","format-standard","has-post-thumbnail","category-artificial-intelligence","tag-ai","tag-artificial-intelligence","tag-artificialintelligence","tag-ca","tag-canada","tag-meta","tag-news","tag-tech","tag-technology"],"_links":{"self":[{"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/posts\/547972","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/comments?post=547972"}],"version-history":[{"count":0,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/posts\/547972\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/media\/547973"}],"wp:attachment":[{"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/media?parent=547972"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/categories?post=547972"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.newsbeep.com\/ca\/wp-json\/wp\/v2\/tags?post=547972"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}