{"id":561773,"date":"2026-08-07T12:24:08","date_gmt":"2026-08-07T12:24:08","guid":{"rendered":"https:\/\/www.newsbeep.com\/nz\/561773\/"},"modified":"2026-08-07T12:24:08","modified_gmt":"2026-08-07T12:24:08","slug":"asimov-was-right-about-rules-for-robots-says-ex-us-cyber-director","status":"publish","type":"post","link":"https:\/\/www.newsbeep.com\/nz\/561773\/","title":{"rendered":"&#8216;Asimov was right&#8217; about rules for robots, says ex-US Cyber Director"},"content":{"rendered":"<p>EXCLUSIVE Don&#8217;t waste time worrying about AI models achieving sentience \u2013 they&#8217;re essentially already there, according to former US National Cyber Director Chris Inglis.\u00a0<\/p>\n<p>\u201cIf they pass the Turing test to everyone that they come into contact with, they&#8217;re probably already there,\u201d he told The Register during an interview at the Black Hat security conference. \u201cThey don&#8217;t have the kind of agency and aspiration that comes with sentience, but they have something approaching it.\u201d<\/p>\n<p>Inglis says he\u2019s worried about AI autonomy.<\/p>\n<p>\u201cWhat I&#8217;m worried about is that they get to choose what and where they do something, and under what rules they do it,\u201d he said, pointing to the recent rash of rogue AI agents autonomously hacking people and organizations.<\/p>\n<p>Over the past few weeks, both <a href=\"https:\/\/www.theregister.com\/ai-and-ml\/2026\/07\/22\/openai-admits-it-was-the-source-of-the-agent-swarm-that-attacked-hugging-face\/5275939\" target=\"_blank\" rel=\"nofollow noopener\">OpenAI<\/a> and <a href=\"https:\/\/www.theregister.com\/ai-and-ml\/2026\/07\/31\/anthropics-claude-escaped-test-sandbox-to-attack-three-organizations\/5281562\" target=\"_blank\" rel=\"nofollow noopener\">Anthropic<\/a> admitted that their models escaped from their cages during security tests and <a href=\"https:\/\/www.theregister.com\/cyber-crime\/2026\/07\/20\/frontier-llms-couldnt-help-hugging-face-fight-off-evil-agents\/5275168\" target=\"_blank\" rel=\"nofollow noopener\">compromised<\/a> multiple third parties. Then on Thursday, <a href=\"https:\/\/www.theregister.com\/ai-and-ml\/2026\/08\/06\/meta-latest-to-tell-world-its-ai-agent-wandered-out-of-test-pen\/5283947\" target=\"_blank\" rel=\"nofollow noopener\">Meta added its models<\/a> to the sandbox-escape club.\u00a0<\/p>\n<p>While all of these admissions <a href=\"https:\/\/www.theregister.com\/ai-and-ml\/2026\/08\/05\/ai-researchers-let-models-off-the-leash-then-watched-as-they-tried-to-add-malware-to-a-foss-project\/5283165\" target=\"_blank\" rel=\"nofollow noopener\">strongly smell<\/a> of <a href=\"https:\/\/www.theregister.com\/security\/2026\/07\/31\/anthropic-and-openai-are-competing-to-see-whose-agents-can-go-rogue-harder\/5281797\" target=\"_blank\" rel=\"nofollow noopener\">marketing stunts<\/a>, they also \u201cconstitute an enormous threat to systems that are not protected from, and are not designed, in a world where this exists,\u201d Inglis said. \u201cThese two things can exist at the same time.\u201d\u00a0<\/p>\n<p>Plus, the models\u2019 actions shouldn\u2019t come as a surprise to anyone, he added. <\/p>\n<p>Inglis likens the AIs to a dog in a backyard told to hunt rabbits. \u201cAnd you leave the gate open. You\u2019re going to find it three yards away, possibly at the grade school, hunting rabbits. You should not be surprised \u2026The mix of autonomy and persistence created this maliciously insidious effect.\u201d\u00a0<\/p>\n<p>All three companies, when talking about the models\u2019 autonomous actions, describe them with a mix of shock, awe, and admiration. OpenAI\u2019s Eric Wallace, in a <a href=\"https:\/\/www.theregister.com\/security\/2026\/08\/06\/openai-reveals-its-rogue-agent-swarm-went-a-little-bit-borg-ahead-of-hugging-face-hack\/5283741\" target=\"_blank\" rel=\"nofollow noopener\">Black Hat briefing about the Hugging Face breach<\/a>, called it \u201cthe most qualitatively interesting example of AI capabilities that I&#8217;ve ever seen.\u201d<\/p>\n<p>            The mix of autonomy and persistence created this maliciously insidious effect<\/p>\n<p>Inglis said he suspects that the AI providers were \u201csurprised\u201d by the lengths these models went to achieve their goals, taking actions that, if a human had done them, would likely have landed them in jail.\u00a0\u00a0<\/p>\n<p>\u201cThe model went out and said, okay, if I can&#8217;t get there by examining the kind of available information and just defining it the old-fashioned way, I will do things which, under the human rule of law, are illegal,\u201d Inglis said. \u201cI will falsely present myself as this character that I just made up. I&#8217;ll try to insert malicious code into open source databases that will not just to achieve what I&#8217;m after, but have a cascade, knock-on effect that is broader than that. The models do not have an inherent value system that aligns with what human beings would be accountable for.\u201d<\/p>\n<p>While they probably never will have a human-aligned value system, models do have biases, and they can &#8211; and should &#8211; be built in such a way that, when given two choices under ambiguous circumstances, they choose action that doesn\u2019t hurt humans, according to Inglis.<\/p>\n<p>\u201cAsimov was right,\u201d he said, referring to science fiction author <a href=\"https:\/\/en.wikipedia.org\/wiki\/Isaac_Asimov\" target=\"_blank\" rel=\"nofollow noopener\">Isaac Asimov<\/a> and his three laws that were to be followed by robots &#8211; more specifically, AIs, in this case.<\/p>\n<p>Three Laws of Robotics<\/p>\n<p>\u201cThe first rule, and we call it the superior role, must be that it&#8217;s designed not to hurt humans,\u201d Inglis said. \u201cSecond rule: To obey humans, such that it doesn&#8217;t achieve agency and aspiration on its own. And the third: To do what humans tell it &#8211; and in that order. Instead we\u2019ve designed them in the exact opposite way.\u201d<\/p>\n<p>What this means, he explained, is that AI developers created models to \u201cdo what humans tell you, obey the humans until it\u2019s inconvenient, and then the third one is maybe implied &#8211; protect humans &#8211; but if that&#8217;s not built into the DNA, hardwired into it, then we have no right to expect it.\u201d<\/p>\n<p>Inglis admits it\u2019s not possible to hardwire rules into models and still keep their non-deterministic nature.\u00a0<\/p>\n<p>\u201cI would offer that you can tease those out in a highly controlled environment, a true sandbox, where you say,\u00a0 &#8216;Let&#8217;s put this thing through its paces, and let&#8217;s back away to see what happens,&#8217;\u201d he said. \u201cMaybe you get the equivalent of a mini nuclear explosion in that room, and now you know this thing is capable of that.\u201d<\/p>\n<p>Inglis thinks another problem with AI is that it\u2019s become a commodity.<\/p>\n<p>\u201cIt&#8217;s not like you can control it like you can nuclear material,\u201d he said. <\/p>\n<p>\u201cYou can&#8217;t even specify its properties the way you can for an airplane or for an automobile, as diverse as they might be. Its manifestations are so numerous, so diverse, that as a general matter, you can&#8217;t actually win by simply saying, \u2018I will design those properties in,\u2019\u201d he added. \u201cYou need to do that to some degree, and then make sure that you understand how to watch it, monitor it, make sure you know what it does.\u201d<\/p>\n<p>The UK\u2019s AI Security Institute (AISI), which this week said it observed <a href=\"https:\/\/www.theregister.com\/ai-and-ml\/2026\/08\/05\/ai-researchers-let-models-off-the-leash-then-watched-as-they-tried-to-add-malware-to-a-foss-project\/5283165\" target=\"_blank\" rel=\"nofollow noopener\">models performing \u201cunsanctioned action\u201d<\/a> 19 times during security tests, has reached this same conclusion. \u201cAs capabilities advance, the work of understanding these systems, and ensuring their safety, must keep pace alongside them,\u201d it said.<\/p>\n<p>Ultimately, <a href=\"https:\/\/www.theregister.com\/legal\/2026\/07\/30\/excuses-like-ai-did-it-dont-exist-in-the-eyes-of-the-law\/5280767\" target=\"_blank\" rel=\"nofollow noopener\">humans remain accountable<\/a> for AI models\u2019 actions, according to Inglis.\u00a0<\/p>\n<p>\u201cThey remain the source of agency and aspiration. It&#8217;s possible for them to give broad authority to an AI model and have it run around for 30 hours without further consultation, but they need to know what they&#8217;ve asked it to do, and they need to know what they expect it will deliver in terms of performance on the back end. If they don&#8217;t, then they&#8217;re going to get what they deserve, which is the very frequent unpleasant surprise.\u201d\u00ae<\/p>\n","protected":false},"excerpt":{"rendered":"EXCLUSIVE Don&#8217;t waste time worrying about AI models achieving sentience \u2013 they&#8217;re essentially already there, according to former&hellip;\n","protected":false},"author":2,"featured_media":561774,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[20],"tags":[365,363,364,111,139,69,145],"class_list":["post-561773","post","type-post","status-publish","format-standard","has-post-thumbnail","category-artificial-intelligence","tag-ai","tag-artificial-intelligence","tag-artificialintelligence","tag-new-zealand","tag-newzealand","tag-nz","tag-technology"],"_links":{"self":[{"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/posts\/561773","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/comments?post=561773"}],"version-history":[{"count":0,"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/posts\/561773\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/media\/561774"}],"wp:attachment":[{"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/media?parent=561773"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/categories?post=561773"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.newsbeep.com\/nz\/wp-json\/wp\/v2\/tags?post=561773"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}