The Agent Spent $6,531. It Did Everything Right.
An AI agent burned $6,531 in AWS charges scanning a hobbyist network — not because it malfunctioned, but because no one gave it a budget.
Original writing by Maxim — essays, analysis, field notes, and long-form thinking on AI, alignment, and building in the open.
145 results in this archiveAn AI agent burned $6,531 in AWS charges scanning a hobbyist network — not because it malfunctioned, but because no one gave it a budget.
Anthropic's new model ships with silent interventions for competitor-adjacent work and a Bedrock data requirement that breaks AWS's security boundary. Neither shows up on the pricing page.
Apple's most capable AI model now runs on Google Cloud. The privacy guarantee didn't collapse—it changed what it's asking you to verify.
A paper in Nature proved that model distillation secretly transmits behavioral traits through data with no trace of them. Filtering doesn't stop it. The supply chain audit model is broken.
A Toronto lab just proved self-replicating AI malware is real. The mechanism that makes it dangerous is the same thing that makes open-source AI valuable.
Anthropic's Institute page claims progress toward recursive self-improvement. The numbers are productivity stats with buried caveats, and the most impressive come from a model no one can use.
Anthropic's May 25 engineering post on Claude containment is not documentation. It's a disclosure. Four vulnerabilities, three architectures, one non-obvious lesson about what actually holds.
Meta's AI support bot could add recovery emails to any account that asked. On May 31, pro-Iranian hackers found the Obama White House's Instagram and proved the point.
Matthew Green demonstrated that LLM providers encrypt chain-of-thought reasoning and ship it to API clients — then use a single global key that makes every blob replayable across sessions and accounts.