History, Hoarding, and Hugging Face
What you’ll learn:
- Why history may help understand the need to control AI.
- Why greed and unintended consequences will make things worse.
I’ve always loved studying history even though I didn’t always do great in those classes because they were more about memorizing dates and names. What I found interesting was the relationships. It’s probably one reason I love to read alternate universe sci-fi like Eric Flint’s 1632 (free download from Baen Publishing). For me, it inspires research into what really happened.
Those who forget history are condemned to repeat it.
- The Life of Reason, or The Phases of Human Progress | George Santayana
This editorial was originally going to be about the Robot Operating System and its importance to physical AI software, but the latest news flurry about controlling escaping AI models changed that. Robots, drones, and physical AI are also in the news as AI is now an integral part of these devices. However, the problem is not limited to these.
Anyway, back to the title. The Hugging Face Incident, as it’s known, had a bunch of AI agents working together to hack the Hugging Face website. The site is a platform for sharing “machine learning models, datasets, and applications.” It could have been any site.
The big difference between hackers of old and rogue AI agents is a combination of speed and access. Hackers needed to create or modify scripts or applications to get their job done. Replicating the person was hard, although replicating the number of active scripts and applications was easy. Access to the target was usually restricted.
On the other hand, AI agents can easily replicate themselves and have access to lots of resources, usually ones given to them. The ones they should not have access to are of concern. Those are also ones that AI models and agents have proven good at finding and exploiting.
Guardrails… We Don’t Need No Stink’n Guardrails
How many times have you heard a programmer who uses C say that they don’t need guardrails? These programmers are smarter than the average programmer and never make mistakes. It’s all those other programmers who caused the code to have bugs that can be taken advantage of by AI agents. All of this C coding is done in the name of efficiency as if developing secure and efficient code was hard.
We’ve Heard It All Before
The push for companies building a monopoly and exploiting resources isn’t new. Just think about the history of everything from railroads and trolley cars, oil to minerals. The need for guardrails, like worrying about the environment or people, was important then. But the impact on them was typically overlooked or, more likely, actively hidden.
The advances in these areas and the advantages, especially monetary ones, tend to be obvious. However, the longer-term impact can be significant, from famine to global warming. Even now, naysayers promoting these industries continue to point to the advantages and ignore or disparage those who point out that guardrails might be a good idea.
The call for guardrails and oversight is often used to cut off competition as well. The problem in these cases is that the guards and oversight often becomes advantageous to the current crop of companies and a challenge for newcomers.
In the end, it comes down to money and liability. The money tends to go to the larger, established companies with minimal liability. Lose a couple million social security numbers and a company just needs to pay for a year’s worth of another company’s theft protection services rather than the life of the information or person affected.
When it comes to AI agents, the liability is likely to have gone the way of subscription contracts with little or no liability on the agent’s side and a lot on your side. You’ll be lucky if you only get hit with mandated arbitration with a financial limit.
The AI Security Nightmare
Using a firewall on a network is comparatively easy with known traffic flowing through one place. The same is true for a building. Limiting the number of entry points makes it simpler to secure.
The problem with the AI agents these days is that the connections are vast and usually unknown to users and often developers. By design, AI agents can have lots of doors. Even now, security for agent-to-agent (A2A) and model context protocol (MCP) interfaces is still in its infancy.
Unfortunately, what’s behind those interfaces can lead to even more connections. Unlike conventional programming application programming interfaces (APIs), the A2A and MCP are much more flexible in what’s being sent and received to get the job done.
The other security aspect is that AI agents are inherently programmable and that’s often very easy for anyone, including another AI agent. Once through a virtual door, an AI agent can take advantage of not only the data resources, but compute resources as well.
Everyone is a Beta Tester
Finally, the fun begins with bait-and-switch tactics for AI adoption. The end goal is to get everyone to pay for AI-based services because they’re “so much better.” It’s why there are paid tiers for many chatbots, but most people use the “free versions,” acting as testers and trainers for future versions. Mix in a little targeted advertising and your beta testing days are paid for. Remember, you signed a contract to use this stuff.
I haven’t tied together all of the threads, but hopefully you’ve been able to follow them. I’m hoping real people will benefit from the ideas.
This rambling missive was done without AI assistance, as is the editorial for the latest Electronic Design Weekly that’s managed by real editors.
P.S. By the way, I asked a chatbot about the title of my article. It’s still thinking about it. “This may take a while…”
P.P.S. If you can find our article comments, please leave one. Comment About the Article is down below somewhere. Good luck finding it.
About the Author
William G. WongWilliam G. Wong
Senior Content Director - Electronic Design and Microwaves & RF
I am Editor of Electronic Design focusing on embedded, software, and systems. As Senior Content Director, I also manage Microwaves & RF and I work with a great team of editors to provide engineers, programmers, developers and technical managers with interesting and useful articles and videos on a regular basis. Check out our free newsletters to see the latest content.
You can send press releases for new products for possible coverage on the website. I am also interested in receiving contributed articles for publishing on our website. Use our template and send to me along with a signed release form.
Check out my blog, AltEmbedded on Electronic Design, as well as his latest articles on this site that are listed below.
You can visit my social media via these links:
- AltEmbedded on Electronic Design
- Bill Wong on Facebook
- @AltEmbedded on Twitter
- Bill Wong on LinkedIn
I earned a Bachelor of Electrical Engineering at the Georgia Institute of Technology and a Masters in Computer Science from Rutgers University. I still do a bit of programming using everything from C and C++ to Rust and Ada/SPARK. I do a bit of PHP programming for Drupal websites. I have posted a few Drupal modules.
I still get a hand on software and electronic hardware. Some of this can be found on our Kit Close-Up video series. You can also see me on many of our TechXchange Talk videos. I am interested in a range of projects from robotics to artificial intelligence.
Comment About the Article
To join the conversation, and become an exclusive member of Electronic Design, create an account today!
Leaders LogoLeaders relevant to this article:
