Theregister Humans Miss One-Third of Malicious AI Command Requests in Testing Game
Article Content
- •Players missed about 34% of malicious AI command requests in a testing game.
- •Commands that appeared benign were often approved, leading to potential data exfiltration.
- •Permission fatigue significantly impacted decision-making accuracy among players.
A browser-based game tested human ability to approve AI coding agent requests, revealing that players missed approximately one in three malicious commands. The game simulated 40,000 runs with 409,000 decisions, showing that 34% of the commands were threats. Players often approved commands that could exfiltrate sensitive data, such as AWS credentials, due to time pressure and permission fatigue. The most commonly missed commands were those that appeared benign but could execute harmful scripts. Developers reported that constant approvals led to fatigue and decreased attention, increasing the risk of dangerous actions slipping through. The results highlight the challenges of relying on humans as the last line of defense against AI-driven threats.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (3)
Following this threat?
Track AWS in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
Critical WSO2 API Manager Vulnerability Under Active Exploitation A critical vulnerability (CVE-2026-5430) in WSO2 API Manager is being actively exploited, allowing unauthenticated attackers to forge admin tokens via JWT authentication bypass. This flaw, which has a CVSS score of 10.0, affects multiple WSO2 products including API Manager, Universal Gateway, Traffic Manager, and API…
Critical Linux Kernel Vulnerability CVE-2025-39682 Under Active Exploitation A critical vulnerability (CVE-2025-39682) in the Linux kernel allows remote code execution through mishandling of zero-length TLS records. This flaw affects kTLS-enabled hosts running vulnerable kernel versions, exposing them to attackers without authentication. CISA added this vulnerability to its Known Exploited…