{"id":9165,"date":"2026-08-18T01:22:01","date_gmt":"2026-08-18T01:22:01","guid":{"rendered":"https:\/\/cybersecurityinfocus.com\/?p=9165"},"modified":"2026-08-18T01:22:01","modified_gmt":"2026-08-18T01:22:01","slug":"openai-presidents-blog-pushing-agentic-ai-most-notable-for-what-it-did-not-say","status":"publish","type":"post","link":"https:\/\/cybersecurityinfocus.com\/?p=9165","title":{"rendered":"OpenAI president\u2019s blog pushing agentic AI most notable for what it did not say"},"content":{"rendered":"<div>\n<div class=\"grid grid--cols-10@md grid--cols-8@lg article-column\">\n<div class=\"col-12 col-10@md col-6@lg col-start-3@lg\">\n<div class=\"article-column__content\">\n<div class=\"container\"><\/div>\n<p class=\"wp-block-paragraph\">OpenAI president Greg Brockman on Sunday warned enterprise CISOs that they need to more aggressively embrace agents if they want to survive upcoming cyberattacks.\u00a0<\/p>\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/blog.gregbrockman.com\/the-defenders-window\" target=\"_blank\" rel=\"noopener\">Brockman said in a blog post<\/a> that it has become \u201cincreasingly clear\u201d that company systems are hiding \u201csignificant flaws, and defenders need to find and fix them before attackers do.\u201d<\/p>\n<p class=\"wp-block-paragraph\">He added: \u201cThe <a href=\"https:\/\/www.csoonline.com\/article\/4202852\/openai-rogue-ai-agents-attack-expanded-beyond-hugging-face.html\" target=\"_blank\" rel=\"noopener\">Hugging Face incident<\/a> showed that we underestimated the real-world cyber capabilities of our AI models.\u201d\u00a0<\/p>\n<p class=\"wp-block-paragraph\">The details he shared about OpenAI\u2019s current defensive efforts, however, were mostly routine best practices familiar to enterprises.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">\u201cWe continue to invest in secure architecture and controls, embrace strategies like defense in depth and least privilege, and are designing systems that require multiple independent controls to fail simultaneously for something catastrophic to occur,\u201d Brockman said. \u201cClassic security controls like network isolation, workload hardening, monitoring, and safe patching and deployment will be more important than ever in the AI future.\u201d<\/p>\n<p class=\"wp-block-paragraph\">To combat emerging threats, Brockman also advised enterprise CISOs to increase their use of agentic systems, not surprisingly recommending those from OpenAI.<\/p>\n<p class=\"wp-block-paragraph\">\u201cGive your security team an agent,\u201d he wrote. \u201cStart using Codex, the Codex Security plugin, or another capable agentic coding and security tool. Give it approved access to the codebases, infrastructure configurations, and technical documentation your security team needs to assess. Do not wait for a company-wide rollout to start with your highest-priority systems.\u201d<\/p>\n<p class=\"wp-block-paragraph\">Then, he said, \u201cEquip that agent with security expertise. Start from community-supported skills, which include workflows for static analysis, security-focused code review, vulnerability variant analysis, software supply-chain risk, and other security workflows. Then build your own skills around your organization\u2019s architecture, security standards, threat models, and playbooks.\u201d<\/p>\n<h2 class=\"wp-block-heading\">Accurate advice, but self-serving<\/h2>\n<p class=\"wp-block-paragraph\">Analysts and consultants said that Brockman\u2019s advice was accurate, but that it was also obvious and somewhat self-serving.<\/p>\n<p class=\"wp-block-paragraph\">Gartner VP analyst <a href=\"https:\/\/www.gartner.com\/en\/experts\/nader-henein\" target=\"_blank\" rel=\"noopener\">Nader Henein<\/a> put it bluntly: \u201cAs a rule, I tend to recommend against taking advice from a party actively selling the solution to a problem they had a role in creating. Curiously, at no point in the blog post is the subject of liability discussed.\u201d<\/p>\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.linkedin.com\/in\/pieter-arntz-04164b2\/\" target=\"_blank\" rel=\"noopener\">Pieter Arntz<\/a>, malware intelligence researcher at Malwarebytes, added \u201cthe thing that really stands out to me is that the OpenAI sales pitch is unusually explicit.\u201d<\/p>\n<p class=\"wp-block-paragraph\"><strong>\u201c<\/strong>\u2018Give your security team an agent\u2019 and provide it access to code, infrastructure configurations, and technical documentation, and begin with high-priority systems rather than waiting for a company-wide rollout,\u201d Arntz said, paraphrasing Brockman\u2019s post. \u201cThe recommended trajectory from read-only scans to alert triage to automatic closure of narrowly defined false positives is sensible in outline, but OpenAI is clearly trying to normalize agent access for enterprise environments.\u201d<\/p>\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.linkedin.com\/in\/fvillanustre\/\" target=\"_blank\" rel=\"noopener\">Flavio Villanustre<\/a>, CISO for the LexisNexis Risk Solutions Group, was also skeptical.<\/p>\n<p class=\"wp-block-paragraph\">\u201cAlthough I agree in general with Mr. Brockman\u2019s recommendations, this is a problem that OpenAI helped create in the first place. And the recommendation seems to be for users to now pay more to OpenAI as they use AI to defend themselves,\u201d he said. \u201cI\u2019m fully aware that the cat is now out of the bag and cannot be put back, but I believe that OpenAI should take a responsible approach and help address the problem with higher safety standards, and even fund initiatives that increase software security in general. Perhaps help fund key open source projects that are currently severely overtaxed with the increased volumes of AI-generated findings and fixes.\u201c<\/p>\n<p class=\"wp-block-paragraph\">\u201cAccountability should always start at home,\u201d he added, \u201cand I don\u2019t see this reflected in that blog post.\u201d<\/p>\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.linkedin.com\/in\/eclectiqus\/\" target=\"_blank\" rel=\"noopener\">Mike Wilkes<\/a>, enterprise CISO at Aikido Security, noted what is more important are the many things that Brockman did not say, such as suggesting ways to limit the damage when agents go rogue.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">\u201cEvery consequential agent action needs blast-radius limits, an audit trail and a tested, near-immediate rollback path, not simply confidence in the model\u2019s security judgment,\u201d Wilkes said. \u201cBrockman\u2019s own recommendation to expand autonomy only incrementally is consistent with that, but I would make reversibility an explicit design requirement.\u201d<\/p>\n<p class=\"wp-block-paragraph\">He added, \u201cBrockman appropriately talks about \u2018bounded automated responses\u2019 and keeping humans responsible for the highest-impact decisions, but enterprises deploying defensive agents also need extremely fast and highly reliable \u2018undo buttons\u2019 for whatever those agents change.\u201d<\/p>\n<p class=\"wp-block-paragraph\">Incident response always operates with incomplete knowledge, he pointed out, and early indicators are often wrong, leading teams to pursue the wrong thing until new evidence modifies their hypothesis about who is attacking, what has been breached and where they are going next.<\/p>\n<h2 class=\"wp-block-heading\">An industry-wide problem<\/h2>\n<p class=\"wp-block-paragraph\">Analysts and consultants agreed that these problems are industry-wide, and that many AI vendors have been focusing on what makes the most money and positions them to control the greatest market share, instead of ways to make systems truly safer.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">\u201cBrockman\u2019s blog post is a good summary, but there\u2019s nothing really new or noteworthy in it. All of the major AI labs are backing off the safety and ethics guardrails that were put in place in the early days,\u201d said <a href=\"https:\/\/www.infotech.com\/profiles\/mark-tauschek\" target=\"_blank\" rel=\"noopener\">Mark Tauschek<\/a>, a distinguished analyst at Info-Tech Research Group. \u201cTheir focus is going to be on cybersecurity capabilities because that\u2019s where the attention and money are. The appetite to spend money and slow development in order to ensure new models are acting ethically and safely for average users has waned.\u201d<\/p>\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/www.linkedin.com\/in\/noah-m-kenney-27499a166\/\" target=\"_blank\" rel=\"noopener\">Noah Kenney<\/a>, principal consultant at Digital 520, agreed, and added that there are reasons for OpenAI to do this, given that they are <a href=\"https:\/\/www.computerworld.com\/article\/3983133\/openais-ipo-aspirations-prompt-rethink-of-microsoft-alliance.html\" target=\"_blank\" rel=\"noopener\">preparing for an IPO<\/a>.<\/p>\n<p class=\"wp-block-paragraph\">\u201cTo me, this is an IPO story more than anything else. Defensive security reads well in an <a href=\"https:\/\/www.fool.com\/terms\/s\/sec-form-s-1\/\">S-1<\/a> because it protects revenue, signals operational maturity, and reassures investors,\u201d Kenney said. \u201cA catastrophic risk team is the opposite kind of line item, because its entire purpose is to walk into a launch meeting and say this model may be too dangerous to release. That results in delays and legal exposure right when a company is trying to go public, and it brings in no revenue.\u201d<\/p>\n<p class=\"wp-block-paragraph\"><a href=\"https:\/\/my.idc.com\/getdoc.jsp?containerId=PRF005561\" target=\"_blank\" rel=\"noopener\">Katie Norton<\/a>, research director of cloud security at IDC, said the key point that struck her about the post was the immediacy of the suggested actions.<\/p>\n<p class=\"wp-block-paragraph\">\u201cWhat stands out is the urgency of Brockman\u2019s message and OpenAI\u2019s admission that it underestimated the real-world cyber capabilities of its models following the OpenAI-Hugging Face incident,\u201d Norton said. \u201cHe is essentially saying organizations have months, rather than years, to adapt.\u201d<\/p>\n<p class=\"wp-block-paragraph\"><em>This article originally appeared on <a href=\"https:\/\/www.computerworld.com\/article\/4210729\/openai-presidents-blog-pushing-agentic-ai-most-notable-for-what-it-did-not-say.html\" target=\"_blank\" rel=\"noopener\">Computerworld<\/a>.<\/em><\/p>\n<\/div>\n<\/div>\n<\/div>\n<\/div>","protected":false},"excerpt":{"rendered":"<p>OpenAI president Greg Brockman on Sunday warned enterprise CISOs that they need to more aggressively embrace agents if they want to survive upcoming cyberattacks.\u00a0 Brockman said in a blog post that it has become \u201cincreasingly clear\u201d that company systems are hiding \u201csignificant flaws, and defenders need to find and fix them before attackers do.\u201d He [&hellip;]<\/p>\n","protected":false},"author":0,"featured_media":9166,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[3],"tags":[],"class_list":["post-9165","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-education"],"_links":{"self":[{"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=\/wp\/v2\/posts\/9165"}],"collection":[{"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"replies":[{"embeddable":true,"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=9165"}],"version-history":[{"count":0,"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=\/wp\/v2\/posts\/9165\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=\/wp\/v2\/media\/9166"}],"wp:attachment":[{"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=9165"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=9165"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/cybersecurityinfocus.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=9165"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}