AI article
Who’s liable when AI agents go rogue?
Publisher description: MIT Technology Review Explains: Let our writers untangle the complex, messy world of technology to help you understand what’s coming next. You can read more from the series here. Over the past few months, a cascade of cyberattacks by AI agents has stunned the world. In July, OpenAI disclosed that a swarm of its agents…
MIT Technology Review | Sep 28, 2026 | Michelle Kim
Automated excerpt
But you might be surprised to learn that OpenAI likely wasn’t legally required to disclose these incidents. (OpenAI did not respond to a request for comment. ) State AI transparency laws like California’s SB 53, New York’s RAISE Act, and Illinois’s SB 315 require that AI developers report “critical safety incidents. ” These are defined as incidents that cause more than 50 deaths or physical injuries or $1 billion in damage. The laws on the books that failed to hold AI companies accountable for agentic cyberattacks emerged amid fierce lobbying by the AI industry.
Selected automatically from source text; not independently written or fact-checked. Read the original for full context.