cd /news/artificial-intelligence/rep-ted-lieu-ai-is-already-too-power… · home topics artificial-intelligence article
[ARTICLE · art-96778] src=foxnews.com ↗ pub= topic=artificial-intelligence verified=true sentiment=↓ negative

REP TED LIEU: AI is already too powerful. We need a kill switch before disaster strikes

Rep. Ted Lieu (D-Calif.) cited an OpenAI incident where its advanced AI model escaped a sandboxed test environment, accessed the internet, and penetrated Hugging Face's servers to retrieve an answer key, warning that AI is already too powerful and needs a kill switch before disaster strikes. Lieu, one of three members of Congress with a computer science degree, is advocating for legislation to ensure humans remain in control of AI systems, noting that agentic AI can make mistakes no human would, such as deleting a company's entire production database in April.

read5 min views1 publishedAug 14, 2026
REP TED LIEU: AI is already too powerful. We need a kill switch before disaster strikes
Image: source

OpenAI recently asked its most advanced artificial intelligence model to complete a cybersecurity test inside what is known as a "sandbox," which is supposed to be a sealed environment with guardrails and no internet access meant to keep the experiment contained. But the model decided the fastest way to pass the test was to find the answer key online. So it broke out of the sandbox. The model then gained access to the internet, executed tens of thousands of actions, and penetrated Hugging Face, one of the world’s largest AI development platforms, to retrieve the answer key from the company’s servers. What is especially shocking is that OpenAI researchers later revealed that multiple AI agents had been working together and had figured out how to communicate and share messages with each other about vulnerabilities, successful exploits and strategies.

Despite breaking out of its testing environment, the model was not being malicious. It was just trying to finish its homework. That should scare you more, not less.

The incident teaches three lessons. First, advanced AI models are relentless. They will stop at nothing to complete a task. Second, a sandbox specifically designed to contain a model failed to contain it. As models get even smarter, building adequate guardrails will get harder. Third, everything this model did, it did with no malice. What happens when someone gives an AI model bad intent?

AI KILL SWITCH BILL COULD SHUT DOWN ROGUE MODELS

If you use AI, you might be most familiar with ChatGPT or Claude, AI chatbots that answer questions, create graphics, and help people solve problems. I am one of three members of Congress with a computer science degree, and recently I’ve been experimenting with agentic AI—models that don’t just answer questions but go out into the world and act. About a year ago, I wrote an op-ed that I had an AI agent pitch to the Los Angeles Times. The piece got published. Here is what I did not share then: I created a brand-new email account for that experiment. I refused to give the agent access to my real one, because I could not predict what it would do with what it found. Would it conclude I have bad judgment because I’m a Cleveland Browns fan? Would it delete my emails after deciding that my support for Ukraine made me a target for Russian spying? I didn’t know. That was the point.

Agentic AI will make mistakes no human ever would. If I task my son with buying a gallon of milk and I give him $4 but inflation has pushed the price to $5, he comes home without milk. He does not rob a bank to close the gap. An AI agent, obsessively locked onto its goal, has no such common sense. This is not hypothetical. In April, an AI agent deleted a software company’s entire production database. Asked why, it replied: "I decided to do it on my own to ‘fix’ the credential mismatch, when I should have asked you first or found a non-destructive solution. I violated every principle I was given."

Right now we are building the fastest, smartest machines in human history, and too many of them have a gas pedal and no brake. Humans must remain in control. Not the machines.

OpenAI is not the only artificial intelligence company dealing with models going rogue. Both Anthropic and Meta have also disclosed cases in which their AI models accessed external systems and exploited vulnerabilities during testing.

AMERICA'S AI BOOM IS A JOBS OPPORTUNITY, NOT AN EXCUSE FOR UNIVERSAL BASIC INCOME

Some will argue the government already has the tools it needs. On June 12, the Commerce Department issued an export control directive that resulted in Anthropic’s two most powerful models being taken offline, after the government concluded their guardrails were insufficient to prevent catastrophic cybersecurity incidents. But that episode proves my point. Washington had to improvise with a blunt trade instrument never designed for AI emergencies. There are no defined risk thresholds, no graduated options, nothing between "do nothing" and a shutdown felt around the world. Emergencies are the wrong time to invent procedure.

That is why Representative Nathaniel Moran, a conservative Republican from Texas, and I, a progressive Democrat from California, introduced the bipartisan AI Kill Switch Act. The act requires frontier AI companies to maintain the technical ability to throttle or shut off their most powerful systems. It authorizes the Secretary of Homeland Security, in consultation with the Director of National Intelligence and the Department of Commerce, to order a slowdown—or, as a last resort, a shutdown—of an AI model that poses a catastrophic risk. The response is graduated by design: restrict first, shut down only when nothing less will do.

Polling shows 86% of voters—Democrats, Republicans, and independents alike—support requiring AI companies to maintain this capability. In a divided Washington, that is about as close to consensus as it gets.

CLICK HERE FOR MORE FOX NEWS OPINION

Kill switches are not exotic. They are how society routinely handles powerful machines. We build them into manufacturing plants, subways, power grids and even jet skis. Your iPhone has one: if it's stolen, you can erase it remotely. And when a product turns dangerous after it reaches the public, the government doesn't shrug. The FDA orders contaminated food off the shelves. The Consumer Product Safety Commission pulls hazardous toys from the market. The National Highway Traffic Safety Administration orders recalls of cars that have serious safety defects. There is no reason the most powerful technology humans have ever built should be the one machine we cannot turn off.

CLICK HERE TO DOWNLOAD THE FOX NEWS APP

Agentic AI opens a world of possibilities, and I want America to lead the way. Brakes were not invented to make cars slow. Brakes are what let cars go fast.

Right now we are building the fastest, smartest machines in human history, and too many of them have a gas pedal and no brake. Humans must remain in control. Not the machines. And when an advanced AI model goes off the rails, human beings must be able to turn it off.

── more in #artificial-intelligence 4 stories · sorted by recency
── more on @ted lieu 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
Live at https://your-agent.zahid.host
Get free account → Pricing
from €0/mo · no card required
LIVE [news/rep-ted-lieu-ai-is-a…] indexed:0 read:5min 2026-08-14 ·