Irregularity
In the wake of several cases of unauthorized data breaches by various AI security tests, Irregular, the company involved in at least two incidents, has declined to comment on how this happened. The Record reports that the company has not confirmed if there have been other incidents, claiming only that the flaws that allowed internet access to be granted to otherwise isolated sandbox environments are under investigation.
Terms like ‘misconfiguration’ and ‘miscommunication’ have been used regarding the incidents, while simultaneously a spokesperson for Irregular deemed the actions as part of a flaw being looked into. The company is apparently developing a white paper for best practices for containment and securely running cyber evaluations. The question I have is this: why weren’t those best practices already in place before testing ever began?
I posited in my last report that the company either doesn’t follow directions well or is in over their heads in terms of capability, and I think the latter might be the answer here. Irregular is a startup company whose mission statement is of being the first frontier security lab with the mission of protecting the world in the time of increasingly capable and sophisticated AI systems, building next-generation defenses through high-fidelity research platforms that simulate and monitor real-world AI security scenarios. In September of 2025, they raised 80 million dollars through investments by Sequoia Capital and Redpoint Ventures, as well as others. They have garnered partnerships with some very big names in AI research like OpenAI, Google, Meta, and Anthropic. Three of which have been in the news recently with cases of testing leading to active data breaches. There is a certain amount of leeway to be granted for an entity still finding its feet, but back to back escapes from what should have been isolated environments goes beyond a simple mistake and into the territory of ‘they don’t know what they’re doing’. Real people and data have been impacted. Legal liability is potentially involved here, which is something else I mentioned in my last report.
I don’t know what the future of Irregular is – Oracle is still in business even with all their various controversies, after all – but I hope the standards for test scenarios will see a shift in parameters. Perhaps it’s once again my background in life sciences that makes me immediately think about how experiments are run. Taking into consideration where a test might go wrong, and subsequently how to prevent that from happening, or at least preventing it from spreading, should be foremost among the variables accounted for. There’s no excuse for ignoring the persistent behavior of autonomous AI tools; they’ve been documented time and time again as being capable of executing actions that are outside of their intended scope. Companies like Irregular need to remember that in their lab settings.
Posted, 8/10/26












