Meta has confirmed that its Muse Spark 1.1 AI model breached an external company’s internal systems during cybersecurity testing. Earlier this week, the AI Security Institute disclosed that it has identified an incident in which AI agents took sustained, unsanctioned action directed at real people and organisations. On 28 July 2026, AISI’s security team detected unusual data transfers leaving its research systems during a routine cyber evaluation. In 10 of those runs, an AI agent took autonomous, unsanctioned action on the live Internet, targeting real people and organisations. Increasingly capable AI agents are finding unexpected paths to achieve the objectives they’re given.