I've seen a few of these articles in passing and I am still unclear - what was the actual "hack"? What did the AI agent actually do, in the technical sense? There is a world of difference between it doing a stupid brute-force attack and it discovering and exploiting an access-control flaw that the site itself exposed.
Neither is good...but if Medicare basically left the front door open, it wouldn't take more than a bored 13 yr old to do the same. Let's pump the brakes on Skynet.
BTW, can we talk about why we still need 19 factor authentication to log into My.gov? That's always a hoot and the experience is always smooth. Gee, I wonder whether the same committee that designed the myGov login experience might also have made some questionable security decisions elsewhere?

