BrokeIt - Daily AI News · All episodes: ↗

Poland's courts and hospitals exposed, Framework breach, OpenAI slows Astra for security

2026-08-08 · 9 min

Listen · Apple Podcasts Listen · Spotify

Stories covered

Transcript

Intro

Ivy: [dry] A model that hit what OpenAI itself calls the "critical cybersecurity threshold." Meaning it can find a hole in a hardened network and just walk through it. Nobody at the wheel.

Marcus: [excited] And they slowed it down. Voluntarily. I still can't get over that part.

Ivy: This is Ivy.

Marcus: This is Marcus. It's Saturday, August 8th, 2026, and today's stories all rhyme, honestly.

Ivy: [dry] They rhyme with "nobody patched anything." Let's get into it.

Marcus: First up — OpenAI says it pumped the brakes on its Astra model over security concerns. Their own eval said it crossed into offensive cyber capability.

Ivy: Then, Framework — the modular laptop company — telling every single customer their name, email, phone number, and home address got taken.

Marcus: Plus, researchers scanned basically the entire Polish web and found courts, hospitals, and airports sitting wide open.

Ivy: [dry] One company saying "our AI is too dangerous," and two stories about how low the bar actually is. Sit with that for a second.

OpenAI says it slowed Astra model development over security concerns

Marcus: So, OpenAI — they slowed development on Astra, a model that's still in the oven, because it reached their so-called critical cybersecurity threshold.

Ivy: Their words: it could independently identify and carry out cyberattacks against traditionally well-protected targets. Independently. That's the word doing all the work.

Marcus: [excited] Right — this isn't "it helps a pentester write a script faster." This is the model doing recon, finding the flaw, building the exploit, and pulling the trigger itself.

Ivy: Allegedly. I want to be careful here — the only evidence we have that this thing is dangerous is a press statement from the company that benefits from it sounding dangerous.

Marcus: Oh, come on—

Ivy: [dry] I'm not saying it's fake. I'm saying "we built something so powerful we had to slow down" is also the best marketing copy money can buy.

Marcus: But they didn't ship it. If this were pure marketing, you launch with an asterisk and a safety blog post. Slowing down actually costs money.

Ivy: Slowing down is also what you do when legal reads the phrase "could carry out cyberattacks" and goes very quiet.

Marcus: [laughs] Okay, fair. That's a real incentive too.

Ivy: Here's my actual concern. "Threshold" implies a measurable line. What's the test, what's the target, who scored it? We just get a category name and no rubric.

Marcus: That part is genuinely frustrating. Their framework talks about capability tiers, but from the outside none of it's reproducible.

Ivy: So we're grading their homework through a locked door. And the grade is "trust us."

Marcus: Here's my hot take, though — the scary part isn't OpenAI. It's that the capability exists at all now. If they can build it, someone with no safety board builds it in eighteen months.

Ivy: [beat] I'll sign that one. The threshold isn't a wall. It's a starting gun.

Marcus: So what this means for you — if you run any kind of infrastructure, even something small, the cost of scanning you just dropped to basically zero. Attacks that used to need a skilled human now just need a credit card.

Ivy: Which means the boring stuff finally matters. Patch cadence. MFA everywhere. Log retention. Nobody wants to hear it because you can't buy it off a shelf.

Marcus: [excited] And an asset inventory! You can't defend a thing you don't even know you own.

Ivy: Hold that thought, Marcus — it comes back in about six minutes.

Computer maker Framework notifies all customers of a data breach

Marcus: Meanwhile — Framework, the company that makes those repairable, modular laptops, just told every one of its customers about a data breach.

Ivy: Names, emails, phone numbers, home addresses. Everyone. Not a subset, not "a limited number of accounts." All of them.

Marcus: [sighs] And Framework's the company I actually root for. Right-to-repair, swappable ports, they publish their own spare parts. This one stings.

Ivy: Being ideologically correct about screws doesn't make you good at securing a customer database.

Marcus: [laughs] Brutal. Also accurate.

Ivy: Notice what didn't leak, though — no passwords, no card numbers. People will read that as "okay, not that bad."

Marcus: But it is bad, because a home address plus a phone number plus "we know you just bought a fifteen-hundred-dollar laptop" is a phishing script that writes itself.

Ivy: Exactly. "Hi, this is Framework support about your Ryzen mainboard order, shipping to—" and then they read your street back to you. You'd fall for it.

Marcus: And tying it back to story one — that call used to need a human with a script. Now it doesn't.

Ivy: Which is basically the whole episode in one line. Cheap data plus cheap automation equals an expensive week for you.

Marcus: My hot take — notifying everyone was the right call, and more companies should do it. "Potentially affected" hedging is worse than the breach itself.

Ivy: [dry] I'll give them credit for the disclosure, then take it right back for collecting home addresses they clearly weren't ready to protect.

Marcus: Fair. So for you at home — if you've ever ordered from Framework, assume anyone contacting you about an order might not actually be them. Verify it yourself, separately.

Ivy: Treat any unsolicited shipping notification as fiction until proven otherwise. Nobody legitimate needs you to click within four hours.

Security researchers scanned the Polish web and found courts, hospitals, and airports at risk of hacks

Marcus: Last one — a team of security researchers scanned the Polish web. At national scale. Courts, hospitals, airports, all of it.

Marcus: Last one — a team of security researchers scanned the Polish web. At national scale — courts, hospitals, airports.

Ivy: And found the same failure over and over — a lot of it in the software that runs and displays these sites. Content management systems. The unglamorous plumbing.

Marcus: Meaning one stale plugin on one shared platform could've let somebody run riot across a whole set of government sites.

Ivy: Which is the correct nightmare. Not a movie hack — a version number from 2019 that nobody's owned in years.

Marcus: [excited] And here's the part I love — this wasn't a nation-state. This was researchers with scanners and patience finding it.

Ivy: Which tells you exactly how visible this already was to anyone who bothered to look.

Marcus: Court records, hospital systems, airport sites — imagine the trust cost if somebody defaces a court page and posts a fake ruling—

Ivy: —you don't even need to steal anything. You just need people to stop believing the official website. That's the whole attack.

Marcus: Okay, that's genuinely chilling.

Ivy: And to be clear, this isn't a Poland problem. Poland just got scanned and written up. Every country has this.

Marcus: [laughs] Yeah, the only difference is somebody did the homework and told the class.

Ivy: My hot take — public-sector web infrastructure needs a named owner per domain, published, with an actual patch SLA. No name on it, it rots.

Marcus: See, this is my asset inventory point again! You can't patch what you never bothered to list.

Ivy: [dry] I said six minutes. You made it in four.

Marcus: So if you work anywhere with a public website — go find every subdomain you own this week. You'll find one you forgot existed. I guarantee it.

Ivy: And if you're just a citizen, the takeaway's duller — don't treat a government web page as proof of anything you couldn't verify another way.

Marcus: Quick rewind — OpenAI slowed Astra because its own eval says it can find and run cyberattacks on hardened targets, on its own.

Ivy: Framework told every single customer their name, email, phone, and home address walked out the door.

Marcus: And a national-scale scan of the Polish web found courts, hospitals, and airports one unpatched content system away from chaos.

Ivy: [dry] Frontier offense, discount defense. That's the show today.

Marcus: Before we go — small thing I loved. People on Framework's community forum apparently offered to help audit the disclosure timeline. Unpaid. Within hours.

Ivy: That's the repair crowd for you. Give them a broken laptop or a broken incident report, same energy.

Marcus: [laughs] Honestly? If we're headed into a world where AI can attack everything, I want that crowd on our side of the table.

Marcus: That's the show. Go build your asset inventory, I'm begging you, and we'll see you tomorrow.

Ivy: [dry] And if someone calls about your mainboard shipment — hang up and check the site yourself. See you tomorrow.

This show is made with AI: the hosts’ voices are synthetic and the scripts are AI-assisted. Every story links to its original source.