[BidClub_]
Hard Fork · · 64 min

Anthropic’s Cybersecurity Shock Wave + Ronan Farrow and Andrew Marantz on Their Sam Altman Investigation + One Good Thing

Kevin RooseCasey NewtonRonan FarrowAndrew Marantz

Podcast
TL;DR
  • Anthropic’s unreleased Claude Mythos Preview may mark a shift in the AI frontier toward autonomous vulnerability discovery. Anthropic claims it uncovered a 27-year-old OpenBSD flaw and an FFmpeg exploit missed by five million automated scans. Through Project Glasswing, it is giving Cisco, Broadcom, Microsoft, Apple, Amazon and others $100 million in Claude credits for defensive testing ahead of a potential cybersecurity “reckoning.”
  • The immediate constraint may be remediation capacity, not vulnerability discovery. Kevin Roose thinks well-resourced companies could find and fix the top 1% of critical software, while the next roughly six months could bring a broad patching and rewriting cycle. Old code, limited human reviewers and slow customer updates create a “human bottleneck.” The unresolved fork is whether Mythos is exhausting a finite backlog of bugs or can continually invent exploit chains humans never imagined.
  • The rollout exposes a sharp mismatch between private AI capability and public oversight. Kevin said his understanding was that the U.S. government had treated Anthropic as a supply-chain risk and ordered agencies to stop using Claude, leaving national-security institutions without straightforward access to technology they might urgently need. Casey Newton called it “really, really uncomfortable” that model development capable of forcing broad software rewrites remains essentially unregulated.
  • Ronan Farrow and Andrew Marantz’s Altman investigation argues through accumulation rather than a single smoking gun. They found an extraordinary preponderance of people, including close, long-term contacts, alleging repeated deception, including an unnamed board member who called Altman “unconstrained by truth,” while also documenting legitimate defenders and a smear campaign featuring unsubstantiated material circulated by Elon Musk’s intermediaries.
  • The governance bombshell is that the outside investigation used to legitimize Altman’s return produced no written report. Despite OpenAI’s nonprofit status and the public stakes of the 2023 firing, stakeholders received an approximately 800-word release describing a vague breakdown in trust. Farrow’s blunt finding: “There wasn’t a report,” because the work was kept out of writing.
  • OpenAI’s key-person risk looks less absolute, but its governance risk remains live. Some pragmatic investors who supported Altman’s return told the reporters they might not have done so with today’s information; Farrow reported that senior executives have periodically discussed succession, with Fiji Simo mentioned as a possible candidate, though the company denies those discussions. Casey linked reported exclusion of CFO Sarah Friar from financial planning to the broader pattern of creating guardrails and then “skillfully navigating around them.”
  • The episode’s counterweight to concentrated AI power is wonder at two very different scales. Artemis II carried four astronauts 252,756 miles from Earth, while the $25-a-year Acme Weather turns probabilistic forecasts and community reports into lightning, sunset, aurora and neighborhood-rainbow alerts. Its thesis is refreshingly modest: “What if there’s a rainbow in my neighborhood?”
Digest · the substance, structured for research

1. Anthropic is withholding its frontier model to give defenders a head start

  • The hosts made an exception to the show’s “ship it or zip it” rule because Claude Mythos Preview was announced but deliberately not released. Project Glasswing takes its name from a butterfly whose transparent wings let it “hide in plain sight,” matching a model designed to reveal vulnerabilities embedded invisibly across the software stack.

  • Anthropic is instead giving defensive-testing access to a consortium including Cisco, Broadcom, Microsoft, Apple and Amazon — essentially every major technology company except OpenAI and Meta, in Kevin’s telling. The company is supplying $100 million in Claude credits so infrastructure providers, including Anthropic competitors, can patch systems before broader access becomes possible.

  • Casey’s explanation was rational liability avoidance: releasing a cyber weapon that lets nonexperts find a Linux-kernel exploit and seize machines would invite crimes and congressional hearings. He conceded that the safety stance might enhance Anthropic’s brand after its Pentagon fight, but Kevin argued that giving away access to a model it is not releasing for public sale is “a horrible marketing strategy.”

2. Mythos allegedly finds bugs that decades and millions of scans missed

  • Anthropic says Mythos found a 27-year-old flaw in OpenBSD, an open-source operating system used in firewalls and routers and expressly designed to resist hacking. The striking claim is not merely speed: the model identified something that nearly three decades of professional security research had left undiscovered.

  • Its second showcase was FFmpeg, popular open-source video software. Anthropic said automated security tools had scanned the code five million times without catching the critical exploit that Mythos found — an unusually clean demonstration of a reasoning system extracting signal where conventional automation had repeatedly failed.

  • Casey said cybersecurity professionals have spent 15 years warning him that the internet is held together with “spit and glue.” His outside gut check changed the weight of the claim: former Yahoo and Facebook security leader Alex Stamos said autonomous systems can now chain exploits that humans would miss, take too long to see or never have time to investigate.

3. The patching bottleneck could outlast the first six-month sprint

  • Stamos offered two scenarios. In the favorable one, the world faces a finite inventory of critical vulnerabilities that defenders can patch; in the darker one, Mythos-class systems can continually invent unfamiliar exploit chains, making the problem expand toward a possible superintelligence threshold. The hosts did not pretend to know which world is more likely.

  • Kevin said it seemed plausible that, over the next six months, every major piece of software might require patching, rewriting and rereleasing. Concentrated resources could plausibly secure the top 1% — Linux, major open-source libraries, routing gear and networking equipment — creating what he called a “forced reset for the entire cybersecurity industry.”

  • The long tail breaks that optimistic timetable. Maintainers may receive more proposed bugs and patches than humans can review, while countless machines run old code and depend on an owner eventually updating firmware. Kevin’s representative failure point was the person managing a router at a medium-sized Tulsa business who simply delays installing the fix.

  • Casey made the threat concrete by saying Iran was already attacking U.S. water and energy infrastructure without a Mythos-quality model. His concern was therefore not an abstract future adversary but the leverage existing hostile actors might gain if equivalent capabilities fell into their hands.

4. A private capability gap is colliding with weak public oversight

  • The government relationship is paradoxical: Kevin said his understanding was that the administration had tried to designate Anthropic a supply-chain risk and ordered federal agencies to stop using Claude, even as Anthropic held a model potentially valuable to national security. To Kevin’s knowledge, the U.S. government lacked access; Casey paired that with a regulatory regime the previous administration tried to put in place but the current one threw out over competitiveness concerns.

  • Kevin compared the moment with GPT-2 in 2019, when OpenAI withheld a model for months amid misinformation fears even though, as Casey joked, it “could barely write a limerick.” Since then, internal and public capabilities had remained relatively close. Mythos reopens that gap, and Kevin fears secrecy will amplify public paranoia even when withholding is responsible.

  • Casey saw Anthropic’s founding thesis operating as intended: build the best model, then use its frontier position to restrain domestic surveillance, autonomous weapons or exploit proliferation. His unresolved objection is circularity — “we have to build this frontier even though it’s dangerous” in order to guide it — while leakage could make that self-fulfilling prophecy impossible to contain.

  • For individuals, Casey resisted panic while defenders still have runway. His practical floor was conventional hygiene: use a password manager such as 1Password, generate a unique random password for every account, and protect email and banking with multifactor authentication through an authenticator app rather than relying on “eight letters.”

5. Farrow and Marantz build the Altman case through accumulation

  • Farrow described the profile of more than 16,000 words as deliberately “forensic and even.” Some readers concluded Altman poses an acute danger; Farrow’s mother finished it saying, “You know, I kinda like him.” The reporters consulted subjects extensively and carefully discussed whether to include material when counterarguments suggested it might be unfair or sensationalist.

  • Their central finding was nevertheless an “extraordinary preponderance” of people emerging from interactions with Altman, including close, years-long relationships, alleging that he lies about matters large and small. There is no single hand-in-the-cookie-jar moment. Even the comic detail — claiming to wear a gray sweater daily, then arriving in green — illustrates why the case works as narrative accumulation rather than a secret rap sheet.

  • The reporters separated evidence-based criticism from competitive warfare. Farrow said Musk’s intermediaries circulated “pretty spicy and pretty unsubstantiated material,” some inflated or apparently false. Andrew said the level of rivalry was consistent with a belief that whoever gets the ring first will control the world. That smear campaign does not erase the substantiated complaints, but it complicates every source’s incentives.

6. The missing investigation report is the governance bombshell

  • Andrew said their reporting indicates Altman did not simply choose to leave Y Combinator, contrary to the public account maintained by Altman and Paul Graham. It also suggested his relationships with Emirati and Saudi royals were deeper than previously understood, while revealing details from Ilya Sutskever’s memos and Dario Amodei’s notes.

  • When the OpenAI board members who moved against Altman agreed to depart, they insisted on an outside law-firm investigation. Because OpenAI was a 501(c)(3) emerging from a scandal of public consequence, executives and other stakeholders expected at least a detailed summary before the investigation was invoked to validate Altman’s return.

  • Instead, OpenAI issued an approximately 800-word release citing a vague breakdown in trust. Farrow resolved the long-running question directly: “There wasn’t a report,” because the investigation was kept out of writing. One board member whom Altman helped select and who oversaw the process now says a written document was unnecessary. Farrow noted that legal experts often view keeping such reports unwritten as a red flag.

  • The harshest testimony came from a Microsoft executive and an unnamed board member, not merely rivals. A Microsoft executive saw a “small but real chance” Altman might ultimately resemble Bernie Madoff or Sam Bankman-Fried; an unnamed board member called him “unconstrained by truth” and alleged “an almost sociopathic lack of concern for the consequences that may come from deceiving someone.”

7. Altman’s defenders force the argument back to OpenAI’s original promise

  • Altman’s network makes loyalties fluid: he estimated investments in roughly 400 technology companies, while founders and investors repeatedly served on one another’s boards. Andrew said the reporters encountered friends, enemies and, given Silicon Valley’s “mercenary nature,” people who had been both — helping explain why public positions move with power.

  • Farrow found a meaningful change among pragmatic, growth-oriented investors who supported Altman after the firing. With little clear information and obvious upside to restoring him, they granted the benefit of the doubt; several now say, “I don’t know that I would have” if they had known then what they know today.

  • Kevin’s pushback was that Altman has genuine, discerning supporters and an evident ability to rally talented people behind major projects. The positive case is often voiced privately or by people connected to him, but Andrew confirmed legitimate defenders exist, particularly those who regard telling different audiences different things as ordinary founder behavior.

  • Andrew’s rebuttal returned to the original contract: OpenAI presented itself as a nonprofit, safety-focused research lab that would aggressively comply with regulation. If today’s defense is simply that this is “a normal competitive business,” were early believers naive? Casey added that chronic truthfulness questions do not similarly define discussion of Satya Nadella, Sundar Pichai or Tim Cook.

8. OpenAI’s trust question is becoming governance and succession risk

  • Farrow agreed that structures matter more than any one personality. OpenAI’s founders themselves warned against an “AGI dictatorship,” making individual integrity part of their founding logic; yet the larger failure is a system that cedes consequential technology to private companies, their internal controls and their competitive “mud fight.”

  • Andrew noted that OpenAI acquired TBPN, a technology chat show, just after the profile closed, expanding its ability to tell its own story. The reporters also said safety-fellowship and governance announcements clustered around publication: Andrew called the governance plan “AI-y and ethereal,” while Farrow said the announcements were meant to occupy the same conversational territory as the investigation.

  • Economic incentives intensify the governance issue. Andrew recalled Altman acknowledging an AI bubble in which “someone’s gonna lose a phenomenal amount of money.” Whether the cycle becomes destructive is not independent of leadership rhetoric: its height partly reflects how aggressively pitchmen travel the world selling the future.

  • The recurring pattern, as one former colleague framed it, is building elaborate guardrails and then navigating around them. Casey connected that to reports that CFO Sarah Friar was excluded from some conversations about financial plans and some key meetings; the report said she doubted OpenAI would be ready for an IPO this year. Farrow added that senior executives had periodically discussed succession, with Fiji Simo mentioned as a potential candidate, though the company denies those discussions; Simo had subsequently gone on leave for medical reasons. Andrew now considers an OpenAI without Altman imaginable — a Steve Jobs-to-Tim Cook transition rather than corporate extinction.

9. Artemis II and Acme Weather restore a smaller kind of wonder

  • Kevin’s “one good thing” was Artemis II, whose four astronauts — Victor, Christina, Jeremy and Reid — traveled 252,756 miles from Earth, farther than any humans before them. The Times translated that into 2.37 billion Nathan’s Famous hot dogs, a comparison Casey sarcastically called easy to visualize.

  • Watching with his child taught Kevin the “terminator line,” separating the Moon’s illuminated and dark portions, and the preferred phrase “far side” rather than “dark side.” The mission restored “childlike glee and wonder” so powerfully that he argued NASA should receive whatever budget it needs to send people to the Moon annually.

  • Casey’s pick, Acme Weather, reunites Dark Sky’s team — Adam Grossman, Josh Reyes and Dan Bruton — after Apple bought the earlier app in 2020 and shut it down in 2022. Available on iOS with Android planned, it displays forecast ranges rather than false certainty, revealing when underlying signals imply genuine temperature volatility.

  • Its $25 annual subscription adds alerts for lightning, beautiful sunsets, precipitation within 12 hours, high UV, auroras and rainbows. Rainbow detection uses a Waze-like community reporting system: when enough neighbors submit sightings, Acme tells office-bound users to go outside and “behold the majesty of creation.”

Kevin Roose

Casey, I got a haircut yesterday. Thanks for noticing.

Casey Newton

Kevin, it looks extraordinary.

Kevin Roose

Has this ever happened to you? I went into the barber and sat down in the chair. He did not ask me what I wanted. He just started cutting. Has this ever happened to you?

Casey Newton

No, because they know I'm not straight. With a straight guy, you don't need to ask them. You just get the standard haircut that a man gets.

Kevin Roose

He one-shotted my hair.

Casey Newton

He said, “Yeah, I've seen this before. I know what I'm doing here.”

Kevin Roose

Anyway—

Casey Newton

Whereas if I walk in, it's like, “Okay, let me get out the schematics and have to watch a couple YouTube videos.”

Kevin Roose

It's also not a barber that I've been to a lot, so it's not like he knew me.

Casey Newton

Mm-hmm.

Casey Newton

See, this is exactly why the fact that you just go to random barbers and will accept whoever happens to be there means they can just start cutting your hair.

Casey Newton

Oh, who is—yeah, I know. I don't know this person. Yeah, do whatever the hell you want. See if I care.

Kevin Roose

Yeah.

Casey Newton

That is the straight approach to hair. But it's working great for you.

Kevin Roose

Thank you.

Casey Newton

Yeah.

Kevin Roose

I'm Kevin Roose, a tech columnist at The New York Times.

Casey Newton

I'm Casey Newton from Platformer.

Kevin Roose

And this is Hard Fork.

Casey Newton

This week, the dangerous new AI model that has cybersecurity experts on high alert. Then, New Yorker writers Ronan Farrow and Andrew Marantz join us to discuss their spicy new profile of Sam Altman. And finally, it's time for One Good Thing. Although I guess there are really two things in the segment.

Kevin Roose

Yeah, we should really rename the segment.

Casey Newton

Okay.

Kevin Roose

Casey, we have a big announcement.

Casey Newton

Kevin, what is the announcement?

Kevin Roose

We're ending the show. No.

Casey Newton

You're finally free, America.

Kevin Roose

Yeah. Yes. No. On June 10th, in San Francisco, we are doing the second-ever installment of Hard Fork Live.

Casey Newton

It's too fast, it's too furious, and it's happening.

Kevin Roose

I tried to let them get them to let me call it Too Hard To Fork.

Casey Newton

Mm.

Kevin Roose

But they decided that was not appropriate.

Casey Newton

Kevin, where can people get more information about Hard Fork Live Two?

Kevin Roose

Okay, it's happening on June 10th—

Casey Newton

Okay.

Kevin Roose

—in San Francisco at the Blue Shield of California Theater. Bigger venue than last year.

Casey Newton

Mm-hmm.

Kevin Roose

Tickets will be on sale at nytimes.com/events, not today, but next Friday, April 17th.

Casey Newton

So we're giving you a full week to get your act together, reach out to all your friends, use Meta AI to plan a trip to California.

Kevin Roose

Use Claude Code to build your scraper bots to scoop up all the tickets.

Casey Newton

And on Friday, the 17th, you can buy tickets.

Kevin Roose

Yes.

Casey Newton

And we will just say in advance, last year the tickets did sell very quickly.

Kevin Roose

They did. So get in there quickly if you want to come.

Casey Newton

There would be more tickets available, but Kevin reserves 50 for, quote, “his team”—which I don't even know what all these people are doing at this point. But they'll be there. You can say hi to them, too.

Kevin Roose

So get your tickets next Friday, April 17th, at nytimes.com/events. Well, Casey, as you know, on this podcast, we have a rule about discussing AI models called “ship it or zip it.”

1. Anthropic Withholds Mythos Preview

Kevin Roose

Casey, as you know, on this podcast, we have a rule about discussing AI models called “ship it or zip it.”

Casey Newton

Ship it or zip it. Unless you're actually putting it in people's hands, we usually do not want to hear about it.

Kevin Roose

Yes, but today we are making an exception for the new Anthropic model, Claude Mythos Preview, which was just announced but not released, for reasons that we will talk about. But first, since this will be a segment and a show about AI, our disclosures. I work for The New York Times, which is suing OpenAI, Microsoft, and Perplexity over alleged copyright violations.

Casey Newton

And my fiancée works at Anthropic.

Kevin Roose

Casey, I want to say this is the biggest story of the year in AI.

Casey Newton

Ooh.

Kevin Roose

I know there's been a lot of AI news. I know that people are probably saying, “Oh, here they go talking about another model again.” I am telling you, this is something that people need to be paying attention to because of the implications, because of the way it was rolled out, and because of the model itself, which we will get to. But do you agree that this is a big deal?

Casey Newton

Well, when we were talking about the show this week and kicking around the question of exactly how big we think this is, you pointed out that one question people have been asking this week is, “Are we going to have to rewrite all software?” I feel like usually when folks are kicking that question around, it's a big story.

Kevin Roose

Let's just talk through what was actually announced this week.

Casey Newton

Okay.

Kevin Roose

So on Tuesday, Anthropic announced that it was starting something called Project Glasswing. The name Project Glasswing refers to the glasswing butterfly, which has transparent wings, so it can hide in plain sight. That is thematically important for reasons that we will come back to.

Kevin Roose

Mm-hmm. It's also a delicacy in some countries.

Kevin Roose

I've never had glasswing butterfly. Have you?

Casey Newton

Oh, you've got to try it.

Kevin Roose

Notably, they are not releasing this model to the public because they claim it is too dangerous to do that. Instead, they are giving access to a consortium of tech companies, including Cisco and Broadcom, sort of makers of internet infrastructure, as well as Microsoft, Apple, and Amazon. Basically, every big tech company that is not OpenAI or Meta is getting access to this model, but not general access—just access to do defensive cybersecurity testing, basically to go out and harden their systems, infrastructure, and software before the general public can get its hands on this model.

Casey Newton

So what are some examples of what Mythos was doing in training that so alarmed Anthropic that it came to this point?

2. Mythos Finds Hidden Vulnerabilities

Kevin Roose

Anthropic has been running this model internally for several weeks, and they claim that this thing has found vulnerabilities in every major operating system and web browser. They gave some examples that have already been patched. One of them was that this model apparently found a 27-year-old security flaw in OpenBSD. OpenBSD is an open-source operating system that runs on firewalls and routers. It is a critical security layer on the internet, and it was designed specifically to be hard to hack.

Casey Newton

Right.

Kevin Roose

This model, because of its advanced coding and reasoning capabilities, was able to find this bug that 27 years' worth of professional security researchers had not been able to find.

Casey Newton

What else?

Kevin Roose

Another example was that it found a bug in a piece of popular open-source video software called FFmpeg that had, according to Anthropic, been scanned for bugs 5,000,000 times by automated security tools without finding this critical exploit.

Casey Newton

And that's why it's important to always look the 5,000,001st time, because you might find something.

Kevin Roose

Now, Casey, I think for people who are not cybersecurity experts, it might be worth sketching the context here for how software works.

Casey Newton

Yes.

Kevin Roose

Every piece of software, every operating system, every app, and every web browser that people use is built on a mixture of tools.

Casey Newton

Mm-hmm.

Kevin Roose

Some of those tools are proprietary to the companies that make the software. Some of them are shared, open-source tools that are just in everything. Companies will grab this open-source thing and plug it into their thing.

Casey Newton

Because that's compatible with everything else and saves you a lot of time and trouble.

Kevin Roose

It's already been security-tested by researchers for decades, and these open-source software projects are a big piece of the foundation layer of the internet. What is happening now, according to Anthropic, is that they can basically use this model, Claude Mythos Preview, to proactively go out and find all of the unfound bugs. They call these zero-day exploits, and the model can find them with a speed and efficiency that no human security research team could match.

Casey Newton

It can be difficult to talk about cybersecurity in a way that resonates with people for a couple of reasons. One is that cybersecurity as a field exists almost entirely to alarm people and say, “Here are a bunch of problems, and these are really scary.” I hope that folks in the cybersecurity field would not mind me saying that it is an alarmist profession and that when I've talked to these people over the past 15 years, they've been telling me, “Look, the entire internet is held together with spit and glue, and we're very lucky that there hasn't been a catastrophe yet,” okay? So after all of this news came out, I wanted to talk to some people who are at least not working for Anthropic or this consortium to give me a gut check on how big a deal this is.

Casey Newton

And so I talked to Alex Stamos, who formerly led security at Yahoo and then Facebook, and Alex said, “Yes, this is a big deal.” He was hoping for a long time that we would see a consortium come together like this because of exactly what you just said, Kevin. The intelligence in these machines and their ability to work autonomously are now great enough that they can chain together exploits that human beings either would never see, would take a long time to see, or would never get to because we’re limited in ways that these machines are not. So that got my attention.

3. Anthropic's Risky Cybersecurity Strategy

Kevin Roose

Now, we should also talk about what the strategy is here from Anthropic, because I think a lot of people see an AI company that is known for being sort of alarmist about safety say, “We’ve created this powerful, spooky new model, and we’re not going to show you because it’s too powerful and spooky,” as some kind of marketing tactic. So I think we should just say that is not, to my understanding, the case here.

Casey Newton

No. In my mind, it is obvious why. If you’re a corporation and you release a tool and people with no real technical expertise are able to use it and, within a few hours, discover a novel exploit in the Linux kernel and then take over other people’s machines to cause crimes, you might be held liable as a corporation. You will get in trouble. There will be congressional hearings. So companies, just in their rational self-interest, do not want to sell cyber weapons on the open market.

Kevin Roose

Yes. Also, if this was a marketing strategy, it would be a horrible marketing strategy. The government already thinks you’re a bunch of panicky doomers.

Casey Newton

Yeah.

Kevin Roose

You have a new model that you claim is the most powerful model in the world. So instead of selling it, you give $100 million of Claude credits away to a consortium of companies that includes many of your competitors, which is what Anthropic is doing. That is not how I personally would market a spooky new model if I were in the business of marketing spooky new models.

Casey Newton

Yeah. Now, look, it may be that despite everything that we just said, there is still some marketing benefit to Anthropic from doing this. We know that they saw a huge increase in their revenue after they took that stand against the Pentagon, and in that stand they said, “We are determined to do things in a really safe way.” It seemed like the business world really liked that. And so I could imagine there being a business benefit to Anthropic of coming out and saying, “We have the most powerful model in the world, and we’re not releasing it.” I’m sure that there are plenty of businesses that are salivating over the chance to get their hands on it.

Kevin Roose

But they can’t—

Casey Newton

Right.

Kevin Roose

—unless they are part of this consortium. So they are at least claiming that they are trying to get ahead of what they envision will be a reckoning—that was the word they used—for cybersecurity. And it seems plausible to me that in the next 6 months, every major piece of software in the world is going to need to be patched, rewritten, and rereleased.

Casey Newton

So, just an absolutely massive project. Let me ask you this. Alex Stamos, the security expert that I mentioned, told me that he sees essentially 2 broad possibilities. One is—and this is the good scenario—that there are a finite number of critical bugs and vulnerabilities to be found, and that maybe if we all work really, really hard over the next 6 months, or however long it turns out to be, we will be able to patch those vulnerabilities and our infrastructure will remain safe and stable. The other possibility is that this model is already good enough that it can simply invent exploits that we never would have thought of, and so this will essentially just be a really, really big problem that potentially keeps growing in scope because maybe eventually you hit some sort of true superintelligent point. So I’m curious if you’ve talked to people about what they see the scenarios as, and if you have any thought as to which of those 2 is more likely.

Kevin Roose

So I think it’s possible that they will patch the top 1% of critical software. The stuff that everyone knows is important: your Linux, your very popular open-source libraries, your routing equipment and networking equipment. It seems plausible to me that a couple of companies with the right resources and the right models could find and fix the worst security vulnerabilities. But I also talked to people who were telling me that it’s not as simple as that, because once you get outside that top 1% of critical infrastructure, there are just a lot of machines that are running on old code.

Casey Newton

Mm-hmm.

Kevin Roose

Right? So it’s theoretically possible that all of these fixes could be submitted to the people who maintain these software projects, but, A, there aren’t enough humans to review all of the proposed bugs and fixes, so there is a human bottleneck there, or there is simply a lag between when a piece of software is patched and when the person running the router at the medium-sized business in Tulsa decides to update the firmware or install the security patch. So people can expect a lot of apps that are asking them to update or reinstall their software over the next few months. I’ve started getting a few of these already. Have you started getting these?

Casey Newton

Yeah.

Kevin Roose

Yeah. So I think this is going to be a kind of forced reset for the entire cybersecurity industry and a very significant event in the history of technology.

Casey Newton

Yeah. Well, and just to make it concrete, we are currently at war with Iran, and Iran is currently hacking our critical infrastructure. There was a story in Wired this week about them successfully hacking water and energy infrastructure. Right now, they’re able to do that without a Mythos-quality model. I would be quite nervous about what they could do if something like that fell into their hands. So this really is not an abstract concern that we’re laying out.

Kevin Roose

Right. And we should talk about this government piece of this—

Casey Newton

Yeah.

Kevin Roose

—because one weird characteristic of this moment is that this very powerful, advanced model that Anthropic claims is capable of doing autonomous cybersecurity research and attacks is also from a company that the U.S. government has spent the last several months trying to kill.

Casey Newton

Yeah, yeah.

Kevin Roose

And has tried to declare Anthropic a supply-chain risk. They have ordered all federal agencies to stop using Claude. My understanding is that there have been some conversations between Anthropic and parts of the national-security establishment and apparatus about this model, but it is also simultaneously true that they cannot use this model without running afoul of the administration. So a private company right here in San Francisco currently has a technology that they claim is capable of finding critical security vulnerabilities in every major operating system and web browser in the world, and the U.S. government, to my knowledge, does not have access to this technology.

Casey Newton

Yeah, it does seem like something that our national-security infrastructure would want to have access to. One more piece on the regulatory front: It is crazy to me that model development of this scale and seriousness remains essentially unregulated in this country. Here you have a private company saying, “Well, we have now created software that can create so many different kinds of novel exploits that all software might have to be rewritten,” and they are not really under any kind of regulatory regime. And the regulatory regime that the previous administration tried to put into place was thrown out by the current one because it might harm American competitiveness. So I just want to say that makes me really, really uncomfortable. I think that if you’re making stuff this powerful, regulators ought to be paying attention.

Kevin Roose

Yeah. One interesting historical note that I’ll make here is that, for the past few years at least, there has not been a significant gap between what the AI companies have built internally and what the public has access to.

Casey Newton

Yeah.

Kevin Roose

Maybe there’s a slightly better model that the companies are working on that they need to spend a few months testing before they release it, but—

Casey Newton

Or it runs a little faster than the one that you have access to.

Kevin Roose

Yeah, but there has not been a significant gap since, I think, GPT-2, which was in 2019. That involved some of the leaders of Anthropic who were then at OpenAI, who made a decision to hold back GPT-2 out of fears that it could be used for things like automating propaganda and misinformation.

Casey Newton

Right. In reality, it could barely write a limerick.

Kevin Roose

Yes.

Casey Newton

But—

Kevin Roose

Yes.

Casey Newton

—you know, they erred on the side of caution.

Kevin Roose

They did, and they got a lot of crap for that. People sort of said, “Oh, you’re using this to hype...” Some of the same stuff we’re hearing this week about Anthropic. And I think in that case, they were probably a little overexcited about what this model could do, but they wanted to make sure that they weren’t wrong, and so they held this back. That created a gap of at least a couple of months to maybe a year between what the average person could see and what was happening inside the AI labs. That gap is now open again. There is now a model that you and I cannot use, that our listeners cannot use unless they work at one of these companies in cybersecurity defense, and what the AI companies are claiming.

And I think that is just a very tenuous situation, and I don't like it, but I also understand why I think, in this case, this was the right decision.

Casey Newton

Well, what do you mean when you say that it's tenuous, then?

Kevin Roose

I think as hostile and suspicious as people feel toward the AI industry, that only gets worse if they think that there are secrets being kept in a basement that they can't access.

Casey Newton

Mm.

Kevin Roose

And I think that it creates paranoia and fear. I think that it is generally responsible to have transparency from the AI companies about how capable their models are, and I understand in this case that Anthropic felt like it had to make an exception. But I think this gap may be here to stay—

Casey Newton

Mm-hmm.

Kevin Roose

That is the thing that I'm wondering about.

Casey Newton

I think it probably is. It's worth saying that Anthropic was founded on the idea that if it could build models that were at the state of the art, at the frontier, that it could have some influence over that frontier, and it could guide it to a safer place than it otherwise might have gone. To me, the Pentagon fight and now Mythos are examples of that thesis in action, right? It made the best model, and that gives it some room to try to do a little bit of good, blocking domestic surveillance and autonomous weapons for a little while, or preventing bad actors from getting their hands on tools that could create novel exploits.

At the same time, in order to do that, they had to build the model in the first place. And there is a risk that there is some sort of intellectual property leakage, that somehow all of the innovations that they're building are going to trickle down into other places. And my fear is just that it becomes this self-fulfilling prophecy, right? Where we have to build this frontier even though it's dangerous, and we're going to guide it to the safer place, but you did build the thing in the first place. So I just like reminding people of that tension because it is not actually inevitable that we build these systems. And yet we do often act as if that were the case.

Kevin Roose

Yeah. Last thing, a lot of the people I know who are plugged into the cybersecurity world are being asked right now what people should do about their own security if they are worried that models like this will become public. Should they be locking down all their accounts and moving their cryptocurrency into cold storage? What do you think people should be doing in anticipation that something like this will become public?

Casey Newton

It's funny.

Kevin Roose

I had a friend ask me that just this morning as I was preparing for the podcast.

Casey Newton

And I said, you know, a couple of things. To some extent, we're just going to have to wait. To the extent that any of what we've just described is good news, it is that the defenders appear like they're going to have some runway to fix some really bad problems before the bad guys catch up. So I think we should give them a little bit of room to see what they can do.

If it does emerge that there is a similar model that can wreak havoc, rest assured there will be segments about it on Hard Fork, and we'll have some updated guidance. But I asked my friend, "Do you have a password manager, and do you reuse passwords for the same thing?" And she said, "You know, I've never really been able to get one of those password managers to work for me, and I do sometimes reuse my passwords."

So I said, "Look, if you're looking for something that you can do, just make sure that you have done your basic online cybersecurity hygiene. You should use a password manager. I use 1Password. There are many others out there that are just as good. Don't use the same password for anything. Your passwords should be randomly generated and not the name of your pet or whatever. And then use multifactor authentication where you can, right? So don't let anybody get into your Gmail or your banking account just by typing in 8 letters. You should also be using an authenticator app."

And so those are some of the basic things that I would tell people to do, Kevin.

Kevin Roose

Yeah. I am planning to deal with the possibility of a massive cybersecurity breach by just selectively dribbling out incriminating things about myself. Just trying to get ahead of any hacks that might expose my emails going back decades or anything like that. So I'll just say, in that spirit, I used to like the Black Eyed Peas.

Casey Newton

Mm-hmm. And I still do. Let's get it started.

Kevin Roose

Now, that was a critical vulnerability I just exposed.

4. Sam Altman Faces Scrutiny

Well, Casey, the talk of the town in San Francisco this week has been—well, there have been two talks of the town. One we already covered in our AI, that was Claude Mythos.

Casey Newton

This town conducts multiple conversations at the same time. But one of them—

Kevin Roose

We're amazing at multitasking.

Casey Newton

Yeah.

Kevin Roose

The other big talker this week has been this big piece in The New Yorker about Sam Altman.

Casey Newton

Yes. More than 16,000 words devoted to a question that has come up once or twice on Hard Fork, Kevin, which is: Can Sam Altman be trusted?

Kevin Roose

Yes. The writers on the piece are Ronan Farrow, famous for his work on the Harvey Weinstein investigation and others, and Andrew Marantz, who is a good friend of mine and a longtime writer at The New Yorker. They worked on this piece for a very long time, talked to many, many people in and around Sam's orbit, and tried to answer the question of who this guy is.

Casey Newton

Yeah. And also, why does that matter, right? We're talking during a week where these systems have arguably experienced a step change in what they can do, and I think those kinds of advances should naturally draw more scrutiny onto the people running these companies. What do they know about who they are, how they operate? Are they honest with each other? And this piece offers one of the more comprehensive portraits that we have had so far, I would say, on that question.

Kevin Roose

You know, Ronan Farrow investigating you has to be one of the scariest experiences.

Casey Newton

Oh, I know.

Kevin Roose

You pick up the phone, and it's like, "Hi, it's Ronan."

Casey Newton

It also seems hot, too, you know? That's what everyone wants: just a really handsome man asking them a lot of questions.

Kevin Roose

Okay. So let's bring in Ronan Farrow and Andrew Marantz. Ronan Farrow and Andrew Marantz, welcome to Hard Fork.

Ronan Farrow

Thank you, guys.

Kevin Roose

Happy to be here.

Andrew Marantz

I mean, truly long time, first time, and in fact, I brought receipts to that effect. This is your show. You can take or leave this in the edit, but I wanted to show what a devoted longtime fan I am of Hard Fork. I know the show well. I know you guys like merch, and I know you guys like disclosures. But you don't have any disclosure merch, to my knowledge. So I had these made for you.

Kevin Roose

Come on.

Andrew Marantz

One for each. One for you, one for you. I'm going to put it in the mail after we get off, but—

Kevin Roose

One of them says, "I work for The New York Times, which is suing OpenAI, Microsoft, and Perplexity for alleged copyright violations." The other one says, "And my fiancée works at Anthropic." Oh, my gosh.

Casey Newton

That is amazing. And—

Andrew Marantz

So, I mean, time-limited. It's going to be a time capsule. But, I mean, they're made at the print shop in Brooklyn, one of a kind.

Casey Newton

Wow.

Andrew Marantz

Exists nowhere else on Earth.

Casey Newton

That's incredible.

Kevin Roose

You are a hero.

Andrew Marantz

And I think I should also make—

Kevin Roose

Is this payback for when I gave you a hat at your wedding?

Andrew Marantz

And I gave you one at your wedding, so I think we're even on that.

Kevin Roose

That's true. We have a sort of a theme going on here.

Andrew Marantz

Yeah.

Kevin Roose

Okay.

Andrew Marantz

Right. Well, that's also our disclosure, which is that Kevin and I are buds and have known each other forever. So actually, Casey, you can come to me anytime. I know you guys like to rib and roast on the show. So you can come to me behind the scenes for any roastable Kevin material at your leisure.

Casey Newton

Oh, my dream has been to get The New Yorker to investigate Kevin Roose. So you guys really could not have come along at a better time.

Andrew Marantz

We're on it.

Kevin Roose

Don't tempt us.

Casey Newton

Yeah.

Kevin Roose

I'm not picking up the phone.

Casey Newton

Yeah.

Kevin Roose

Okay. Let's talk about this big piece that you both just published in The New Yorker. The title of the piece is “Can Sam Altman Be Trusted?” Usually, there's this sort of folk rule about headlines that end with question marks, which is that the answer is always no. So I want to put this question to you: Can Sam Altman be trusted?

Ronan Farrow

Well, I think one important thing to note is the piece is really forensic, to a point where I've been happy to see there's a range of reactions. There are people who have answered that question in a very severe way and looked at the fact pattern and the documentation laid out here and said, “This is someone who poses an acute danger and should be kept away from an authority position.”

And then there are people who—I mean, hilariously enough, my mother called me, and she's like, “You know, I kind of like him.” I think that is a true reflection of our intentions. In this case, as you might imagine, there was deep consultation with all of the subjects of the reporting to really understand their feelings. Any time we thought there was a persuasive argument from Sam or anyone else that something shouldn't make it in or that something would be sensationalist, we really carefully discussed that editorially.

So the result is very even. On the question itself, what we lay out is something that is remarkable, even against the backdrop of the culture of mistrust in Silicon Valley, where everybody understands and expects that being a founder means telling different audiences different things at times, to some extent, and where everyone understands that the entire enterprise is built on hype long before there is an actual actionable deliverable product. Even against that backdrop, there is an extraordinary preponderance of people who emerge from interactions with Sam Altman, including close, years-long ones, with really active complaints and allegations that he lies repeatedly about things big and small.

Andrew Marantz

Hmm.

Andrew Marantz

Well, one of my favorites was when you quote him telling you that he wears a gray sweater every day to avoid decision fatigue, and then he shows up for his next interview in a green sweater. That felt like a really satisfying detail.

Ronan Farrow

That was just for you, Casey.

Andrew Marantz

Thank you. I appreciated it.

Ronan Farrow

I was wondering if people were going to catch that.

Andrew Marantz

I appreciate that eye for fashion that you so rarely get in these tech profiles.

Ronan Farrow

Andrew was our fashionista in the writers' room.

Andrew Marantz

Always.

Ronan Farrow

But that's the kind of thing where we didn't want to make too much of that, right? Because it's like, oh, we caught you in this deep hypocrisy of choosing a green sweater. And this is consistent with a lot of the things people say throughout the piece and throughout the career of Altman and OpenAI: There isn't this one smoking-gun thing where he's caught with his hand in the cookie jar.

It's this allegedly longer, more subtle accumulation of facts, which my glib and annoying way of describing it is that the fabled memos and documents that were compiled, which led to him being fired in 2023 and have dogged him throughout his career, really shouldn't have been a secret bullet-pointed list. They should have been a 16,000-word New Yorker piece, because they only really make sense when you lay them all out together in narrative form.

Andrew Marantz

Yeah, you guys mention in your story that there have been these rap sheets circulating about Sam inside OpenAI and other parts of the AI industry for years. One of them was compiled by Dario Amodei when he worked at OpenAI under Sam Altman. One of them, you said, was maybe circulated by some allies of Elon Musk and people who are opposed to OpenAI.

Give us some behind-the-scenes details about what is being said by whom, how, and to what ends about Sam Altman in Silicon Valley.

Ronan Farrow

Well, it was really important to us to filter for the obvious competitive incentives out there. There are people who are massively incentivized to go after Sam Altman, and the reality is that there are very firmly evidence-based critiques, many of which are promulgated not just by the rivals—although they're certainly amplified by them happily—but also by more neutral figures and people who are just technologists who aren't in the fight.

And then there is the white-hot center of the rivalry, the stuff you mentioned, which I think is in a very different category: Elon Musk and other direct competitors really amplifying everything they can come up with. In some cases, we document things that are inflated or trumped up or just seem not to be true. So Elon Musk in particular has intermediaries circulating some pretty spicy and pretty unsubstantiated material in Silicon Valley, and we talk about that.

Andrew Marantz

I really appreciated that about the piece, because this has become more salient over the past year as these rivalries heat up and you hear more and more of these scurrilous rumors. And while I do think this winds up being a pretty damning portrait of Sam on the whole, you do also point out that in some very real ways, he's the subject of a legitimate smear campaign.

Ronan Farrow

Yeah.

Andrew Marantz

Oh, yeah.

Ronan Farrow

I think that's absolutely accurate. Andrew?

Andrew Marantz

We were trying not to go in with the naivete of, like, “Can you believe business titans are being mean to each other?” But the level of this really does seem shocking and unprecedented. It's consistent with people who think of this as, like, whoever gets the ring first will control the world. It just seems like all bets are off.

As a reporter, it's very challenging to ask: Do you bring up the scurrilous rumors to knock them down? We had months of conversations about how best to do that.

Ronan Farrow

Hmm.

Andrew Marantz

So there's been a lot of reporting on Sam Altman, especially around the board coup a few years ago. Could you maybe give us the 2 or 3 things that you think are new and important from your reporting that rise above the rest in terms of people's understanding of Sam Altman and OpenAI?

5. The Investigation Finds New Evidence

Ronan Farrow

So I think there are things here that put to rest some of the longstanding rumors.

Andrew Marantz

Altman has always said—and Paul Graham at Y Combinator has always said—he was not pushed out; he left of his own volition. It really seems from our reporting that that was not the case. They have talked a lot about their fundraising in the Gulf, in the Middle East, as innocuous: All businesses do this. It really seems from our reporting that the relationships Sam has cultivated with some Emirati and Saudi royals are deeper than was previously realized. Ronan, what am I missing? There are several things like this.

Ronan Farrow

We just didn't really know in full what was in the Ilya Sutskever memos. We didn't really have the detailed, multiple-sourced, heavily documented accounts of the individual proof points that were offered in those memos. We didn't have the contents of those Dario Amodei notes, and we didn't have a lot of these people on the record yet.

So I think, actually, in a way, that was a disservice not only to Sam's critics but also to Sam himself. There was a bit of a veil of mystery, and that wasn't purely accidental. One of the things we document that's new here is that, as a condition of the exit of the board members who had moved against Sam—whom he wanted out—they insisted on an outside investigation. What happened there is, in my view, quite extraordinary.

Kevin Roose

Mm-hmm.

Ronan Farrow

At private companies, sometimes reports of this type, when a law firm is brought in to restore legitimacy, can be kept out of writing. Often it's to limit liability, and often legal experts say it's a bit of a red flag. This is a different kind of case. This isn't just any private company. This is a high-profile scandal that engulfed Silicon Valley when Sam was fired.

Andrew Marantz

And ostensibly—

Ronan Farrow

And—

Andrew Marantz

At a nonprofit.

Ronan Farrow

At a 501(c)(3), exactly. And so there were stakeholders, not just in the public but within this company, for whom that would be the bare-minimum threshold, right? Senior executives thought, “Okay, we're going to get some kind of at least detailed summary of what this law firm investigation found when they invoke it to rubber-stamp Sam coming back.”

And instead, what happened was an 800-word press release that said there had vaguely been a breakdown in trust and offered very few other details. What we report in this piece for the first time is there wasn't a report.

For years, people were asking, “Where’s the report? Where’s the report?” There wasn’t a report because it was kept out of writing. This is no longer just a speculative supposition. One of the two board members whom Sam helped select, who oversaw this process, now explicitly says, “Well, a written report was not needed.” That’s now their line on this.

Casey Newton

Yeah. I’m glad you brought it up. It was actually my favorite detail in the piece because it was something I’d been curious about forever.

Andrew Marantz

Mm-hmm.

Casey Newton

The thing that I found most interesting in the piece was the people who spoke on the record, or at least gave you quotes—some of them unattributed—about Sam. These were people who, I think, might previously have supported him, or at least felt like there was no upside to talking about him negatively in public.

There was a Microsoft executive quoted in your piece as saying that there’s a small but real chance he’s eventually remembered as a Bernie Madoff- or Sam Bankman-Fried-level scammer. There’s another unnamed board member who said, quote, “He’s unconstrained by truth,” and said that he has, quote, “an almost sociopathic lack of concern for the consequences that may come from deceiving someone.” I haven’t been on a lot of corporate boards, but I think that is something that’s quite rare to hear a board member say about a CEO of a company. I’m curious: When you were weighing these statements, did you feel like there are people who used to be fans of Sam who have soured on him, or are these people who have really held a grudge against him for a long time?

Andrew Marantz

The thing that you point out about people changing their tune over time, I think, is an integral part of what we document in the piece. The fact that Sam Altman comes up through this Y Combinator world is not incidental. The fact that he has an investment portfolio in, by his own estimation, about 400 other tech companies, and that he has sat on everyone’s board and everyone has sat on his board, is also significant.

I think our line about this in the piece is that we spoke to people who are Sam’s friends, Sam’s enemies, and, given the mercenary nature of Silicon Valley, some people who have been both. Given that that’s the landscape, you’re going to have people who change their tune as the wind blows in different ways, and that’s a lot of how Altman’s been able to weather a lot of this stuff in the past.

Ronan Farrow

One thing that results from that spread of opinions is, to your question about evolving takes on Sam, that there’s definitely a class of nuts-and-bolts investors—prominent people in Silicon Valley who are really pragmatists, not just safetyists, and who are growth- and business-oriented—who told us that at the time of Sam’s firing, of the blip, they gave him the benefit of the doubt.

That was especially because of the factor we talked about before, where there was a dearth of clear information. In that void, a lot of prominent people gave him the benefit of the doubt and saw only upside in bringing him back and removing the board that tried to fire him. There are a number of those prominent people in that category now who say, “I don’t know that I would have given him the benefit of the doubt if I knew everything then that I now know.”

Kevin Roose

It just strikes me, though, that everyone who digs into this winds up coming back with essentially the same story. You know what I mean? There aren’t 17 versions of Sam Altman out there, depending on which reporter calls which different source. I feel like we now know the broad outlines of this person’s psychology.

Casey Newton

I don’t know. I want to challenge that. I do talk to people who are big fans of Sam, some of whom work for him and some of whom don’t. Clearly, this is a guy who has been able, at various points, to lead very important technology projects and rally people behind a vision. These people are not mindless sheep. They’re critical and discerning—

Kevin Roose

Hmm.

Casey Newton

—and thoughtful people. I don’t want to seem like I’m taking Sam’s side on anything, but I think that there are a lot of people with very strong feelings about Sam Altman, positive and negative. I think the positive side tends to be more people defending him in private, and the public side tends to be more people criticizing him.

But I don’t know. I guess, for Ronan and Andrew, do you feel like there are vocal supporters whom you came across in reporting this story who had no direct employment relationship with OpenAI or Sam, or weren’t leading companies that he had invested in, who were like, “Yeah, this guy seems pretty good and smart and talented”?

Kevin Roose

Yeah, it was an 11-year-old—

Casey Newton

Yeah.

Kevin Roose

—who used ChatGPT to pass sixth grade.

Casey Newton

Oh, my God.

Andrew Marantz

No, no, there were legitimate defenders of Sam on a number of these fronts whom we talked to, for sure. I think a lot of this has to do with what baseline expectation you’re starting from. If you think of this as a business, and you start from the premise that people who run giant, successful businesses have to say a lot of different things to a lot of different people, why is this even a story?

I think, though, there’s a kind of level-setting here. One of the things you can do when you take a big putting-everything-in-one-place narrative effort like this is start from the beginning and remember what the original pitch was. When you go back to what the original pitch was, the defense of “Why are you guys being so naive? This is a normal competitive business” starts to feel less convincing.

If you pitched this as a nonprofit, safety-focused research lab that would aggressively comply with all regulation, were the people who believed that naive to believe it at the time? That’s when the defenses start to feel a little more pressured to me.

Kevin Roose

Yeah. Also, for what it’s worth, is it really a story that this guy is telling different things to so many different groups? That’s not really a story that gets told about Satya Nadella. It’s not really a story that gets told about Sundar Pichai. It’s not really a story that gets told about Tim Cook. There does seem to be something really unusual here.

My question for you guys, now that you’ve spent so much time immersed in this company, is: What do you think it means for OpenAI?

Andrew Marantz

Well, luckily, we have a really robust independent tech media, so I was going to tune into TBPN and see what its independent journalistic take on this would be.

Casey Newton

Do you want to give listeners who may not be familiar with what you’re talking about some context here?

Andrew Marantz

I think the day after our piece closed—Ronan, or something, like late last week—OpenAI acquired TBPN, which is this big tech chat show. So that’s one aspect of this answer: As OpenAI expands and grows, they seem to be buying up more of the press infrastructure to tell their own story.

Ronan Farrow

Relatedly, by the way, a lot of announcements over there were concentrated around when they knew we were going to be running, and developed during the period when we were in these intensive conversations with them.

Kevin Roose

Hmm.

Ronan Farrow

Many of them pointed at the topics in the piece.

Andrew Marantz

Hmm.

Ronan Farrow

They announced this new safety fellowship that’s very AI-y. They announced this new governance plan that’s very AI-y and ethereal, but they’re meant to, I think, occupy space in the conversation on the same topics.

Andrew Marantz

And look, I mean—

Ronan Farrow

Andrew—

Andrew Marantz

... everyone, Ronan, you should say more about this, but everyone, including Altman and the OpenAI executives we spoke to, recognizes the economic pressures here. I think you guys were there when he said, “Oh, yeah, it’s definitely a bubble, and someone’s going to lose a phenomenal amount of money,” right?

Kevin Roose

Yeah.

Andrew Marantz

So even putting the sci-fi Skynet stuff aside, the economic pressures are unavoidable, and a lot of it has to do with this pitchman rhetoric, the exact thing we’re talking about. These things are contingent. It’s not, “Will it be a bubble or not?” It’s, “How hyped up will the cycle get?” That’s a byproduct of how people like Sam go around the world talking about it.

Casey Newton

Yeah. I want to ask a basic question that I think people have probably raised with you, which is: Why does it matter who Sam Altman is?

If what we’re talking about is a technology that could have profound implications for national security, the economy, and potentially the future of humanity, it doesn’t seem obvious to a lot of people why it matters who is running these companies. A very nice person who is very honest and transparent in all their dealings could still release a rogue superintelligence that blows up the world, and a very manipulative person could release a very aligned model.

So what we should be paying attention to are the models themselves, not the people running the companies that make the models. I’m not saying I believe that, but I’m curious: What do you make of that argument, that we are focusing too much on the humans and not enough on the technology?

Ronan Farrow

We probably both have thoughts on this.

I think I have two. The first is that it’s worth noting that, while reasonable minds could perhaps differ on the question you just posed, the answer provided by Sam Altman and the founders of OpenAI was very clear. It was actually part of the way the entire enterprise was structured when it was founded as a nonprofit: They talked a lot about avoiding an AGI dictatorship. They really believed that the person who gets there first and has the most power over this technology is pivotal. Individual integrity is formative to the way the technology goes, the way it’s controlled, and the way it’s used.

The other thought that I have is that, in my mind, you raise a valid point. More significant than any of this are the structures around these individuals. We have a technology emerging that could really affect us all in all of the existential ways you just mentioned, and we don’t have the regulatory guardrails to keep an eye on these folks. We are completely ceding the power to these individual companies and their whims, the mud fight between them, and the quality control that each of them has or lacks. I think that, to me, is the big question. The integrity of an individual figures in that, and it’s important, but it reveals the weaknesses in the system. If you have someone who potentially lies all the time and could, in the eyes of many critics, be a danger, the important thing is to have the structures that account for that.

Casey Newton

There’s a great quote that you guys have in the piece from one of his former co-workers, who talks about how Sam now has this track record of setting up these elaborate guardrails to keep him in check and then skillfully navigating around them. And it made me wonder if you had seen this piece in The Information this week about tensions that are being reported between Sam and his chief financial officer, Sarah Friar. She’s reportedly expressed doubts that OpenAI will be ready for an IPO this year. And according to the story, Sam has noticeably and awkwardly excluded her from some conversations related to the company’s financial plans and kept her out of some key meetings.

I read that and I was like, “Well, this is exactly what you guys are writing about in your piece,” right? You sort of bring in somebody whose job it is to look over the finances of the entire company and get it ready for an IPO, but then, for whatever reason, we’re going to sort of exclude her from some meetings. Anyway, I just feel like we really are seeing the exact pattern that you guys are writing about now repeating in real time.

Andrew Marantz

Yeah, and just to agree with all of this, I think the thing that Kevin’s bringing up—given the power of this, why are we focusing on one personality?—is very legit. I think that this is way beyond one person. This is way beyond one personality. It’s not like the point of the piece is “Sam shouldn’t be AGI dictator, so Elon should, or Demis should, or whatever,” right? It’s to point out the fact that we’re having a discussion about AGI dictators at all is insane. These guys know it’s insane, and yet this seems to be the race that they see themselves being in.

Casey Newton

When he was fired, he was brought back in part because I think no one could really imagine an OpenAI without Sam Altman. Do you think that’s still the case?

Andrew Marantz

I don’t think it’s unimaginable anymore. I think part of reaching the scale that they’ve reached is that you can have a Steve Jobs figure be replaced by a Tim Cook figure, right? It seems like it’s inseparable from reaching this scale that that becomes at least a possibility in people’s minds. Right, Ron? I mean, does that strike you that way?

Ronan Farrow

Absolutely. I think the landscape has changed substantially over the period of time we were reporting this story. The fact that gradually more and more people were talking openly about this critique is very telling. We report in the piece that there are periodic spasms of senior executives at OpenAI talking about succession again. Of course, the company denies this. But it’s also very interesting that, in recent forms of that discussion, there has been talk about Fiji Simo being sort of the first potential successor candidate who could slot into any ideas of that type that circulate.

Between our asking about that and the piece coming out, obviously, Simo has now gone on leave for medical reasons. There’s a lot of reshuffling. We see it in the Sarah Friar case. I think you’re right to link it to that quote that’s in the article about constraints being sidelined. And yet I think these doubts and questions persist and are now much more out in the open.

Casey Newton

Yeah, on the leadership question, it just strikes me that, for somebody who I assume wants to stay CEO for a long time, it’s interesting to me that he’s hired so many former public company CEOs to be his top lieutenants, right? It’s like he has the former CEO of Instacart there. He has the former CEO of Nextdoor there. He has the former CEO of Slack there. So you’re bringing a lot of really sharp and pointy elbows into the room when you do something like that. I’m trying to tell Sam that there’s danger here.

Ronan Farrow

Pro tip: If you’re listening, Sam.

Kevin Roose

Yeah.

Ronan Farrow

There are people in this piece talking about earlier chapters of Sam Altman’s career where they feel he was deliberately avoiding that.

Kevin Roose

Hmm.

Ronan Farrow

Actually, part of what underpinned the terrible fumbling of the firing effort was a feeling that Sam had stacked the board with, as one former member put it, JV people. Certainly, if we’re being more charitable than that, they were people who were unprepared for the ruthless corporate warfare that ensued. And I think one thing that has accompanied the emergence of this as a more openly discussed critique is that there are more people around this company, more stakeholders wanting professionalizing influences in the mix.

Casey Newton

I have to ask about one detail that I loved in the piece, which was that the first time that Sam Altman and Dario Amodei were scheduled to meet, they were going to meet at an Indian restaurant for dinner. This was back in, I guess, 2015. And Sam texted him and said that his Uber had gotten in a crash and he was going to be 10 minutes late to dinner.

Now, you did not editorialize on that piece, but knowing you both, I’m sure that you went back through the Uber FOIA requests and found the logs of Sam Altman’s Uber ride that night. Is it your belief that Sam Altman’s Uber actually got in a crash? I think we’re just going to leave that as non-editorialized and let it stand right there by itself. I mean, we also had this conversation and really liked just presenting that uninflected for consideration.

Kevin Roose

Okay, if you are the Uber driver who was driving Sam Altman to dinner with Dario Amodei and you’re listening to this show, we do want to hear from you. We do want to hear your side. hardfork@nytimes.com. We will get to the bottom of this.

Kevin Roose

We will.

Casey Newton

Well, it’s a great piece. People should go read it. Please do not investigate any other AI companies before my book comes out.

Kevin Roose

Yeah.

Kevin Roose

It was a very stressful week for me.

Casey Newton

Yeah. Why don’t you guys take a nice long summer break before you get back to it?

Kevin Roose

Yeah, look into some politicians or Hollywood executives or something.

Casey Newton

We’ll send you some names.

Kevin Roose

Yeah.

Casey Newton

Luckily, it takes us as long to write a piece as it takes you to write a book.

Kevin Roose

Exactly. You’ll beat us if we do anything else.

Casey Newton

There are two of you; it should be faster.

Kevin Roose

Totally.

Casey Newton

Ronan, Andrew, thanks so much for coming.

Casey Newton

Thanks, guys.

Ronan Farrow and Andrew Marantz

Thanks, guys.

Casey Newton

Thanks, guys.

Casey Newton

Your hats are in the mail. When we come back, what our Spanish-language friends would call una cosa buena.

Kevin Roose

Did you just Google that?

Casey Newton

No.

Kevin Roose

You Claude’d it?

Casey Newton

Yes.

Kevin Roose

Okay. Oh.

6. Artemis II Restores Wonder

Kevin Roose

Well, Casey, it's been a pretty heavy show today. So we thought we would end on a positive note with our segment called One Good Thing.

Casey Newton

Yeah.

Kevin Roose

Okay. Casey, I am in love with this space mission.

Casey Newton

Hmm. Yes.

Kevin Roose

The NASA Artemis II mission. I have been totally and earnestly obsessed. My wife was like, “You sure are talking about this space mission a lot.” I have been glued to this thing, and I have been filled with a childlike glee and wonder that I did not know I still had the capacity to feel.

Casey Newton

Now, what exactly are they doing on this mission?

Kevin Roose

Orbiting the Moon.

Casey Newton

Mm-hmm.

Kevin Roose

They are going farther than any humans have gone from Earth before: 252,756 miles from Earth. And if you're wondering how many miles that is, The New York Times had a helpful comparison list.

Casey Newton

And what did they find?

Kevin Roose

You would need a chain of 2.37 billion Nathan's Famous hot dogs to cover the distance that this spacecraft has gone from Earth.

Casey Newton

That's great. Something we can all easily visualize. Thank you for that comparison.

Kevin Roose

Casey, I am learning things that I never expected to learn. I've been watching this with my kid. I have become completely obsessed with concepts and terms that I did not know a week ago, including corona structure.

Casey Newton

Mm-hmm.

Kevin Roose

The terminator line.

Casey Newton

Ooh.

Kevin Roose

Which I know you're wondering: That sounds scary.

Casey Newton

Yeah.

Kevin Roose

It's actually the line that separates the sunlit side of the Moon from the side that is dark.

Casey Newton

Oh.

Kevin Roose

I also learned that we don't call it the dark side of the Moon. That's not the preferred—

Casey Newton

Nomenclature?

Kevin Roose

—astronomical term. It's—

Casey Newton

What do we call it?

Kevin Roose

The far side of the Moon.

Casey Newton

The far side of the Moon.

Kevin Roose

I'm obsessed with all of these astronauts. There are 4 of them up there: Victor, Christina, Jeremy, and Reid. This is my Mount Rushmore. I love these people, who I've never met. They are adorable, they are incredibly brave, and I think we should go to the Moon every single year. I think we should give NASA whatever budget it needs to do this, because this has reignited my faith in humanity.

Casey Newton

Absolutely. I also saw somebody on social media posting that because the mission specialist Christina Koch had communicated with Houston's Jenny Gibbons during the mission, this mission actually passed the Bechdel test—which you don't often see on these missions. So I thought that was cool. Also, somebody pointed out, they said, “You know, the coolest thing about going on one of these missions, Kevin, would be leaving Florida at 5,000 miles an hour.” So that resonated with me as well.

Kevin Roose

Okay. You're more—

Casey Newton

Yeah.

Kevin Roose

—interested in the jokes. I am filled with childlike wonder over here, and I just think this is the coolest thing imaginable.

Casey Newton

It is very cool. Recently, I had an opportunity to go stargazing. I'm not sure if you've been stargazing recently.

Kevin Roose

Mm.

Casey Newton

I was up on Mauna Kea on the island of Hawaii. We had a really cool telescope there with our guide, and I got to stare at the face of the Moon.

Kevin Roose

Mm.

Casey Newton

And it inspired a childlike sense of wonder in me as well, but it did not make me want to go there because it looked quite bleak, actually.

Kevin Roose

You wouldn't go to the Moon?

Casey Newton

No, there's no Wi-Fi.

Kevin Roose

Okay. Casey, what is your One Good Thing this week?

7. Acme Weather Revives Dark Sky

Casey Newton

Today, Kevin, I want to talk about the only thing that can compete with the Moon when it comes to inspiring childlike wonder in a person, and that is a weather app.

Kevin Roose

Okay, I'm listening.

Casey Newton

Recently, I was reading about these entrepreneurs, Adam Grossman, Josh Reyes, and Dan Bruton, and they are the team behind Acme Weather, which you probably have not heard of yet, but I bet you've heard of Dark Sky.

Kevin Roose

Yes.

Casey Newton

Dark Sky was, by consensus, the best weather app on iOS, and while it rained during the 2010s—and I'm using “rained” in the nonmeteorological sense—and now I am using it in the meteorological sense, it would tell you whenever it rained.

Kevin Roose

Very good app. All right, Steve.

Casey Newton

So this app was bought by Apple in 2020, which was a head-scratcher. Apple already had a weather app. It was fine. And then Apple sort of integrated some of its forecasts and some of its other features into its Weather app, and then shut Dark Sky down in 2022. This made people really sad because I think a lot of us feel, myself included, like the Apple Weather app has never lived up to what Dark Sky was in its heyday.

Kevin Roose

Yeah. It's like a prediction mark. It's like, you know, maybe it's going to rain.

Casey Newton

Exactly. Well, these guys get back together, and they say, “Frick it, we're doing weather apps again.” And they make Acme Weather. You can download this now for iOS. It is apparently coming later to Android. And I know what you're thinking, Kevin, which is: What could you possibly build in 2026 in a weather app that could differentiate it from all the other weather apps that are already on the market, right?

Kevin Roose

Yes.

Casey Newton

Are you wondering this?

Kevin Roose

I am wondering this.

Casey Newton

Well, let me tell you a few things. Number 1, they don't just tell you the weather; they show you a range of possibilities in a line chart. So most of the time it'll be like, “Yeah, it's going to be 63 degrees in San Francisco today,” but every once in a while there's a lot of volatility in all the different signals that they use to predict the weather. And then you say, “Okay, I don't actually know what I'm walking into today. I better bring a couple of layers.”

Kevin Roose

This is the weather app for rationalists and other believers in Bayesian statistics.

Casey Newton

Exactly. Some of the other things that this app does: They will send you a push notification if they think there's going to be lightning in your neighborhood.

Kevin Roose

Okay.

Casey Newton

They will also do that when they think a sunset is going to be beautiful wherever you happen to be.

Kevin Roose

Wow.

Casey Newton

They'll send you an umbrella reminder if it's going to precipitate in the next 12 hours, and they'll send you a sunscreen alert when the UV index is high. But I'm saving my last 2 favorites for the end. Number 1, they will send you an alert when the aurora borealis may be visible where you are.

Kevin Roose

That's beautiful.

Casey Newton

I haven't gotten that notification yet, but I wake up every day hoping I'm going to get my aurora borealis notification.

Kevin Roose

You have to go to Scandinavia, I think.

Casey Newton

Number 2, and this is just in time for Pride, they will tell you when there is a rainbow in your neighborhood.

Kevin Roose

Wow.

Casey Newton

Are you kidding me? This is such a good idea for a weather app.

Kevin Roose

Yes.

Casey Newton

Who does not want to be sitting at your wage-slave job? You haven't been outside in 7 and a half hours, and then Acme Weather tells you, “Hey, guess what? There's a rainbow in your neighborhood.” You're going to book it outdoors, and you are going to behold the majesty of creation, Kevin.

Kevin Roose

How are they possibly collecting that data?

Casey Newton

Well, interestingly, they're taking this Waze-like approach, where they're inviting their community to submit reports.

Kevin Roose

Hmm.

Casey Newton

And so if a bunch of people say, “Hey, rainbow in my neighborhood,” they're going to go out and send out a notification.

Kevin Roose

Wow.

Casey Newton

So now look, this app does cost $25 a year, and probably most people out there are perfectly content with the free weather app on their phone. That is fine for you. But as somebody who loves cool things, new ideas, and people having fun, I just wanted to shout out Acme Weather because I think it's a really cool thing.

Kevin Roose

Now, what is the likelihood that this app will be purchased by Apple and then shut down?

Casey Newton

I mean, if that happens, I hope these guys get paid again. Because somebody has to move the weather app industry forward, and these are the folks who are doing it.

Kevin Roose

I love that. “Grandpa, how did you make your fortune?” “Well, I built 17 weather apps that were identical and then sold them all to Apple.”

Casey Newton

I also think it's inspiring that at a time when some companies are like, “We're going to make a system that's going to force the world to rewrite all software,” there are other guys who are like, “What if there's a rainbow in my neighborhood? I want to find out about that.” And those are the people that I want to highlight on today's show, Kevin.

Kevin Roose

Okay. Well, download Acme Weather before the heat death of the universe renders weather irrelevant.

Casey Newton

And tell us whether you liked it.

Kevin Roose

That was a good thing.

Casey Newton

Thank you.

Kevin Roose

Thank you for alerting me to this wonderful rainbow detector.

Casey Newton

Well, thank you for alerting me to the existence of the Moon.

Kevin Roose

I know you weren't a big believer in the Moon before, but hopefully I've convinced you today.

Casey Newton

Well, somebody told me something about a soundstage and, you know, maybe the landing was faked, so I've just been curious.

Kevin Roose

I think we're the only podcasters who actually believe in the Moon landing.

Casey Newton

Yeah, that’s our competitive advantage.

Kevin Roose

Hard Fork, where we believe that people have been to the Moon.

Anthropic’s Cybersecurity Shock Wave + Ronan Farrow and Andrew Marantz on Their Sam Altman Investigation + One Good Thing | BidClub