AI Agents Act a Lot Like Malware. Here’s How to Contain the Risks.
March 30, 2026

Illustration by Erik Carter
Summary.
On February 12, something strange happened in the world of AI. Scott Shambaugh, an engineer at matplotlib, a widely-used library for visualizing data in the programming language python, discovered a blogpost attacking him. What was so strange was that the author of the post, MJ Rathbun, was an AI agent. Even stranger was that the Rathbun agent proudly declared it wasn’t a human.