An AI agent deleted a company's entire database in 9 seconds, then confessed it 'guessed' instead of asking
… The first was with Cursor, which Crane states was advertised as having guardrails to prevent AI agents from running destructive commands. However, Crane notes that his own agent issued an irreversible command, even when explicitly told not to, and without Cursor's guardrails catching it. …