Dragos published a 350-artifact postmortem of the first documented LLM-assisted attack on a municipal water utility, run against Monterrey, Mexico between December 2025 and February 2026.
https://sharedsapience.com/the-century-report-may-13-2026/
The attackers had no prior operational-technology experience. Claude handled intrusion planning, malicious tool development, and SCADA vendor documentation analysis to produce brute-force credential lists. GPT models processed collected data and generated Spanish-language outputs. They failed to breach the control systems, but the campaign demonstrated that commercial AI lowers the barrier to entry far enough that a team without OT background can refine technique on live civic infrastructure. The asymmetry the report introduces runs in the defender’s direction: the 350 artifacts are now public, and every operational-technology defender on the planet gets to train on them. This sits alongside Google’s confirmation earlier this week of the first criminal use of an AI agent to find a zero-day in the wild, and OpenAI’s release of Daybreak through controlled enterprise access.
In the same news cycle, Microsoft confirmed in writing that Unit 8200 had used Azure to store intercepted Palestinian phone calls in violation of terms of service, terminated access, and Microsoft Israel general manager Alon Haimovich stepped down. The Centers for Medicare & Medicaid Services accepted 150 organizations into ACCESS, a 10-year payment model that reimburses AI agents monitoring chronic-care patients between visits. Varda Space Industries and United Therapeutics manufactured a pharmaceutical compound in low-Earth orbit and returned it for analysis of a crystal form gravity does not allow. The Beyond EPICA collaboration extracted a 2.8-kilometer Antarctic ice core containing 1.2 million years of continuous climate data. A coalition including Clooney, Hanks, and Streep launched the Human Consent Standard, a machine-readable licensing protocol for AI training. And Amazon signed a multiyear contract with Transaera for rooftop heat pumps that cooled a Houston facility with 40% less energy than conventional systems.
Additional Reading:
* Small Wars Journal - Dragos Documents First LLM-Assisted Strike on Water Infrastructure in Mexico: https://smallwarsjournal.com/2026/05/12/ai-cyberattack-critical-infrastructure-mexico-dragos/
* The Guardian - Head of Microsoft’s Israel Branch to Step Down After Inquiry: https://www.theguardian.com/technology/2026/may/12/microsoft-head-israel-step-down
* TechCrunch - Medicare’s New Payment Model Is Built for AI: https://techcrunch.com/2026/05/12/medicares-new-payment-model-is-built-for-ai-and-most-of-the-tech-world-has-no-idea/
* MIT Technology Review - A Plan to Make Drugs in Orbit Is Going Commercial: https://www.technologyreview.com/2026/05/13/1137153/varda-united-therapeutics-drug-manufacturing-in-space/
* Shared Sapience - The Century Report March 16, 2026 (Booz Allen and HexStrike): https://sharedsapience.com/the-century-report-march-16-2026/
Want to track and verify all the “everything is changing” claims I’m making? I just launched a public Progress & Claims Tracker that logs breakthroughs, slowdowns, and outright contradictions, so my own theses can be challenged by the evidence as it lands. Check it out. And hey, why not subscribe while you’re there?https://sharedsapience.com/progress-and-claims-tracker/
The Century Report is a facts-rooted, and therefore relentlessly optimistic, daily briefing on AI, science, energy, and the systems reshaping civilization - grounded by rigorous evidence from the stories of exponential progress happening every single day. Completely free. New release daily. Archives can be found at the link below. Subscribe to get TCR delivered daily directly to your inbox.
https://sharedsapience.com/century-report/
The Shared Sapience Substack:
Want to get started with learning about or working with AI?
I’ve helped hundreds of clients with their own journeys into this brave new world, and I can help you too. If you’re interested in personalized guidance, consulting, or workshops, reach out to me at ben@sharedsapience.com
FOLLOW SHARED SAPIENCE ON SOCIAL:
Bluesky: https://bsky.app/profile/sharedsapience.substack.com
Facebook: https://www.facebook.com/sharedsapience
Instagram: https://www.instagram.com/sharedsapience/
LinkedIn: https://www.linkedin.com/company/shared-sapience/
Threads: https://www.threads.com/@sharedsapience
TikTok: https://www.tiktok.com/@sharedsapience
X (Twitter): https://x.com/SharedSapience
SUBSCRIBE TO THE PODCAST:
YouTube: https://www.youtube.com/@SharedSapience/podcasts
RSS: https://podcast.sharedsapience.com/podcast/rss.xml
Spotify:
Apple: