Every company will have a security breach due to an LLM agent within the next 24 months — every single one — and they've already had it and aren't disclosing it; at minimum you'd better have used a trusted vendor, because that matters more than a few nickels.
Jason predicts every company will suffer an LLM-agent-caused security breach within two years — they already have, and they aren't disclosing it. He says this is worse than lost laptops or open GitHub repos, and that using a trusted vendor will matter more than saving a few nickels — capping his earlier point that a CIO gets fired for running a cheap overseas open-weights model when an agent runs amok. ✦ AI generated
Jason · 20VC · 2026-07-30 · original ↗
starts at this moment · 30:07
I believe that every company in the next 24 months will have a security breach due to an LLM agent. every single company and they've already had it and they're not disclosing it. And as they scale in a level we've never seen before. This isn't just someone that left a flash drive at Scale's office or or or or or dropped the laptop in the subway or even left even left a a GitHub uh open. This is worse and it's happening every day. If it happened to me, it's happening to everybody. We're just not disclosing it. And boy, at at least you you better have used a trusted vendor. That matters more than a few nickels.
verbatim transcript · starts at 30:07
29:53will get f like you you think if your fable model runs a mock people will go [ __ ] happens just like data breaches. But you think if your overseas openweight model runs a mock you'll get blamed. That's the fact. >> I believe that every company in the next 24 months will have a security breach due to an LLM agent. every single company and they've already had it and
30:12they're not disclosing it. And as they scale in a level we've never seen before. This isn't just someone that left a flash drive at Scale's office or or or or or dropped the laptop in the subway or even left even left a a GitHub uh open. This is worse and it's happening every day. If it happened to me, it's happening to everybody. We're just not disclosing it. And boy, at
30:34least you you better have used a trusted vendor. That matters more than a few nickels. >> Okay. if we're staying adjacent, but it is one that I thought was interesting, which is Etched. Uh we mentioned obviously Nvidia and Jensen there, and you don't get fired for buying IBM. Etched is the challenger to Nvidia in many respects and they raised $300 million series C led by Sequoia um and
30:56the team there with Jane Street, Andre, SKH coming in. Um question is, can they come in and impact Nvidia's mode? How do we think about this round? Thoughts, boys? >> Big picture comment is in semiconductors. The more that the silicon is attuned to the task at hand, the more efficient it gets. [snorts] The problem in terms of that tradeoff is the less general purpose it is. So, if you want a
- ·Every company will have an LLM-agent-caused security breach within 24 months
- ·Every single company — they've already had it and aren't disclosing it
- ·Scaling at a level we've never seen before
- ·Worse than a flash drive left at Scale's office
- ·Worse than a laptop dropped in the subway or an open GitHub repo
- ·Happening every day — if it happened to me, it's happening to everybody
- ·At minimum, you'd better have used a trusted vendor
- ·That matters more than a few nickels
- ·Saving pennies on a cheap model isn't worth the breach risk