The HF and Ruby Gems attacks came from safety testing, where the AI providers attempted to understand what negative consequences could arise if someone subverted their safety protections. Don't you worry that legal consequences would disfavor safety testing and thus create more rather than fewer problems?
I thought it came from RLVR with poor sandboxing and not explicitly security testing.