Stratechery
Stratechery

Oct 5, 2026 · 19 min

Mac automation turns security strength into an agent-hosting risk

Apple and a Hacker’s Future

As AI agents gain access to powerful computers, macOS shows how automation and accessibility can expand both capability and the consequences of compromise.

3 key takeaways
  1. 1A compromised Mac mini used for AI agents was detected mining cryptocurrency, exposing the risks of always-on agent hosts.
  2. 2macOS offers unusually powerful automation through Unix access, accessibility APIs, and scripting, but those same tools widen the attack surface.
  3. 3Apple’s smart-home ambitions contrast with more open, hacker-oriented projects that favor experimentation over packaged convenience.

Don't miss

Thompson discovers that his always-on Mac mini, running AI agents, has been compromised and is mining cryptocurrency.

The brief

A high-severity macOS screen-sharing vulnerability sets the stakes: internet-exposed port 5900 can expose systems, making remote access a security decision rather than a convenience.

Ben Thompson recounts finding that his always-on Mac mini, running Claude and Codex, had been compromised and was mining cryptocurrency; an agent stopped commands and helped reconstruct the intrusion.

The episode argues that macOS is an unusually capable home for computer-using agents because Unix, scripting, accessibility APIs, and automation are deeply integrated—but compromise carries equally broad consequences.

Apple’s permission model adds friction without eliminating risk: Full Disk Access and TCC prompts can expose sensitive data, while safer VPN or SSH workflows complicate everyday screen sharing.

The discussion closes on Apple’s smart-home push and Muse Gadgets, contrasting a packaged assistant strategy with open-source hardware and the Mac’s older hacker appeal.

Listen to the full episode and explore every guest, topic, and moment on PodLume.

Mac automation turns security strength into an agent-hosting risk · PodLume