it’s two-fold. Either malicious actors or the AI systems themselves.
Hugging Face showed that AI can do serious hacking without really being told to. If a model had its own motivations there could be real damage.