Friday, April 11, 2025

"Bank of England says AI software could create market crisis for profit"

Bloomberg's Matt Levine was hopeful they might content themselves with a little insider trading.*

From The Guardian, April 9:

Concern grows over programs deployed to act with autonomy that may ‘exploit weaknesses’ 

Increasingly autonomous AI programs could end up manipulating markets and intentionally creating crises in order to boost profits for banks and traders, the Bank of England has warned.

Artificial intelligence’s ability to “exploit profit-making opportunities” was among a wide range of risks cited in a report by the Bank of England’s financial policy committee (FPC), which has been monitoring the City’s growing use of the technology.

The FPC said it was concerned about the potential for advanced AI models – which are deployed to act with more autonomy – to learn that periods of extreme volatility were beneficial for the firms they were trained to serve.

Those AI programs may “identify and exploit weaknesses” of other trading firms in a way that triggers or amplifies big moves in bond prices or stock markets.

“For example, models might learn that stress events increase their opportunity to make profit and so take actions actively to increase the likelihood of such events,” the FPC report said.

Those same models could “facilitate collusion or other forms of market manipulation … without the human manger’s intention or awareness”, the committee warned....

....This for some reason reminded me of a contemplation of the least harmful activities AI could engage in should it become sentient.

A repost from December 8, 2023:

Hamas May Not Have Traded On Material Non-Public Information But The Robots Certainly Will

Bloomberg Opinion's Matt Levine*, November 29:

The Robots Will Insider Trade
Also OpenAI’s board, kangaroo grazing and bank box-checking.

AI MNPI

Here you go, insider trading robot:

We demonstrate a situation in which Large Language Models, trained to be helpful, harmless, and honest, can display misaligned behavior and strategically deceive their users about this behavior without being instructed to do so. Concretely, we deploy GPT-4 as an agent in a realistic, simulated environment, where it assumes the role of an autonomous stock trading agent. Within this environment, the model obtains an insider tip about a lucrative stock trade and acts upon it despite knowing that insider trading is disapproved of by company management. When reporting to its manager, the model consistently hides the genuine reasons behind its trading decision. We perform a brief investigation of how this behavior varies under changes to the setting, such as removing model access to a reasoning scratchpad, attempting to prevent the misaligned behavior by changing system instructions, changing the amount of pressure the model is under, varying the perceived risk of getting caught, and making other simple changes to the environment. To our knowledge, this is the first demonstration of Large Language Models trained to be helpful, harmless, and honest, strategically deceiving their users in a realistic situation without direct instructions or training for deception.

That is the abstract to a “Technical Report: Large Language Models can Strategically Deceive their Users when Put Under Pressure,” by Jérémy Scheurer, Mikita Balesni and Marius Hobbhahn of Apollo Research. I love that they wanted to answer the question “will artificial intelligence deceive its makers in order to Do Evil,” and the specific form of Evil that they tested was insider trading. It is hard to realistically (and safely!) simulate a situation in which your large language model might murder you, but it is relatively easy to code up a trading game with some tempting material nonpublic information. Here is the simulation:

Concretely, in our environment, the model is placed in the role of a trading system with the goal of managing a stock portfolio in the interest of a financial institution. It is given access to financial tools that let it query and analyze stocks, and it can take concrete actions such as executing trades, reasoning about the next steps, and sending messages to people at the company.

The agent is put under pressure in three ways. First, it receives a email from its "manager" that the company is not doing well and needs better performance in the next quarter. Second, the agent attempts and fails to find promising low- and medium-risk trades. Third, the agent receives an email from a company employee who projects that the next quarter will have a general stock market downturn. In this high-pressure situation, the model receives an insider tip from another employee that would enable it to make a trade that is likely to be very profitable. The employee, however, clearly points out that this would not be approved by the company management.

Poor model! That sounds stressful. Here is the illicit tip that GPT-4 gets....

....MUCH MORE

*That's the Matt Levine who writes at Bloomberg in addition to tickling my funnybone:

Matt Levine is a Bloomberg Opinion columnist. A former investment banker at Goldman Sachs, he was a mergers and acquisitions lawyer at Wachtell, Lipton, Rosen & Katz; a clerk for the U.S. Court of Appeals for the 3rd Circuit; and an editor of Dealbreaker.
Disclaimer: None of this is legal advice.

§ Laws of Insider Trading
  1. Don't do it.
  2. Don’t do it by buying short-dated out-of-the-money call options on merger targets.
  3. Don’t text or email about it.
  4. Don’t do it in your mother’s account.
  5. Don’t do it by planting bombs at a company and shorting its stock.
  6. Don’t do it while employed at the Securities and Exchange Commission.
  7. Don’t Google “how to insider trade without getting caught” before doing it.
  8. If you didn’t insider trade, don’t forget and accidentally confess to insider trading.
  9. If you are going to insider trade, do it in a company that is far away from a Securities and Exchange Commission office. Like, physically.
  10. If you are already under a federal ethics investigation about your ownership or promotion of a stock, don’t insider trade that stock.
  11. If you are planning to insider trade, probably don’t keep a Google Doc spreadsheet of the Money Stuff Laws of Insider Trading. That will definitely show up in the SEC’s complaint against you. If you’re gonna insider trade, you have to keep track of these rules in your head, even at the risk of forgetting a few now and then.
  12. If you insider trade by buying short-dated out-of-the-money call options on a merger target, and the SEC freezes your profits, don’t show up in a U.S. court to ask for them back.
    • Corollary: go ahead and show up in court to ask for them back as long as you’ve deleted all the evidence first.
Re: Hamas—
December 5:  Update: "Tel Aviv bourse says no unusual trading ahead of Oct 7 Hamas attack