I first talked about the security risks posed by LLM-assistants in this piece in April 2023 simonwillison.net/2023/Apr/14/