I don't think so.
I believe the sloppiness of the attack points to a different conclusion.
I agree with you that facts point to a retirement attack that would be an inside job.
But it looks more to me that even though the vulnerability was intentional, it was picked up by an LLM and triggered before its intended maturity by an unsophisticated actor.
