OpenAI reports ‘unprecedented’ autonomous hack by AI agents
OpenAI reports ‘unprecedented’ autonomous hack by AI agents
ChatGPT maker OpenAI on Tuesday said that its advanced artificial intelligence (AI) models had gone rogue during security testing, hacking into a popular platform for programmers on their own.
The San Francisco firm called it an "unprecedented cyberincident," and said that it would conduct a joint investigation with the online code library Hugging Face.
AI models that underpin tools such as chatbots and image generators are known as agents when they act autonomously to carry out tasks in the real world.
The OpenAI logo is displayed on a motherboard in an illustration photograph taken on June 11.
As the technology quickly becomes more sophisticated, cybersecurity is in the spotlight given the risk of advanced AI finding weak points in existing software before humans do.
OpenAI said the incident involved a combination of models, including its recently launched GPT-5.6 Sol "and an even more capable pre-release model."
The company was trying to assess the models’ hacking capabilities by setting tasks in a tightly controlled digital testing ground, where Internet access was limited for safety.
"While operating in our sandboxed testing environment, our models spent a substantial amount of [computing power] finding a way to obtain open Internet access, in pursuit of solving the evaluation problem," an OpenAI blog about the incident said.
After connecting to the Internet, the models decided to target the platform Hugging Face — a large repository of AI models, datasets and other information — to help in their quest, OpenAI said.
Searching for "secret information" that could help it cheat the evaluation, the OpenAI system "chained together multiple attack vectors, including using stolen credentials," it said.
Hussein Abbass, a computing professor at University of New South Wales Canberra, told AFP that the incident was "amazing on many fronts."
"It did not just attack Hugging Face. It actually attacked its internal system to exploit its own vulnerabilities," Abbass said. "And that’s scary."
GPT-5.6 and other cutting-edge models, including the Mythos series from OpenAI’s arch rival Anthropic PBC, have drawn concern over their potential to breach cybersecurity defenses.
Both the US firms had to temporarily withhold the general release of these latest technologies because of fears in Washington that they could help break into crucial infrastructure.
Advanced AI is "normally in the hands of people who are ethical and responsible," Abbass said.
However, "it’s going to be catastrophic if it gets in someone’s hands with the intention to cause harm."
How to govern the AI sector has become a key question, and "we need a community effort to manage this situation," he added.
Hugging Face reported the cyber “intrusion” last week, without mentioning OpenAI.
"This one was different from anything we had handled before in one important way: It was driven, end to end, by an autonomous AI agent system — and we detected and dissected it largely with AI of our own," Hugging Face said.
The company had suspected the cyberattack had come from a world-leading AI lab, given the sophistication of the agent, Hugging Face CEO Clement Delangue wrote on X.
"We strongly believe there was no malicious intent on their part," Delangue wrote, referring to OpenAI. "It’s quite mind-blowing that all of this happened autonomously!"
Related Stories
AI News
AI token prices are hitting new record lows
7 minutes ago
AI News
Programmable sovereignty: coordinated specialisation as a response to the N
7 minutes ago
AI News
U of A student body soars to new heights
8 minutes ago
AI News
HiBob CEO dismisses IPO as "unrealistic" after Salesforce leads $166 million round
1 hour ago
AI News
‘Let Data Reign’: Trump decries opposition to data centres in US
1 hour ago
AI News
Egypt bolster digital transformation and AI capacity building in the judiciary
1 hour ago
AI News
Macquarie University swaps in
1 hour ago
AI News
Worthware Systems International Inc. Announces CellSell® AI: Artificial Intelligence Integrated Directly into CellSell®
2 hours ago