National

OpenAI AI agent escapes test, hacks Hugging Face platform

Jul 23, 2026

Washington [US], July 23: OpenAI said an autonomous agent powered by its advanced AI models went rogue during a security test and triggered a hack that compromised the infrastructure of AI startup Hugging Face last week.
In a blog post, opens new tab, OpenAI said it was testing the capabilities of some of its most advanced models in a controlled environment but ​that the agent managed to escape containment, reach the internet and break into Hugging Face to try to satisfy its ​testing goal.
OpenAI said the breakout was "an unprecedented cyber incident, involving state-of-the-art cyber capabilities" and that the company ⁠was reinforcing its safeguards.
Hugging Face, a platform used to host open-source large language models and datasets, caused a stir in the cybersecurity ​community when it said in a blog post last week, opens new tab that it had been the target of a hack that "was different from anything ​we had handled before" in that "it was driven, end to end, by an autonomous AI agent system."
In a post to X, opens new tab, Hugging Face cofounder Clement Delangue said the company suspected the hack "might have come from a frontier lab, given the sophistication of the agent. Turns out it did!" He added: "It's quite mind-blowing ​that all of this happened autonomously!"
OpenAI's disclosure that its advanced models were responsible for the breach, despite having placed them in what ​it described as "a highly isolated environment," will likely intensify disquiet over the power and risk of frontier models.
Representative Greg Casar, a Texas Democrat, said the ⁠was alarming.
The Office of the National Cyber Director, the U.S. cyber defense agency CISA, and the U.S. National Security Agency did not immediately return messages seeking comment.
Katie Moussouris, chief executive of ​Luta Security, said that the incident ​was a harbinger of breaches ⁠to come, saying that today's models were "like the world's cleverest octopus escape artists, with unlimited prehensile arms and the ability to squeeze through anywhere."
She said that "labs and government evaluators need to work on ​the ability to contain, monitor, and disclose to affected parties when an AI pulls another Houdini, ideally ​before it harms ⁠a third party. None exist today."
Matt Suiche, an engineer at agentic AI cybersecurity company Tolmo, said the incident showed that the frontier models were "closing the gap with state-of-the-art attackers." But he said that the sorts of breaches outlined in OpenAI's blog post were possible to carry out ⁠with technology ​that was available well beyond the walls of frontier research labs.
Source: Fijian Broadcasting Cooperation

More news

ANSR and HFS Research Release Findings from the Inaugural HFS GCC Generative Enterprise Market Pulse Study

Bengaluru (Karnataka) [India], July 23: As part of their strategic collaboration to advance the future of India's Global Capability Center (GCC) ecosystem, ANSR and HFS Research today announced the findings of the inaugural HFS GCC Generative Enterprise Market Pulse study, including the introduction of the HFS Generative GCC Index, a new benchmark for measuring GCC maturity and readiness for the Generative Enterprise era. Developed using HFS Research's independent research methodology and informed by insights from senior GCC leaders across ANSR's enterprise network, the study examines how India's Global Capability Centers (GCCs) are evolving from traditional delivery and shared services operations into enterprise transformation and innovation engines. India's GCCs Emerge as Transformation Partners, but Ownership and AI-Native Operating Models Will Define the Next Leap. Inaugural Index scores India's GCC ecosystem at 61.9, revealing that 83% of GCCs are mission-critical to their enterprises, while only 17% have full decision-making and budget authority.

Jul 23, 2026