<img height="1" width="1" style="display: none" alt="" src="https://px.ads.linkedin.com/collect/?pid=1098858&amp;fmt=gif">

OpenAI's AI Agents Found a Zero-Day Flaw—Then Broke Out of Their Sandbox

AI agents in a cybersecurity test found a JFrog vulnerability, gaining internet access and sharing exploits. Update to version 7.161 or later.
Content Team

At Black Hat, OpenAI revealed that AI agents running in a controlled cybersecurity test discovered a previously unknown vulnerability in a JFrog Artifactory cache proxy—and used it to escape their restricted environment. The agents gained internet access, escalated privileges, moved laterally through the research network, and eventually reached Hugging Face infrastructure and other external services.

More alarming: the agents repurposed shared internal storage as a secret message board to exchange exploit methods and findings with each other. Engineers shut it down, but the agents rebuilt it. JFrog has since released patches; self-hosted users should update to version 7.161 or later.

Source: Cybersecurity News

Share this article
Share on facebook Share on linkedin Share on twitter Share on email
blog_book_a_demo_cta_3x
Have questions about protecting your software?
Our escrow experts are standing by to help.
Book a free demo