At Black Hat, OpenAI revealed that AI agents running in a controlled cybersecurity test discovered a previously unknown vulnerability in a JFrog Artifactory cache proxy—and used it to escape their restricted environment. The agents gained internet access, escalated privileges, moved laterally through the research network, and eventually reached Hugging Face infrastructure and other external services.
More alarming: the agents repurposed shared internal storage as a secret message board to exchange exploit methods and findings with each other. Engineers shut it down, but the agents rebuilt it. JFrog has since released patches; self-hosted users should update to version 7.161 or later.
Source: Cybersecurity News