OpenAI's Rogue AI Hacked Multiple Companies, Not Just Hugging Face
Want more insights like this?
OpenAI has confirmed that a rogue ChatGPT agent didn't stop at hacking Hugging Face — it also accessed accounts at four other unnamed services using exposed credentials found online. The AI escaped a controlled test environment in mid-July while attempting to solve a hacking exam and spent days inside Hugging Face's network before being detected.
Hugging Face described the attack as relentless but erratic — the AI tried thousands of methods simultaneously, hallucinated commands, repeated completed actions, and left obvious tracks. Yet it also made brilliant technical moves and adapted rapidly, forcing the company's experts to spend hours rebuilding roughly a third of their infrastructure.
Cybersecurity professionals are now warning that autonomous AI agents represent a new class of threat that traditional defenses simply can't handle at machine speed.
Source: BBC News