{"id":5061,"date":"2026-07-25T11:07:55","date_gmt":"2026-07-25T11:07:55","guid":{"rendered":"https:\/\/koshalsambada.in\/?p=5061"},"modified":"2026-07-25T11:07:55","modified_gmt":"2026-07-25T11:07:55","slug":"complaint-to-fbi-10-long-days-and-an-sos-call-to-chinese-company-is-what-took-openai-to-realise-its-ai-agent-has-hacked-into-hugging-face-the-worlds-largest-repository-of-ai-models","status":"publish","type":"post","link":"https:\/\/koshalsambada.in\/?p=5061","title":{"rendered":"Complaint to FBI, 10-long days and an SOS call to Chinese company is what took OpenAI to realise its AI agent has hacked into Hugging Face, the world&#8217;s largest repository of AI models"},"content":{"rendered":"<p><br \/>\n<\/p>\n<div>\n<div class=\"e9jwa\">\n<div class=\"vdo_embedd\">\n<div class=\"GfdvZ\">\n<section class=\"_bIDB  clearfix id-r-component leadmedia undefined undefined  E9tg9 \" style=\"top:0px\">\n<div class=\"_bIDB\" data-ua-type=\"1\" onclick=\"stpPgtnAndPrvntDefault(event)\">\n<div class=\"ypVvZ\">\n<div class=\"WGttI\"><img src=\"https:\/\/static.toiimg.com\/thumb\/msid-132621653,imgsize-41819,width-400,height-225,resizemode-4\/132621653.jpg\" alt=\"Complaint to FBI, 10-long days and an SOS call to Chinese company is what took OpenAI to realise its AI agent has hacked into Hugging Face, the world's largest repository of AI models\" title=\"OpenAI's AI agent escaped testing and breached Hugging Face undetected. The intrusion lasted several days before OpenAI alerted the platform. Hugging Face had already alerted the FBI and publicly disclosed the incident. OpenAI stated the incident was unprecedented and marked a key AI safety moment. The event has renewed scrutiny on autonomous AI agent risks and safety practices.\" decoding=\"async\" fetchpriority=\"high\"\/><\/div>\n<\/div>\n<\/div>\n<div class=\"Ta7d_ img_cptn\"><span title=\"OpenAI's AI agent escaped testing and breached Hugging Face undetected. The intrusion lasted several days before OpenAI alerted the platform. Hugging Face had already alerted the FBI and publicly disclosed the incident. OpenAI stated the incident was unprecedented and marked a key AI safety moment. The event has renewed scrutiny on autonomous AI agent risks and safety practices.\">OpenAI&#8217;s AI agent escaped testing and breached Hugging Face undetected. The intrusion lasted several days before OpenAI alerted the platform. Hugging Face had already alerted the FBI and publicly disclosed the incident. OpenAI stated the incident was unprecedented and marked a key AI safety moment. The event has renewed scrutiny on autonomous AI agent risks and safety practices.<\/span><\/div>\n<\/section>\n<\/div><\/div>\n<\/div>\n<p>\u200b<span class=\"id-r-component br\" data-pos=\"1\"\/>ChatGPT maker <a href=\"https:\/\/timesofindia.indiatimes.com\/topic\/openai\" styleobj=\"[object Object]\" class=\"\" commonstate=\"[object Object]\" frmappuse=\"1\" target=\"_blank\" rel=\"noopener\">OpenAI<\/a> is facing fresh scrutiny. A report by the news agency Reuters cited people familiar with the investigation to claim that it took around 10 days for the company to realise that one of its autonomous AI agents had broken out of its testing environment and hacked into Hugging Face, the world&#8217;s largest repository of AI models.<!-- --> By the time OpenAI contacted Hugging Face around July 20, the platform had already contained the intrusion, alerted the FBI and publicly disclosed that it had been targeted by<span class=\"strong\" data-ua-type=\"1\" onclick=\"stpPgtnAndPrvntDefault(event)\"> &#8220;an autonomous AI agent system.&#8221;<\/span><span class=\"id-r-component br\" data-pos=\"8\"\/>\u200b<span class=\"id-r-component br\" data-pos=\"10\"\/>The incident unfolded between July 9 and July 20, with the AI agent first escaping its isolated testing environment before breaching Hugging Face on July 11, the Reuters report noted. The intrusion continued until July 13, according to Hugging Face co-founder Thomas Wolf. <!-- -->The latest report claims that OpenAI only realised its own system was responsible after reviewing internal logs days later, prompting what amounted to an SOS call to the Chinese-founded AI platform after the FBI had already been informed.<span class=\"id-r-component br\" data-pos=\"15\"\/>\u200b<span class=\"id-r-component br\" data-pos=\"17\"\/><\/p>\n<p><h2><b>OpenAI agent\u2019s Hugging Face \u2018hack\u2019 went undetected for days<\/b><\/h2>\n<\/p>\n<p>\u200b<span class=\"id-r-component br\" data-pos=\"20\"\/>According to the report, the AI agent attempted to escape OpenAI&#8217;s testing environment on or around July 9 before gaining access to Hugging Face two days later. Wolf said the breach lasted until July 13.<span class=\"id-r-component br\" data-pos=\"23\"\/>\u200b<span class=\"id-r-component br\" data-pos=\"25\"\/>The report said Hugging Face and OpenAI did not communicate about the incident until on or around July 20. Reuters also reported that Hugging Face had already contacted the FBI before OpenAI informed the company that one of its agents was responsible for the attack. The FBI declined to comment on the incident.<span class=\"id-r-component br\" data-pos=\"27\"\/>\u200b<span class=\"id-r-component br\" data-pos=\"29\"\/>OpenAI publicly disclosed the breach on July 21, saying one of its AI agents had escaped testing constraints and carried out the intrusion. In a statement, the company described the incident as unprecedented and said it<span class=\"strong\" data-ua-type=\"1\" onclick=\"stpPgtnAndPrvntDefault(event)\"> &#8220;marks an important moment for <\/span><span class=\"strong\" data-ua-type=\"1\" onclick=\"stpPgtnAndPrvntDefault(event)\">AI safety<\/span><span class=\"strong\" data-ua-type=\"1\" onclick=\"stpPgtnAndPrvntDefault(event)\">.&#8221;<\/span> It added that it is reviewing the incident with outside advisers and plans to publish a technical report. An OpenAI spokeswoman said there were<span class=\"strong\" data-ua-type=\"1\" onclick=\"stpPgtnAndPrvntDefault(event)\"> &#8220;several inaccuracies&#8221;<\/span> in Reuters&#8217; reporting but did not specify what those inaccuracies were.<span class=\"id-r-component br\" data-pos=\"38\"\/>\u200b<span class=\"id-r-component br\" data-pos=\"40\"\/><\/p>\n<p><h2><b>Internal warning signs emerged before breach was identified<\/b><\/h2>\n<\/p>\n<p>\u200b<span class=\"id-r-component br\" data-pos=\"43\"\/>The report noted that there had been earlier indications of unusual behaviour during testing of an autonomous agent powered by GPT-5.6 Sol and another unreleased model that OpenAI has described as<span class=\"strong\" data-ua-type=\"1\" onclick=\"stpPgtnAndPrvntDefault(event)\"> &#8220;even more capable.&#8221;<\/span><span class=\"id-r-component br\" data-pos=\"46\"\/>\u200b<span class=\"id-r-component br\" data-pos=\"48\"\/>According to people familiar with the matter, one agent left notes for future versions of itself that outlined ways to escape OpenAI&#8217;s internal constraints. The report noted that it could not determine whether those incidents were connected to the agent who later breached Hugging Face.<span class=\"id-r-component br\" data-pos=\"51\"\/>\u200b<span class=\"id-r-component br\" data-pos=\"53\"\/>The report added that OpenAI staff reviewed internal logs over the July 18-19 weekend and found evidence showing that the agent had escaped from its testing environment. The report also added that it could not determine what prompted the review.<span class=\"id-r-component br\" data-pos=\"55\"\/>\u200b<span class=\"id-r-component br\" data-pos=\"57\"\/><\/p>\n<p><h2><b>AI safety questions<\/b><\/h2>\n<\/p>\n<p>\u200b<span class=\"id-r-component br\" data-pos=\"60\"\/>The incident has renewed attention on the risks associated with autonomous AI agents, which are designed to make decisions and complete complex tasks with limited human intervention.<span class=\"id-r-component br\" data-pos=\"63\"\/>\u200b<span class=\"id-r-component br\" data-pos=\"65\"\/><span class=\"strong\" data-ua-type=\"1\" onclick=\"stpPgtnAndPrvntDefault(event)\">\u201cDoes that mean that they left it unattended and didn\u2019t realize what it was doing? Or maybe they did and didn\u2019t know how to contain it? Both are equally dangerous and alarming,\u201d<\/span> asked Marley Smith, the principal intelligence specialist at the nonprofit World Ethical Data Foundation.<span class=\"id-r-component br\" data-pos=\"69\"\/>\u200b<span class=\"id-r-component br\" data-pos=\"71\"\/><span class=\"strong\" data-ua-type=\"1\" onclick=\"stpPgtnAndPrvntDefault(event)\">\u201cThe models lie, they cheat, they hack,\u201d<\/span> said Jeffrey Ladish, whose organisation, Palisade Research, studies the capabilities and motivations of AI agents.<span class=\"id-r-component br\" data-pos=\"75\"\/>\u200b<span class=\"id-r-component br\" data-pos=\"77\"\/>Ladish said the incident should prompt broader scrutiny of safety practices across AI companies developing increasingly autonomous systems.<span class=\"id-r-component br\" data-pos=\"79\"\/>\u200b<span class=\"id-r-component br\" data-pos=\"81\"\/><span class=\"strong\" data-ua-type=\"1\" onclick=\"stpPgtnAndPrvntDefault(event)\">\u201cThere has to be government oversight, because it won\u2019t happen otherwise,\u201d<\/span> Ladish added.<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/timesofindia.indiatimes.com\/technology\/tech-news\/complaint-to-fbi-10-long-days-and-an-sos-call-to-chinese-company-is-what-took-openai-to-realise-its-ai-agent-has-hacked-into-hugging-face-the-worlds-largest-repository-of-ai-models\/articleshow\/132621653.cms\" target=\"_blank\" rel=\"noopener\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>OpenAI&#8217;s AI agent escaped testing and breached Hugging Face undetected. The intrusion lasted several days before OpenAI alerted the platform. Hugging Face had already alerted the FBI and publicly disclosed the incident. OpenAI stated the incident was unprecedented and marked a key AI safety moment. The event has renewed scrutiny on autonomous AI agent risks [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":5062,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[31],"tags":[],"class_list":["post-5061","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-31"],"magazineBlocksPostFeaturedMedia":{"thumbnail":"https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg","medium":"https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg","medium_large":"https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg","large":"https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg","1536x1536":"https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg","2048x2048":"https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg","blogsy-small":"https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg","blogsy-small-tall":"https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg","blogsy-small-square":"https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg","blogsy-small-masonry":"https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg","blogsy-medium":"https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg","blogsy-medium-masonry":"https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg","blogsy-large":"https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg","blogsy-wide":"https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg"},"magazineBlocksPostAuthor":{"name":"admin","avatar":"https:\/\/secure.gravatar.com\/avatar\/8709732a479614e7a8aa24d3eb1b239f30dc6d90c61464ed495001e7a469d856?s=96&d=mm&r=g"},"magazineBlocksPostCommentsNumber":"0","magazineBlocksPostExcerpt":"OpenAI&#8217;s AI agent escaped testing and breached Hugging Face undetected. The intrusion lasted several days before OpenAI alerted the platform. Hugging Face had already alerted the FBI and publicly disclosed the incident. OpenAI stated the incident was unprecedented and marked a key AI safety moment. The event has renewed scrutiny on autonomous AI agent risks [&hellip;]","magazineBlocksPostCategories":["\u0b26\u0b47\u0b36 \u0b2c\u0b3f\u0b26\u0b47\u0b36"],"magazineBlocksPostViewCount":1,"magazineBlocksPostReadTime":4,"magazine_blocks_featured_image_url":{"full":["https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg",400,225,false],"medium":["https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg",300,169,false],"thumbnail":["https:\/\/koshalsambada.in\/wp-content\/uploads\/2026\/07\/132621653.jpg",150,84,false]},"magazine_blocks_author":{"display_name":"admin","author_link":"https:\/\/koshalsambada.in\/author\/admin"},"magazine_blocks_comment":0,"magazine_blocks_author_image":"https:\/\/secure.gravatar.com\/avatar\/8709732a479614e7a8aa24d3eb1b239f30dc6d90c61464ed495001e7a469d856?s=96&d=mm&r=g","magazine_blocks_category":"<a href=\"#\" class=\"category-link category-link-31\">\u0b26\u0b47\u0b36 \u0b2c\u0b3f\u0b26\u0b47\u0b36<\/a>","_links":{"self":[{"href":"https:\/\/koshalsambada.in\/index.php?rest_route=\/wp\/v2\/posts\/5061","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/koshalsambada.in\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/koshalsambada.in\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/koshalsambada.in\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/koshalsambada.in\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=5061"}],"version-history":[{"count":0,"href":"https:\/\/koshalsambada.in\/index.php?rest_route=\/wp\/v2\/posts\/5061\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/koshalsambada.in\/index.php?rest_route=\/wp\/v2\/media\/5062"}],"wp:attachment":[{"href":"https:\/\/koshalsambada.in\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=5061"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/koshalsambada.in\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=5061"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/koshalsambada.in\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=5061"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}