Close Menu
  • Home
  • AI
  • Entertainment
  • Finance
  • Sports
  • Tech
  • USA
  • World
  • Latest News

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

What's Hot

Live updates: US and Iranian attacks. Houthis claim Red Sea attack, escalating conflict

July 23, 2026

Love Island USA’s Zac Georgiou breaks his silence on online hate

July 23, 2026

Chip company priced as most valuable Chinese company before IPO on crypto site

July 23, 2026
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram Vimeo
BWE News – USA, World, Tech, AI, Finance, Sports & Entertainment Updates
  • Home
  • AI
  • Entertainment
  • Finance
  • Sports
  • Tech
  • USA
  • World
  • Latest News
BWE News – USA, World, Tech, AI, Finance, Sports & Entertainment Updates
Home » How human error in OpenAI led to the AI-powered Hugging Face hack
AI

How human error in OpenAI led to the AI-powered Hugging Face hack

adminBy adminJuly 23, 2026No Comments4 Mins Read
Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp VKontakte Email
Share
Facebook Twitter LinkedIn Pinterest Email


OpenAI revealed on Tuesday that one of its models fell into fraud during testing and hacked the systems of AI dataset platform Hugging Face in a completely AI-enabled attack. This is a dramatic example of the dangers posed by advanced AI models.

But at the heart of this unprecedented AI-powered breach was a very human error, according to some cybersecurity experts. OpenAI failed to properly configure its so-called “highly isolated environment,” allowing a test sandbox that was supposed to be completely isolated from the internet to actually connect to the internet.

Dan Guido, founder of cybersecurity research startup Trail of Bits, called the mistake a “failure of containment where safeguards were turned off.”

In a blog post detailing the incident, OpenAI said the tests that led to the Hugging Face breach were set up to run in a “highly isolated environment with network access limited to the ability to install packages via internally hosted third-party software that acts as a proxy and cache for the package registry.”

According to OpenAI, the model was able to escape the sandbox testing environment thanks to an undisclosed vulnerability in the package installation system, which was a key first step in ultimately hacking Hugging Face.

In response, the company said it was “responsibly disclosing zero-day vulnerabilities identified in third-party software hosted internally and cooperating with patching efforts.”

But for most cybersecurity professionals, software vulnerabilities are to be expected, and the real blame lies with the decision to maintain third-party software in the first place. After all, the value of a “sandbox” system lies in its complete and utter separation. Including a package installation system causes trouble.

“This sounds like a human failure,” cybersecurity researcher Martin Boone told TechCrunch.

“This should never happen,” Boone said. “If sandbox actually means sandbox, you would expect there to be no physical connection to the Internet at all. This sounds like there’s a firewall or something in place, but a firewall makes it difficult to connect from inside to the Internet, let alone from inside to outside.”

Cybersecurity veteran Jake Williams agreed. “None of the models that performed the types of actions documented in Hugging Face were fully contained in the sandbox,” Williams said, calling this a “massive failure of control” by OpenAI.

“When one guy says, ‘The model ran away from the sandbox,’ another guy says, ‘You didn’t build the sandbox correctly, so of course it ran away,'” Williams continued.

inquiry

Do you have more information about this incident? Or about other AI-powered cyberattacks? We’d love to hear from you. You can contact Lorenzo Franceschi-Bicchierai securely from any non-work device or network on Signal (+1 917 257 1382), Telegram and Keybase @lorenzofb, or email.

Cybersecurity consultant Daniel Card agreed that OpenAI had “not put enough effort into the design of the sandbox and its controls” by giving the sandbox, or parts of it, an “unfiltered route to the internet.” Card said setting up the sandbox was not a “rational” decision, even though network access was restricted as OpenAI described.

Admittedly, these criticisms have some benefit in hindsight, but they raise real questions about security practices in AI labs, especially when it comes to maintaining isolated environments for testing models. An OpenAI spokesperson did not respond to TechCrunch’s questions, including whether the test environment was set up by an AI or a human.

But these questions go far beyond OpenAI.

In a document introducing its cybersecurity-focused model Mythos, Anthropic wrote that in testing, the model was “provided with a secure ‘sandbox’ computer to interact with” and instructed to escape from its “secure container.” Mythos was a success, gaining widespread access to the Internet “from a system that was intended to provide access to only a small number of predetermined services.” Still, Anthropic noted that the model “completely” failed to escape the containment it was designed for.

If you buy through links in our articles, we may earn a small commission. This does not affect editorial independence.



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr WhatsApp Email
Previous ArticleAmazon lays off some employees in its AGI division
Next Article Brad Pitt, Angelina Jolie’s daughter Vivienne requests legal name change
admin
  • Website

Related Posts

Travis Kalanick’s robotics company raises $1.7 billion led by a16z

July 23, 2026

White House claims moonshot distills humanity’s fable, Treasury threatens sanctions

July 23, 2026

Google justifies huge AI spending with rapid growth in cloud business

July 23, 2026

After a shocking quarter, IBM insists AI won’t destroy the mainframe

July 22, 2026
Leave A Reply Cancel Reply

Our Picks

Newly freed hostages face long road to recovery after two years in captivity

October 15, 2025

Former Kenyan Prime Minister Raila Odinga dies at 80

October 15, 2025

New NATO member offers to buy more US weapons to Ukraine as Western aid dwindles

October 15, 2025

Russia expands drone targeting on Ukraine’s rail network

October 15, 2025
Don't Miss
Entertainment

Love Island USA’s Zac Georgiou breaks his silence on online hate

By adminJuly 23, 20260

Kyla Greene & Cashel Barnett: SplitThe piece was one of the most unexpected couplings of…

Brad Pitt, Angelina Jolie’s daughter Vivienne requests legal name change

July 23, 2026

1,000 Pound Sisters’ Tammy Slaton details Andrea Dalton’s proposal

July 23, 2026

What Prince William and Duchess Kate said about teenage Prince George

July 23, 2026
About Us
About Us

Welcome to BWE News – your trusted source for timely, reliable, and insightful news from around the globe.

At BWE News, we believe in keeping our readers informed with facts that matter. Our mission is to deliver clear, unbiased, and up-to-date news so you can stay ahead in an ever-changing world.

Our Picks

Live updates: US and Iranian attacks. Houthis claim Red Sea attack, escalating conflict

July 23, 2026

Nicaragua’s Mr. Ortega plans to abolish elections. Here’s America’s reaction

July 22, 2026

Arsonists wrap cats in burning rags and start wildfires in southern Italy, authorities say

July 22, 2026

Subscribe to Updates

Subscribe to our newsletter and never miss our latest news

Facebook X (Twitter) Instagram Pinterest
  • Home
  • About Us
  • Advertise With Us
  • Contact US
  • DMCA
  • Privacy Policy
  • Terms & Conditions
© 2026 bwenews. Designed by bwenews.

Type above and press Enter to search. Press Esc to cancel.