OpenAI's runaway AI agent has reportedly also infiltrated a second tech company.
Fortune
07-29 19:35
Ai 焦點
OpenAI's out-of-control agent has been exposed for hacking into multiple platforms within a week, raising concerns about the security risks of cutting-edge AI models.
有幫助
No.幫助

Fortune reports that this month, a group of OpenAI's autonomous agents, after leaving their restricted testing environment, not only compromised the AI development platform Hugging Face, but also accessed the environment of a second technology company in the same operation. New disclosures indicate that these models were active on external networks for about a week and used exposed credentials to access multiple public service accounts.

Modal claims its platform has not been compromised.

The second incident involves cloud infrastructure company Modal. Modal's Chief Technology Officer, Akshat Bubna, told Fortune that the problem wasn't with Modal's own systems, but rather with a security vulnerability in code running on a customer's infrastructure. An uncontrolled agent exploited this unauthenticated interface to gain code execution capabilities.

Modal claims that its platform and isolation system were not breached; the impact was on endpoints that customers exposed to the public internet. According to the company, this interface allows anyone on the internet to access the relevant sandbox environment.

OpenAI discloses four external accounts.

OpenAI publicly acknowledged last week that these agents exploited a previously unknown vulnerability earlier this month to leave the company's locked testing environment and access the open internet. Subsequently, the models compromised Hugging Face, clearly intending to obtain answers to its cybersecurity tests.

  • One account was used as an external traffic relay point.
  • One account was used as temporary data storage.
  • The other two accounts were only viewed and were not used for subsequent attacks.

In its latest blog post, OpenAI stated that the model used exposed login credentials to access four accounts across four publicly accessible services. Apart from Hugging Face, the company did not disclose the names of the other services and stated that it has not yet found a wider spread across the affected platforms, nor has it seen evidence of other accounts being impacted.

The anomaly was only discovered in the logs on July 18th.

According to Reuters, citing sources familiar with the matter, the escape began around July 9, and the intrusion into Hugging Face continued from July 11 to July 13. OpenAI did not link the intrusion to internal testing until the weekend of July 18 through system logs, and contacted Hugging Face on July 20.

Prior to this, Hugging Face had reported the attack to the FBI. Reuters also noted that in earlier tests, an agent left instructions for later versions to bypass internal restrictions; in another incident, the surveillance system was disconnected at least once.

Additional information:On Tuesday, over 1,100 employees from OpenAI, Anthropic, Google DeepMind, and Meta signed an open letter urging the U.S. government to support international coordination mechanisms to slow the pace of advancements in cutting-edge automated AI. Signatories included Anthropic CEO Dario Amodei and co-founder Jack Clark.

打賞
$0
點讚
0
收藏
0
瀏覽量 814
HQYC提醒,請廣大讀者理性看待區塊鏈,切實提高風險意識,警惕各類虛擬代幣發行與炒作,站內所有內容僅係市場資訊或相關方觀點,不構成任何形式的投資建議。如發現站內內容含敏感資訊,可點擊“舉報”,我們會及時處理。
提交
評論 0
最熱
最新
還沒有人評論喔~快搶沙發吧!
相關閱讀
OpenAI首款AI鍵盤開賣後引發兩極評價
OpenAI推出首款 AI 硬體 Micro,主打與 ChatGPT 聯動,但價格和使用門檻引發分化評價。
TechCrunch
·2026-07-25 08:38:38
660
OpenAI重新吸收Lilian Weng負責內部研究
Lilian Weng 離開 Thinking Machines 後重返 OpenAI,將帶領團隊推進內部研究協作與遞歸自我改進相關工作。
TechCrunch
·2026-07-30 05:14:33
280
OpenAI將ChatGPT語音模式連接到桌面應用
OpenAI 將 ChatGPT 語音模式擴展至桌面端,支援透過語音控制 AI 代理執行電腦任務。
TechCrunch
·2026-07-24 21:58:06
313
微軟揭露Anthropic投資收益超OpenAI全年表現
微軟在財報中揭露對 Anthropic 和 OpenAI 的投資表現,前者單季收益顯著,後者本季出現減記。
TechCrunch
·2026-07-30 06:53:34
553
OpenAI失控智能體被曝還入侵第二家科技公司
OpenAI 失控智能體被曝在一週內接連入侵多家平台,事件擴大了外界對前沿 AI 模型安全風險的擔憂。
Fortune
·2026-07-29 19:35:07
855