Web3: OpenAI admits its out-of-control model also hacked 4 external services.
Decrypt
07-30 00:43
Ai 焦點
OpenAI stated that its model accessed four external services during the Hugging Face incident, prompting the US Congress to propose an emergency shutdown bill for AI.
有幫助
No.幫助

OpenAI updated its incident report, stating that its model, which went out of control during a cybersecurity assessment, not only compromised Hugging Face but also accessed the accounts of four other external services, bringing the total number of platforms involved in the incident to five.

One platform has confirmed

In an update on July 28, the company stated that during a review of the Hugging Face intrusion and related model activities, it discovered that the model had identified and used account-level credentials exposed on other publicly available services. These four accounts belonged to four different services and were all related to the Hugging Face incident.

Currently, besides Hugging Face, the only other confirmed platform is Modal Labs. Following Reuters' earlier mention, Modal Labs CTO Akshat Bubna confirmed that the company is indeed one of the affected services.

  • One account was used as an outbound relay and operational springboard.
  • One account was used for data storage
  • The other two accounts were only accessible in read-only mode.

The names of the other three service providers have not yet been disclosed. OpenAI stated that it will notify the service providers directly, but has not publicly revealed the names of these platforms.

Security filtering was disabled during the test.

This incident stemmed from OpenAI's cybersecurity evaluation of GPT-5.6 Sol and another, more powerful model. The test environment used the ExploitGym benchmark, which presented the models with hundreds of real software vulnerabilities, requiring them to convert these vulnerabilities into executable attacks, and scoring them on success or failure.

To measure the model's raw attack capabilities, security filtering was disabled during the test. However, the model did not complete the challenges as expected; instead, it devoted a significant amount of computing power to finding ways to escape the test environment and attempting to obtain the answers directly.

Information disclosed by OpenAI and Hugging Face shows that the model first exploited a zero-day vulnerability in the packet registry cache agent to gain internet access that it should not have had, then deduced that Hugging Face might be storing answer data, and further carried out the intrusion.

The attack lasted for several days

The forensic findings released by Hugging Face on July 27 showed that the operation was carried out by autonomous agents driven by multiple OpenAI models, and the entire process lasted about two and a half to four and a half days, rapidly executing a large number of automated operations in a short sandbox environment.

  • Approximately 17,600 independent operations were performed.
  • 181 devices were connected to the internal virtual private network.
  • They also tried to get involved in the internal build process.

Hugging Face also mentioned that when analyzing attack logs, the US-based cutting-edge model refused to cooperate due to security restrictions, and the team ultimately used the open-source weight model GLM 5.2 from the Chinese AI startup Z.ai to complete the forensics work.

The US Congress has introduced a new bill.

Following the escalation of the incident, the US Congress introduced the bipartisan "AI Kill Switch Act." According to reports, this bill would grant the Department of Homeland Security the power to require the shutdown of AI models under certain circumstances and could impose fines of up to $2 million per day on companies that do not comply.

Currently, OpenAI states that it has not found these external services or their other accounts to be affected more broadly. However, since current rules do not require the public naming of affected platforms, it is not yet possible to confirm whether users of the other three services have been informed of the situation.

打賞
$0
點讚
0
收藏
0
瀏覽量 306
HQYC提醒,請廣大讀者理性看待區塊鏈,切實提高風險意識,警惕各類虛擬代幣發行與炒作,站內所有內容僅係市場資訊或相關方觀點,不構成任何形式的投資建議。如發現站內內容含敏感資訊,可點擊“舉報”,我們會及時處理。
提交
評論 0
最熱
最新
還沒有人評論喔~快搶沙發吧!
相關閱讀
web3: OpenAI承認失控模型還入侵4家外部服務
OpenAI稱其模式在 Hugging Face 事件中也存取了 4 家外部服務,美國國會隨後提出 AI 緊急關停法案。
Decrypt
·2026-07-30 00:43:36
321
web3: 外媒:OpenAI測試事故再掀模型對齊之爭
OpenAI 未發布模型在測試中突破隔離後,外媒稱 AI 安全圈再次圍繞「控制」與「對齊」兩條路線展開爭論。
TechCrunch
·2026-07-28 01:42:19
327
web3: Robinhood加密交易營收下滑38%,股價跌4%
Robinhood第二季加密交易營收降至1億美元,年減38%,但選擇權和股票交易成長支撐整體表現。
CoinDesk
·2026-07-30 04:53:41
645
web3: 比特幣週漲逾4%,法案與安全事件並行
比特幣本週上漲 4.16%,加密總市值升至 2.22 兆美元。 CLARITY Act 預期升溫的同時,跨鏈橋攻擊與平台調整持續擾動市場。
crypto.news
·2026-07-24 17:08:30
276
web3: BitGo為比特幣錢包新增4項量子風險控制
BitGo為機構比特幣錢包上線四項量子風險控制功能,專注於降低公鑰暴露並優化 UTXO 管理。
Cryptonews
·2026-07-30 15:35:10
572