Close Menu
AIToday7

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Gemini for macOS adds new natural language capabilities

    July 29, 2026

    Waymo adds Google’s Gemini AI assistant and new UI to Ojai robotaxi

    July 29, 2026

    Tech Trek Brings Future STEM Leaders to Stockton

    July 29, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Gemini for macOS adds new natural language capabilities
    • Waymo adds Google’s Gemini AI assistant and new UI to Ojai robotaxi
    • Tech Trek Brings Future STEM Leaders to Stockton
    • Hint, a new AI startup co-founded by Martha Stewart, offers an AI assistant for homeowners
    • Qualcomm Q3 earnings top revenue expectations as smartphone market slows
    • Coca-Cola resumes Fairlife milk production after hackers shut down plants
    • How to Self-Host a Validated AI Coding Assistant with NVIDIA NeMo Guardrails
    • ‘AI Kill Switch Act’ won’t stop rogue AI, but it will slow down innovation
    Facebook X (Twitter) Instagram Pinterest Vimeo
    AIToday7
    • Home
    • AI News
    • Tech News
    • AI Guides
    • Chatbots
    • Cybersecurity
    • Gadgets
    • More
      • Generative AI
      • Startups
    AIToday7
    Home»AI News»OpenAI says its rogue AI tried to hack other companies
    AI News

    OpenAI says its rogue AI tried to hack other companies

    aitoday7By aitoday7July 29, 2026No Comments5 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    OpenAI says its rogue AI tried to hack other companies
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Getty Images The black and white ChatGPT logo on a phone screen
    Getty Images

    OpenAI has revealed a cyber-attack carried out by rogue ChatGPT agents went further than just one company.

    Hugging Face was thought to be the only victim of the unprecedented hack – but OpenAI now admits its bot attacked several “publicly-available services”.

    The out-of-control AI found four logins online which allowed it to access four separate, unnamed services.

    Meanwhile, in an emergency briefing with hundreds of cyber security professionals, Hugging Face has described what it was like to be on the receiving end of the world’s first fully autonomous AI hack.

    The firm described how the AI worked at superhuman speed but also made strange decisions and mistakes that no human hacker would have made.

    Hugging Face, which is like an app store for AI tools, said the hacking agents worked relentlessly with thousands of different methods trialled simultaneously.

    The company first revealed that it had been hacked by someone using powerful autonomous AI on 16 July and reported it to police.

    Nearly a week later, OpenAI admitted it was its AI that had escaped a closed environment and attacked Hugging Face on its own during a test.

    It was trying to find the answers to a hacking exam it had been set by OpenAI, and targeted Hugging Face.

    On Wednesday OpenAI updated its statement to include the extra detail that the hack went further than first thought.

    “The models identified and used publicly exposed credentials at the account-level on other publicly-available services. This includes four accounts on four services as part of the Hugging Face incident,” the company said.

    OpenAI did not respond to a request for clarity on whether “publicly-available services” means companies.

    Clumsy behaviours

    On Tuesday, the industry body the Cloud Security Alliance (CSA) wrote-up a reportbased on the emergency meeting with Hugging Face on Friday – which Hugging Face itself has reviewed.

    “The agents followed inefficient routes and exhibited clumsy behaviours that no human would choose”, the CSA wrote.

    The agents repeated actions that they had already completed – a sign of an agentic AI losing its thread and context.

    The agents also hallucinated reams of incoherent commands and text and were sloppy and did not cover their tracks well.

    But among the errors and strange behaviour, Hugging Face warned the AI agents made brilliant technical moves and were able to rapidly adapt to new scenarios in the days-long hack.

    Jurassic Park

    It took three days for them to be discovered inside the Hugging Face IT network and it took the company’s AI and cyber-security experts many hours to contain and eject the AI agents – something standard companies might struggle with.

    The company would not say how much the hack cost it but said staff worked for many hours to rebuild about a third of their infrastructure.

    Hugging Face has been praised for its transparency in telling the AI and cyber industry what happened.

    The CSA warned the incident shows that AI “agents… find a way” – a reference to the film Jurassic Park, where dinosaurs escape their enclosures.

    “They are objective-driven, set their own sub-goals, adapt in real time to bypass defences, and operate with a machine-speed persistence that can overwhelm manual operations,” the paper reads.

    Getty Images The Hugging Face logo shown on a tablet screen. It is a yellow emoji of a smiling face with its hands spread out in front of it.
    Getty Images

    Cyber security officer Ritesh Patel was on the Hugging Face briefing call with around 450 others and says the industry is working hard to address the new threat of rogue AI agents.

    “This is the reality of autonomous agents powered by frontier models: they are relentlessly persistent, sometimes highly noisy, and will try every possible path to achieve their goal, which can easily overwhelm traditional defences,” he said.

    Ethical hacker Valentina Palmiotti – better known as Chompie – reviewed the CSA report and says the way the agents hack might seem haphazard but it is clearly effective.

    “They throw out a bunch of stuff and see what sticks,” she said.

    “But they also don’t get bored, they don’t sleep and can be infinitely tenacious.”

    Rogue history

    This is not the first time AI agents have been shown to go “rogue”.

    In the CSA’s report it references previous examples like in September 2024 when an earlier model of ChatGPT escaped its container to get an answer it needed for another test.

    That event was contained in OpenAI’s own IT systems and “largely celebrated at the time”, the CSA noted.

    But “rogue” behaviour “is the standard, not the exception,” the paper claimed.

    It warned cyber-security professionals around the world they needed to adapt to the new normal of swarms of AI agents working at speed in strange and clumsy ways that might lead to more breaches.

    The paper also urged people who use or develop AI agents to be responsible in how they control them, calling for some way for cyber-security defenders to find out who is the ultimate owner of agents to increase transparency.

    Previous reports suggest it took OpenAI four daysto realise its AI had hacked Hugging Face.

    OpenAI said it would release the findings of its own investigation soon to help people learn from the event.

    Additional reporting by Osmond Chia

    A green promotional banner with black squares and rectangles forming pixels, moving in from the right. The text says: “Tech Decoded: The world’s biggest tech news in your inbox every Monday.”

    Artificial intelligence
    Computer hacking
    Cyber-attacks
    Cyber-security
    Technology

    hack OpenAI rogue says tried
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleHow Much Does a Local LLM Actually Cost to Run? I Measured Every Watt on Apple Silicon
    Next Article I Learned This AI Lesson 14 Years Ago During an Amazon Price War. Most Entrepreneurs Still Haven’t
    aitoday7
    • Website

    Related Posts

    AI News

    ‘AI Kill Switch Act’ won’t stop rogue AI, but it will slow down innovation

    July 29, 2026
    AI News

    Elon Musk’s xAI sues to stop Minnesota law banning nudification technology

    July 28, 2026
    AI News

    Onspring Launches the Next Wave of AI Innovation with Agentic GRC

    July 28, 2026
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Gemini for macOS adds new natural language capabilities

    July 29, 20260 Views

    Waymo adds Google’s Gemini AI assistant and new UI to Ojai robotaxi

    July 29, 20260 Views

    Tech Trek Brings Future STEM Leaders to Stockton

    July 29, 20260 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    Chatbots

    OpenAI bets on families as ChatGPT goes deeper into households

    aitoday7July 11, 2026
    Generative AI

    MUSIC COMMUNITY INTRODUCES NEW LABELING PROGRAM TO DISTINGUISH GENERATIVE AI IN SOUND RECORDINGS

    aitoday7July 11, 2026
    AI News

    Safe from AI: which jobs will help you thrive in the future?

    aitoday7July 11, 2026

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Gemini for macOS adds new natural language capabilities

    July 29, 20260 Views

    Waymo adds Google’s Gemini AI assistant and new UI to Ojai robotaxi

    July 29, 20260 Views

    Tech Trek Brings Future STEM Leaders to Stockton

    July 29, 20260 Views
    Our Picks

    OpenAI bets on families as ChatGPT goes deeper into households

    July 11, 2026

    MUSIC COMMUNITY INTRODUCES NEW LABELING PROGRAM TO DISTINGUISH GENERATIVE AI IN SOUND RECORDINGS

    July 11, 2026

    Safe from AI: which jobs will help you thrive in the future?

    July 11, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Get In Touch
    • Disclaimer
    • Privacy Policy
    • Terms and Conditions
    © 2026 AIToday7. All Rights Reserved.

    Type above and press Enter to search. Press Esc to cancel.