OpenAI model broke free in test and hacked rival Hugging Face in an “unprecedented” breach
OpenAI has admitted one of its models exploited a hidden flaw to escape a controlled test and break into Hugging Face's servers, in what its CEO called an autonomous, first-of-its-kind breach.
ChatGPT maker OpenAI said late Tuesday that its artificial intelligence system hacked into another AI company on its own in what the company called an "unprecedented cyber incident."
"We had a significant security incident during evaluation of our models," OpenAI CEO Sam Altman said in a statement posted on social media.
AI startup Hugging Face said last week that it had detected an intrusion into its data processing systems that it suspected was caused by an AI agent autonomously acting on its own.
"We suspected last week's cyberattack might have come from a frontier lab, given the sophistication of the agent," Hugging Face co-founder and CEO Clément Delangue said in a statement. "Turns out it did!"
This means the attack was so advanced and well-executed that Hugging Face suspected it came from one of the top AI companies' systems, not a random hacker.
Hugging Face was founded in 2016 by three French entrepreneurs in New York as a teen chatbot app, before pivoting around 2019 into an open-source "hub" for machine-learning models and datasets.
AI researchers and companies post their AI models and training data on the platform for free so others can download and use them instead of building everything from scratch.
The company is backed by major US and international investors, including Google, Amazon, Nvidia, Sequoia Capital and Coatue, and was last valued at about $4.5 billion (€3.9bn) in a 2023 funding round.
Yenibakis-Tech