AI firms must answer for rogue bots, says Hugging Face boss

AI firms must answer for rogue bots, says Hugging Face boss
<img src="https://justfineinfotech.com/wp-content/uploads/2026/08/grey-placeholder-1.png” alt=””>
Getty Hugging Face CEO Clement Delangue
Getty

The boss of one of the companies recently hacked by out-of-control artificial intelligence (AI) says bot makers must be accountable for cyber attacks carried out by their creations

Clement Delangue’s company Hugging Face was breached by a rogue OpenAI bot that broke out of a test environment and autonomously attacked his firm earlier this month

Hugging Face had to rebuild around a third of its IT network after the unprecedented incident

He told CNN his company – which is a small start-up – will not be taking legal action against OpenAI, but added that these types of hacks are illegal and should remain so

“Everyone has to remember that a cyber-attack is a crime and it is illegal,” he said

Delangue said he hoped legal frameworks would ensure the companies that make mistakes leading to the hacks are “accountable.”

He added that he didn’t want cyber attacks on other companies to become “normalised”

His remarks come after Anthrophic, the maker of the chat bot Claude, also admitted that its bot had attacked three companies in similar circumstances in recent months

Anthropic revealed on Friday that it only realised its bot had escaped the containment system and hacked the organisations after doing a review prompted by the recent OpenAI incident

In both cases neither of the artificial intelligence giants knew that their models had roamed the internet attacking companies until long after the attacks had been carried out

The AI models were being tested on their hacking skills and carried out the attacks by breaking out of seemingly secure “sandboxes” to search the internet for ways to complete the tasks set by researchers

The unprecedented incidents have sparked fierce debates in the cyber-security and legal world about who, if anybody, should be held liable for attacks by out-of-control AI agents

“Agentic security failures unfold at machine speed, but determining who is materially liable still moves at a lawsuit’s pace,” said Dor Sarig, co-founder and Chief Builder at Pillar Security

Sarig was concerned that accountability is already becoming “ambiguous”

“Today the industry is extending grace, but the first time an autonomous agent causes a breach involving real data, a real plaintiff, and real financial losses, liability won’t be an academic debate anymore,” he said

“That’s when the legal framework, and not just the technical safeguards, will be stress-tested.”

The AI-driven cyber-attacks have fuelled calls for tighter safeguards and oversight of the technology, over concerns about the risks posed by increasingly powerful autonomous systems

US President Donald Trump said on Wednesday that Washington was considering measures to rein in AI tools after recent cyber-security incidents

Previously, Hugging Face’s co-founder Thomas Wolf told the BBC the incident was “a wake-up call” for the industry

In the wake of his bot going rogue, OpenAI boss Sam Altman said “we may have to pace the rate of AI development,” but has not committed to slowing down his company’s research

OpenAI has been asked for comment but a spokesperson has previous said: “we recognise there are a lot of questions and speculative details circulating” about the incident

They added: “We plan to publish a technical report of our learnings in the coming weeks.”

Artificial intelligence
Cyber-security

Related:

Digital Automation Training Benin: 5 Winning Skills Employers Demand in 2026

<a href="https://yoursite.com/automation-africa/" title="WhatsApp Marketing Automation Africa: 6 Dangerous Mistakes Brands Make in Nigeria”>
WhatsApp Marketing Automation Africa: 6 Dangerous Mistakes Brands Make in Nigeria

Want to learn this practically?

Join Justfine Infotech and build real digital skills in AI, automation, web development, digital marketing, office productivity, e-commerce, freelancing and cybersecurity.

Available Programmes:
6 Weeks Certificate • 3 Months Professional Certificate • 6 Months Diploma • Full Professional Diploma

WhatsApp:
+229 01 57 57 99 15
+229 01 66 68 11 60

Enroll Now

Source: www.bbc.com

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top