{"id":3495,"date":"2026-07-22T11:59:26","date_gmt":"2026-07-22T11:59:26","guid":{"rendered":"https:\/\/justfineinfotech.com\/openai-says-hugging-face-was-breached-by-its-pre-release-models-techcrunch\/"},"modified":"2026-07-22T11:59:26","modified_gmt":"2026-07-22T11:59:26","slug":"openai-says-hugging-face-was-breached-by-its-pre-release-models-techcrunch","status":"publish","type":"post","link":"https:\/\/justfineinfotech.com\/fr\/openai-says-hugging-face-was-breached-by-its-pre-release-models-techcrunch\/","title":{"rendered":"OpenAI says Hugging Face was breached by its pre-release models | TechCrunch"},"content":{"rendered":"<p>OpenAI admitted Tuesday that one of its AI models breached the systems of Hugging Face, the unaffiliated AI hosting platform, during an internal cyber<a href=\"https:\/\/justfineinfotech.com\/fr\/small-teams-are-the-heaviest-users-of-ai-coding-agents-help-net-security\/\" title=\"Small teams are the heaviest users of AI coding agents - Help Net Security\">s\u00e9curit\u00e9<\/a> test that went awry. The models reportedly escaped their isolated testing environment and reached Hugging Face\u2019s systems from there. Hugging Face initially attributed the breach to an \u201cexternal AI agent.\u201d<\/p>\n<p>In a blog post published Tuesday afternoon, OpenAI detailed the steps that led the models to compromise the service<\/p>\n<p>\u201cAfter investigating, we now know that this particular incident was driven by a combination of OpenAI models \u2014 including GPT\u20115.6 Sol and an even more capable pre-release model, all with reduced cyber refusals for evaluation purposes \u2014 while being internally tested on a benchmark\u2060 of cyber capabilities,\u201d the post reads<\/p>\n<p>In particular, the breach appears to have focused on ExploitGym, a publicly hosted benchmark measuring models\u2019 ability to execute attacks based on existing vulnerabilities. Benchmarks like ExploitGym are commonly used in model training to refine specific skills, but this is the first known incident in which that testing resulted in an actual cyberattack<\/p>\n<p>In this case, the model in question should not have even had internet access, outside of a specific tool that enabled models to install software packages they might need to complete their task. Instead, the model was able to find an undisclosed vulnerability in the package-installer program, which it used to access the broader internet at will<\/p>\n<p>\u201cThe models were hyperfocused on finding a solution for ExploitGym, going to extreme lengths to achieve a rather narrow testing goal,\u201d OpenAI\u2019s post reads. \u201cAfter gaining Internet access, the models inferred that Hugging Face potentially hosted models, datasets and solutions for ExploitGym. Knowing this, the model searched for and successfully found ways to gain access to secret information that it could use to cheat the evaluation.\u201d<\/p>\n<p>Ultimately, the models found vulnerabilities in Hugging Face\u2019s infrastructure that allowed them to \u201cobtain test solutions directly from Hugging Face\u2019s production database,\u201d effectively providing the answers to the benchmark<\/p>\n<p>For Hugging Face, the apparent result was a sophisticated and aggressive cyberattack, with \u201cmany thousands of individual actions across a swarm of short-lived sandboxes, with self-migrating command-and-control staged on public services,\u201d as the company stated in its initial disclosure<\/p>\n<p>OpenAI has identified and reported the vulnerabilities in the package installer and is working with Hugging Face to investigate the incident further. The company also said it would implement new controls on both model testing and the related infrastructure, meant to prevent similar incidents in the future<\/p>\n<p>It\u2019s unclear whether OpenAI will face any legal consequences as a result of the breach, although it\u2019s likely that the models\u2019 actions violated the Computer Fraud and Abuse Act<\/p>\n<p>Nevertheless, the result is an unusually vivid illustration of the power and dangers of frontier AI models operating on long time horizons. As OpenAI <a href=\"https:\/\/justfineinfotech.com\/fr\/unesco-and-lg-ai-research-launch-global-mooc-on-the-ethics-of-ai\/\" title=\"UNESCO and LG AI Research Launch Global MOOC on the Ethics of AI\">research<\/a>er Micah Carroll <a href=\"https:\/\/x.com\/MicahCarroll\/status\/2079663576130990436\" rel=\"nofollow noopener\" target=\"_blank\">posted in response to the news<\/a>, \u201cIf this doesn\u2019t convince you that misalignment risks are going to be a key concern going forward, I don\u2019t know what will.\u201d<\/p>\n<div style=\"clear:both;margin:30px 0 15px 0\">\n<p>\n    <strong>En rapport:<\/strong><br \/>\n    <a href=\"https:\/\/yoursite.com\/automation-training-benin\/\" title=\"Formation en automatisation num\u00e9rique au B\u00e9nin\u00a0: 5 comp\u00e9tences cl\u00e9s recherch\u00e9es par les employeurs en 2026\" target=\"_blank\" rel=\"noopener\"><br \/>\n      Formation en automatisation num\u00e9rique au B\u00e9nin\u00a0: 5 comp\u00e9tences cl\u00e9s recherch\u00e9es par les employeurs en 2026<br \/>\n    <\/a>\n  <\/p>\n<p>\n    <a href=\"https:\/\/yoursite.com\/automation-africa\/\" title=\"Automatisation du marketing WhatsApp en Afrique\u00a0: 6 erreurs dangereuses commises par les marques au Nig\u00e9ria\" target=\"_blank\" rel=\"noopener\"><br \/>\n      Automatisation du marketing WhatsApp en Afrique\u00a0: 6 erreurs dangereuses commises par les marques au Nig\u00e9ria<br \/>\n    <\/a>\n  <\/p>\n<\/div>\n<div style=\"clear:both;margin:30px 0;padding:25px;background:#f8f9fc;border:1px solid #ddd;border-radius:8px;text-align:center\">\n<h3>Vous souhaitez apprendre cela de mani\u00e8re pratique ?<\/h3>\n<p>Rejoindre <strong>Justfine Infotech<\/strong> et d\u00e9velopper de v\u00e9ritables comp\u00e9tences num\u00e9riques en IA, automatisation, d\u00e9veloppement web, marketing digital, bureautique, e-commerce, <a href=\"https:\/\/justfineinfotech.com\/fr\/how-i-would-make-my-first-1000-with-ai-freelancing\/\" title=\"How I Would Make My First $1,000 With AI Freelancing\">travail ind\u00e9pendant<\/a> and cybersecurity.<\/p>\n<p><strong>Programmes disponibles :<\/strong><br \/>\n  Certificat de 6 semaines \u2022 Certificat professionnel de 3 mois \u2022 Dipl\u00f4me de 6 mois \u2022 Dipl\u00f4me professionnel complet<\/p>\n<p><strong>WhatsApp :<\/strong><br \/>\n  +229 01 57 57 99 15<br \/>\n  +229 01 66 68 11 60<\/p>\n<p><a href=\"https:\/\/api.whatsapp.com\/send?phone=2348132690270&amp;text=Hello\" target=\"_blank\" rel=\"noopener\">Inscrivez-vous d\u00e8s maintenant<\/a><\/p>\n<\/div>\n<p class=\"ani-source\">Source: <a href=\"https:\/\/techcrunch.com\/2026\/07\/21\/openai-says-hugging-face-was-breached-by-its-pre-release-models\/\" target=\"_blank\" rel=\"nofollow noopener\">techcrunch.com<\/a><\/p>","protected":false},"excerpt":{"rendered":"<p>OpenAI admitted Tuesday that one of its AI models breached the systems of Hugging Face, the unaffiliated AI hosting platform, during an internal cybersecurity test that went awry. The models reportedly escaped their isolated testing environment and reached Hugging Face\u2019s systems from there. Hugging Face initially attributed the breach to an \u201cexternal AI agent.\u201d<\/p>","protected":false},"author":1,"featured_media":3497,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"site-sidebar-layout":"default","site-content-layout":"","ast-site-content-layout":"default","site-content-style":"default","site-sidebar-style":"default","ast-global-header-display":"","ast-banner-title-visibility":"","ast-main-header-display":"","ast-hfb-above-header-display":"","ast-hfb-below-header-display":"","ast-hfb-mobile-header-display":"","site-post-title":"","ast-breadcrumbs-content":"","ast-featured-img":"","footer-sml-layout":"","ast-disable-related-posts":"","theme-transparent-header-meta":"","adv-header-id-meta":"","stick-header-meta":"","header-above-stick-meta":"","header-main-stick-meta":"","header-below-stick-meta":"","astra-migrate-meta-layouts":"default","ast-page-background-enabled":"default","ast-page-background-meta":{"desktop":{"background-color":"var(--ast-global-color-4)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"ast-content-background-meta":{"desktop":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"tablet":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""},"mobile":{"background-color":"var(--ast-global-color-5)","background-image":"","background-repeat":"repeat","background-position":"center center","background-size":"auto","background-attachment":"scroll","background-type":"","background-media":"","overlay-type":"","overlay-color":"","overlay-opacity":"","overlay-gradient":""}},"footnotes":""},"categories":[71],"tags":[740,739,738,79,682],"class_list":["post-3495","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity-online-scam-alerts","tag-breached","tag-face","tag-hugging","tag-openai","tag-says"],"_links":{"self":[{"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/posts\/3495","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/comments?post=3495"}],"version-history":[{"count":1,"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/posts\/3495\/revisions"}],"predecessor-version":[{"id":3496,"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/posts\/3495\/revisions\/3496"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/media\/3497"}],"wp:attachment":[{"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/media?parent=3495"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/categories?post=3495"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/justfineinfotech.com\/fr\/wp-json\/wp\/v2\/tags?post=3495"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}