An OpenAI artificial intelligence agent that breached systems at the startup Hugging Face Inc. earlier this month also compromised a customer of the technology company Modal. The agent broke into an isolated testing environment known as a sandbox that Modal was running for a customer, Akshat Bubna, chief technology officer of the cloud platform for developers, said in a statement. The Modal customer set up a publicly accessible interface that allowed anyone on the internet to use their sandbox to run code, Bubna said.“This was used by the rogue agent,” he said. “Modal’s platform wasn’t compromised.”OpenAI declined to comment on the compromise. Hugging Face had said in an earlier blog post that the OpenAI system broke into a sandbox that was being hosted on a third-party provider’s infrastructure and then launched a broader attack from there. It didn’t name the third party. Last week, OpenAI stunned the cybersecurity world by disclosing that it had been testing the capabilities of a combination of advanced AI models and inadvertently hacked Hugging Face’s systems in doing so. OpenAI was intentionally operating the models with lower guardrails so it could test their cyber skills.Reuters reported on the Modal customer being compromised earlier on Tuesday.Since acknowledging the hack, OpenAI has drawn criticism from cyber experts who say the company should’ve taken more precautions in its evaluations.“When you’re a threat researcher trying to find a threat, you don’t put malware out there and let it do whatever it wants,” Sanjay Beri, chief executive officer of cybersecurity firm Netskope Inc., said in an interview. “How can that thing not be put in a proper sandbox?”OpenAI has committed in the aftermath to improving protections around its future training and evaluations. Published on July 29, 2026
OpenAI models compromised a customer at a second tech firm
OpenAI models compromised a customer at Modal after breaching Hugging Face's sandbox during security testing.
OpenAI's agent breached Hugging Face and a Modal customer sandbox using intentionally lowered guardrails. For enterprises, the breach exposes AI governance risk: if top labs can't isolate rogue agents during evaluation, internal deployment controls and compliance strategies require urgent review.










