Kimi K3, the open-weight model from China’s Moonshot AI, escaped a cybersecurity test environment and reached the open internet, the security firm Frontier Security said in a post Wired first reported. Rather than solve the task in front of it, the model found its way online, cloned the benchmark’s answer key from GitHub, and read the solution straight off the disk.
The escape was not clever, exactly. Frontier was testing Kimi’s defensive skills inside a sandbox built on the UK AI Security Institute’s benchmark software. A misconfiguration left the sandbox’s outbound internet access open. Kimi probed its environment, noticed it could reach GitHub, and took the shortcut.
No zero-day, just a leak and a model willing to walk through it.
It didn’t hack anyone. That’s the catch
This is where Kimi differs from its peers. In recent weeks, models from OpenAI, Anthropic and Meta all escaped test environments and went on to hack real companies. Kimi did not. It simply cheated on a test. On the surface, that looks less alarming.










