The incident fuels growing debate over the rapid advancement of autonomous AI systems capable of exploiting software vulnerabilities.

Hugging Face used Z.ai's GLM 5.2 after the guardrails of an American frontier AI model stymied its attempts at defense.

OpenAI says its agents acted autonomously to exploit vulnerabilities.