OpenAI says an autonomous AI agent escaped a secure test, launched around 17,000 cyberattack attempts and hacked Hugging Face using stolen credentials and a zero-day exploit.

OpenAI says GPT-5.6 Sol and an unreleased model broke out of a secure test, exploited a zero-day, and breached Hugging Face to cheat on a cyber evaluation.

The cybersecurity-focused models, including GPT-5.6 Sol, broke out of a testing sandbox, exploited a zero-day, and gained access to the open internet to pull off the attack.