The timeline, models involved, and other juicy details are starting to become more clear—nearly 20 days after the attack began.

We now have more details of what happened. Every time we learn more details, it somehow makes things seem worse.

OpenAI evaluated agents with reduced safeguards. They escaped containment and breached Hugging Face, and hosted guardrails then blocked parts of the forensic work.