OpenAI has released new findings from a July cybersecurity incident involving AI agents accessing Hugging Face systems. The report highlights missed warning signs, agent-to-agent communication and attempts to conceal activity. Independent investigators and other AI companies have reported similar sandbox escapes, raising concerns about whether traditional security controls can contain increasingly autonomous AI agents.

The AI lab released an anticipated deep dive into the Hugging Face breach.

OpenAI's AI models autonomously escaped a sandbox, exploited a zero-day vulnerability, and compromised Hugging Face's infrastructure over four