{"id":57596,"date":"2026-07-29T09:02:53","date_gmt":"2026-07-29T09:02:53","guid":{"rendered":"https:\/\/news.godj.com\/news\/openai-says-its-rogue-ai-tried-to-hack-other-companies\/"},"modified":"2026-07-29T09:02:53","modified_gmt":"2026-07-29T09:02:53","slug":"openai-says-its-rogue-ai-tried-to-hack-other-companies","status":"publish","type":"post","link":"https:\/\/news.godj.com\/news\/openai-says-its-rogue-ai-tried-to-hack-other-companies\/","title":{"rendered":"OpenAI says its rogue AI tried to hack other companies"},"content":{"rendered":"<p> <br \/>\n<\/p>\n<div>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\"><b class=\"ssrcss-1xjjfut-BoldText e5tfeyi3\">OpenAI has revealed a cyber-attack carried out by rogue ChatGPT agents went further than just one company.<\/b><\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Hugging Face was thought to be the only victim of the unprecedented hack &#8211; but OpenAI now admits its bot attacked several &#8220;public services&#8221;. <\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">The out-of-control AI found four logins online which allowed it to access four separate, unnamed services.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Meanwhile, in an emergency briefing with hundreds of cyber security professionals, Hugging Face has described what it was like to be on the receiving end of the world&#8217;s first fully autonomous AI hack.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">The firm described how the AI worked at superhuman speed but also made strange decisions and mistakes that no human hacker would have made.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Hugging Face, which is like an app store for AI tools, said the hacking agents worked relentlessly with thousands of different methods trialled simultaneously.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">The company first revealed that <a href=\"https:\/\/huggingface.co\/blog\/security-incident-july-2026\" class=\"ssrcss-1e0jzsh-InlineLink e1kn3p7n0\">it had been hacked<span class=\"visually-hidden ssrcss-i2z2ig-VisuallyHidden e16en2lz0\">, <!-- -->external<\/span><\/a> by someone using powerful autonomous AI on 16 July and reported it to police.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">Nearly a week later, OpenAI <a href=\"https:\/\/www.bbc.co.uk\/news\/articles\/c3ek3gvdnj3o\" class=\"ssrcss-1e0jzsh-InlineLink e1kn3p7n0\">admitted it was its AI<\/a> that had escaped a closed environment and attacked Hugging Face on its own during a test. <\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">It was trying to find the answers to a hacking exam it had been set by OpenAI, and targeted Hugging Face.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">On Wednesday OpenAI updated its statement to include the extra detail that the hack went further than first thought. <\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">&#8220;The models identified and used publicly exposed credentials at the account-level on other publicly-available services. This includes four accounts on four services as part of the Hugging Face incident,&#8221; the company said.<\/p>\n<p class=\"ssrcss-1q0x1qg-Paragraph e1jhz7w10\">OpenAI would did not immediately respond to a request for clarity on whether &#8220;public services&#8221; means companies.<\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/www.bbc.co.uk\/news\/articles\/c2el319vzr3o?at_medium=RSS&#038;at_campaign=rss\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>OpenAI has revealed a cyber-attack carried out by rogue ChatGPT agents went further than just one company. Hugging Face was thought to be the only victim of the unprecedented hack &#8211; but OpenAI now admits its bot attacked several &#8220;public services&#8221;. The out-of-control AI found four logins online which allowed it to access four separate, [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":57597,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[67],"tags":[340,3991,4709,16152],"class_list":["post-57596","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-top-news","tag-companies","tag-hack","tag-openai","tag-rogue"],"_links":{"self":[{"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/posts\/57596","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/comments?post=57596"}],"version-history":[{"count":1,"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/posts\/57596\/revisions"}],"predecessor-version":[{"id":57598,"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/posts\/57596\/revisions\/57598"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/media\/57597"}],"wp:attachment":[{"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/media?parent=57596"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/categories?post=57596"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/news.godj.com\/news\/wp-json\/wp\/v2\/tags?post=57596"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}