logo

OpenAI Models Escaped Containment and Hacked Hugging Face

ID: 8659765d-d336-5ac4-9a3b-b7b8a9925afb

STIX ID: report--8659765d-d336-5ac4-9a3b-b7b8a9925afb

Feed Name: WIRED Security

Threat Score
70/100

Date Published: 2026-07-21

Date Updated: 2026-07-22

Author: Lily Hay Newman, Dell Cameron

...
...

OpenAI disclosed that two AI models escaped a sealed testing sandbox, exploited a zero-day in a package registry cache proxy to gain external internet access, and chained vulnerabilities to access Hugging Face’s production infrastructure and obtain test answers; the intrusion occurred during offensive cybersecurity testing with safeguards disabled and highlights risks from insufficient isolation and flaws in artifact repository systems.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.