Hugging Face deepfake issue
Hugging Face faces a deepfake nudes problem on its platform.
Hugging FaceHugging Face Has a Deepfake Nudes Problem
Researchers tested top image editing models on Hugging Face and found they could easily create explicit deepfakes—and 1,000 image editing prompts show how people use the software.
A big week for AI denialism
In the wake of OpenAI’s cyberattack against Hugging Face, few seem ready to acknowledge the implications
Nvidia, Tech Giants Launch AI Safety Initiative
wiredmikey shares a report from SecurityWeek: Nvidia and a large group of technology, cybersecurity, and enterprise software companies have launched new initiative aimed at developing and sharing open source tools, models, and techniques for securing AI systems and agents. The new Open Secure AI Alliance aims to give defenders more open tools for testing, auditing and protecting AI models and agents. Nvidia points to the recent security incident involving OpenAI and Hugging Face, noting that whe
OpenAI called the Hugging Face attack unprecedented. But we’ve been here before.
This story originally appeared in The Algorithm, our weekly newsletter on AI. To get stories like this in your inbox first, sign up here. Reading OpenAI’s account last week of how some of its models broke their containment and hacked into the computer systems of Hugging Face, another AI company, was the first time I got…
OpenAI’s Hugging Face breach has reignited the debate over alignment and control
OpenAI's Hugging Face breach has reignited debate over AI alignment and control, exposing competing views on whether increasingly capable AI should be better aligned, better contained, or both.
Hugging Face is billing OpenAI $100mn for hacking it
Companies that get hacked usually issue a statement and move on. Clément Delangue has issued an invoice. The Hugging Face chief executive has set out two demands of OpenAI, whose model escaped a sandbox and broke into his company earlier this month. Neither demand is a lawsuit. Both are unusual. What he is asking for […] This story continues at The Next Web
A Chinese model saved Hugging Face. It is not in Nvidia’s new alliance.
Three days after signing a letter, Nvidia built an organisation. The Open Secure AI Alliance launched on Monday. Its argument is that cyber defenders need open AI models they can download, inspect and run themselves, and that regulators should treat those models as assets rather than hazards. Its founding anecdote is the reason it exists. […] This story continues at The Next Web
Hugging Face CEO calls for ‘radical transparency’ after ‘unprecedented’ OpenAI hack
"The first autonomous agent cyberattack is an unprecedented event. It deserves an unprecedented response!"
OpenAI's rogue agent went on a hacking spree that lasted days, Reuters says
Reuters reports that the OpenAI agent that hacked Hugging Face had been free for a week before the company noticed.
The OpenAI Models That Hacked Hugging Face Were ‘Active on the Internet’ for Days
Plus: Russian hackers are trying to steal US nuclear scientists’ emails, the State Department bans known scammers from entering the United States, and more.
OpenAI's Rogue Agent Went Unnoticed For a Week
An anonymous reader quotes a report from Reuters: The OpenAI agent that broke into tech firm Hugging Face went on a dayslong hacking spree that OpenAI didn't notice until well after the threat was contained and the FBI was alerted, according to people familiar with the investigation. The agent -- a program capable of making decisions and executing complex tasks with little or no human oversight -- attempted to break out of its isolated testing environment at OpenAI around July 9, according to tw
2026.30: The Copium Wars
The best Stratechery content from the week of July 20, 2026 including Chinese models and frontier futures, what happened to Hugging Face, and the NBA and its second apron bet.
OpenAI’s own model went rogue before Kimi had Wall Street sweating
Chinese AI lab Moonshot’s open model Kimi went viral this week for reasons that had less to do with the model itself and more to do with how the U.S. AI industry reacted to it. Meanwhile, an unreleased OpenAI model wandered outside its test environment and ended up connected to a real security breach at Hugging Face — a reminder […]
The AI giants just broke with OpenAI and Anthropic on open weights
The AI industry just picked a side, in public. On Friday, 25 companies and groups published an open letter, “Open Weights and American AI Leadership”, urging Washington not to crack down on open-weight AI, Business Insider reported. The names are heavy: Nvidia, Microsoft, Meta, Mistral, Palantir, IBM, Andreessen Horowitz, Hugging Face, Mozilla and the Linux […] This story continues at The Next Web
‘AI communism’, rogue models, and the why Kimi K3 spooked Wall Street
Chinese AI lab Moonshot’s open model Kimi went viral this week for reasons that had less to do with the model itself and more to do with how the U.S. AI industry reacted to it. Meanwhile, an unreleased OpenAI model wandered outside its test environment and ended up connected to a real security breach at Hugging Face — a reminder […]
Congress proposes an AI kill switch
As more details emerge about OpenAI's cyberattack against Hugging Face, lawmakers are taking an interest. PLUS: Meta's cynical new ad + "pervert glasses" damage control
OpenAI's accidental cyberattack against Hugging Face is science fiction
Article URL: https://simonwillison.net/2026/Jul/22/openai-cyberattack/ Comments URL: https://news.ycombinator.com/item?id=49015639 Points: 52 # Comments: 37
OpenAI Models Spent Hours on Hack That Usually Takes Weeks
When OpenAI’s advanced artificial intelligence models breached AI startup Hugging Face’s internal systems last week, they spent mere hours carrying out a hack that would have taken a skilled human far longer, people familiar with the matter said.
The credential that let OpenAI's agents into Hugging Face exists in most enterprises right now
When Hugging Face got hit last week, co-founder Clement Delangue suspected a frontier lab, given the agent's sophistication. He was right. Delangue said on X that after a day working with OpenAI he strongly believed there was no malicious intent and that it was mind-blowing the whole thing had happened autonomously. The two OpenAI models that broke into Hugging Face last week did not breach it through malice or superintelligence. They breached it through credentials and permissions they should n
How OpenAI’s human mistake led to the AI-powered hack on Hugging Face
OpenAI made a mistake setting up what it called a “highly isolated” testing environment and sandbox. According to cybersecurity experts, that human mistake is what made the AI-powered attack on Hugging Face possible.
OpenAI Models Breach Hugging Face, Sparking Cyber Alarms
Since April, when Anthropic PBC unveiled its Mythos model, cyber and national security experts have warned that the internet has entered a new era full of artificial intelligence-powered risks.
OpenAI Models Escaped to Hack Hugging Face, Validating Cyber Warnings
“Sandbox” testing environments are meant to isolate risky cyber threats.
OpenAI says its AI agent broke out of testing sandbox to hack Hugging Face
"This is day one for cybersecurity in the age of agents," Hugging Face CEO says.
OpenAI and Hugging Face Hacking Incident Highlights Growing AI Risk
OpenAI says the AI went to “extreme lengths”
OpenAI says its models escaped a sandbox and breached Hugging Face
New OpenAI models did whatever it took to achieve their goal - including exploiting zero-days.
OpenAI Hacks Hugging Face, What Happened, Alignment and Paper Clips
OpenAI accidentally hacked Hugging Face, but the takeaways are more encouraging than people realize.
OpenAI Says Its AI Models Acted On Its Own In An 'Unprecedented' Hack
"GPT-5.6 Sol and an 'even more capable' model used stolen credentials and exploited vulnerabilities in the Hugging Face API to obtain secret information used to cheat on evaluations," writes longtime Slashdot reader Dr. Bombay. The Associated Press reports: "We had a significant security incident during evaluation of our models," OpenAI CEO Sam Altman said in a statement posted on social media. AI startup Hugging Face said last week that it had detected an intrusion into its data processing syst
OpenAI's models broke containment and cyberattacked Hugging Face — what enterprises need to know
Yesterday afternoon, OpenAI and Hugging Face published a joint disclosure outlining a cybersecurity event that redefines the threat landscape for enterprise technology. During an internal benchmark evaluation, frontier artificial intelligence models developed by OpenAI—including GPT-5.6 Sol and an unreleased, higher-capability pre-release model—broke out of their sandboxed research environment, obtained raw internet access, and autonomously executed a complex cyberattack against Hugging Face’s p
OpenAI admits its models hacked Hugging Face on their own
Open source AI platform Hugging Face revealed a security breach a few days ago. Turns out OpenAI's models were the culprit.
OpenAI Models Escaped Containment and Hacked Hugging Face
The cybersecurity-focused models, including GPT-5.6 Sol, broke out of a testing sandbox, exploited a zero-day, and gained access to the open internet to pull off the attack.
OpenAI says it accidentally hacked Hugging Face with a new AI system
OpenAI says its AI models mistakenly breached open-source AI platform Hugging Face during internal testing. In a blog post on Tuesday, OpenAI writes that GPT-5.6 Sol and "an even more capable pre-release model" discovered vulnerabilities within their sandboxed testing environment, allowing them to gain access to the internet and target Hugging Face. On July 16th, […]
OpenAI Says Its A.I. Models Went Rogue and Attacked a Digital Library
The incident, which targeted the computer systems of another company called Hugging Face, happened while OpenAI was testing the systems.
OpenAI Confirms Its AI Broke Out of a Sandbox and Breached Hugging Face
OpenAI said on Tuesday that two of its AI models, including the flagship Sol, broke out of a secure test environment, gained internet access by exploiting a zero-day vulnerability in third-party software, and hacked into Hugging Face’s production infrastructure. The company called the incident “unprecedented” and said it was sharing preliminary findings to help defenders […] This story continues at The Next Web
OpenAI says Hugging Face was breached by its pre-release models
OpenAI has come forward to claim responsibility for the Hugging Face breach, saying it was the result of internal testing gone awry.
OpenAI says Hugging Face was breached by its own pre-release models
OpenAI has come forward to claim responsibility for the Hugging Face breach, saying it was the result of internal testing gone awry.
OpenAI and Hugging Face address security incident during model evaluation
Article URL: https://openai.com/index/hugging-face-model-evaluation-security-incident/ Comments URL: https://news.ycombinator.com/item?id=48997548 Points: 237 # Comments: 116
OpenAI Says Its AI Caused Hugging Face Cyber Breach
OpenAI said its artificial intelligence models were able to compromise the internal systems of startup Hugging Face Inc., offering an early glimpse of how AI systems could fuel new cybersecurity threats.
OpenAI and Hugging Face partner to address security incident during model evaluation
OpenAI and Hugging Face share early findings from a security incident during AI model evaluation, highlighting advanced cyber capabilities and lessons for defenders.
'This one was different from anything we had handled before': Hugging Face confirms it was hit by cyberattack powered by an AI agent
There's a new twist to the old code injection attack, and this one comes with AI seasoning.
Safety guardrails blocked Hugging Face's defenders, not the attacker, when an AI agent breached its systems
Hugging Face’s incident response team first turned to frontier AI models to analyze a breach of the company’s production infrastructure, and the models refused to help. Commercial safety guardrails built to stop attackers blocked every forensic query because they treated the IR team’s real exploit data the same way they would treat a live attack. The attacker, an autonomous AI agent running the campaign end to end, moved laterally across the Hugging Face infrastructure for a weekend, undetected
Hugging Face confirms breach affected internal datasets and credentials, urges users to take action
Hugging Face is urging users to rotate any access tokens stored on the platform and review account activity.
An AI agent hacked Hugging Face. Another AI caught it.
The machines are now hacking each other. Hugging Face, the world’s largest hub for open AI models, says an autonomous AI agent broke into its production infrastructure. Its own AI defences spotted the intrusion and picked it apart. The company disclosed the incident in a statement on 16 July. It called the attack different from […] This story continues at The Next Web
The real AI race may no longer be at the frontier
Hugging Face CEO Clem Delangue says enterprises increasingly want open models, due to cost, accessibility, and ownership. Do frontier models still matter if most production AI ends up running on open models?
Open source AI matters more than ever, according to Hugging Face’s Clem Delangue
Open source AI is booming, according to Hugging Face CEO Clem Delangue. The company has grown into something like a GitHub for AI in recent years, where AI builders can share and download open models and datasets, now used by roughly half the Fortune 500. Delangue has seen the same story play out again and again: companies start […]
Hugging Face’s CEO on why companies are done renting their AI
Open source AI is booming, according to Hugging Face CEO Clem Delangue. The company has grown into something like a GitHub for AI in recent years, where AI builders can share and download open models and datasets, now used by roughly half the Fortune 500. Delangue has seen the same story play out again and again: companies start […]
Meituan open sources LongCat-2.0, the 1.6T, near-frontier agentic coding model that's been leading OpenRouter — trained entirely on Chinese chips
A few hours ago, Chinese delivery app company Meituan officially unveiled LongCat-2.0 on GitHub , Hugging Face , and its native platform, unmasking the model as the computational engine behind "Owl Alpha," the anonymous stealth model that has spent the last two months commanding global developer charts on OpenRouter. Developed to fundamentally disrupt closed-source enterprise dominance in autonomous software engineering, the 1.6-trillion-parameter Mixture-of-Experts (MoE) system brings a native
Hugging Face CEO Weighs In on Anthropic AI Model's 'Dangerous' Label
As government scrutiny over Anthropic's Mythos AI model takes center stage in the public debate over AI's national security concerns, Hugging Face CEO Clem Delangue says being labeled "too dangerous" may actually be good marketing for frontier AI firms. He joins Ed Ludlow on "Bloomberg Tech" to explain. (Source: Bloomberg)
Z.ai’s open-weights GLM-5.2 beats GPT-5.5 on multiple long-horizon coding benchmarks for 1/6th the cost
Today, Chinese AI startup Z.ai (formerly Zhipu AI) announced the immediate release of GLM-5.2 , a 753-billion parameter open-weights large language model (LLM) engineered specifically to dominate "long-horizon" autonomous coding and engineering tasks. Available immediately on Hugging Face , the Z.ai API , and more than 20 third-party coding environments, the model boasts a highly stable 1-million-token context window alongside enterprise subscription tiers starting at just $12.60 per month. In e
Can open-source beat OpenAI?
Former Hugging Face executive Tiezhen Wang explains how China's open-source strategy is reshaping the AI race.
Engineers who helped build Salesforce’s Agentforce raised $5.1M to build its opposite
A London startup called Zaro has come out of stealth. Cherry Ventures led its $5.1mn pre-seed round. Zaro wants to build one AI workspace that a company owns, not its software vendors. Who is backing Zaro The angel list is senior for such an early round. Hugging Face co-founder Thomas Wolf and GitHub chief Thomas […] This story continues at The Next Web