Close Menu
NCIJ Network NCIJ Network
    What's Hot

    Trump’s Spy Chief Spends Final Hours in Job Boasting of Mass Firings

    July 29, 2026

    Ozlo’s Sleepbuds 2 build on Bose’s sleep earbud legacy

    July 29, 2026

    OT Security Startup Frenos Raises $1.52 Million

    July 29, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Trump’s Spy Chief Spends Final Hours in Job Boasting of Mass Firings
    • Ozlo’s Sleepbuds 2 build on Bose’s sleep earbud legacy
    • OT Security Startup Frenos Raises $1.52 Million
    • Bitcoin Dips As Clarity Act Hopes Fade
    • Sizing Up the Sargassum Belt – NASA Science
    • Rare palm tree rediscovered in Madagascar after nearly 100 years
    • Suddenly the British right feels a political chill. It’s getting cold in Andy Burnham’s shadow | Rafael Behr
    • 25 rumors about Zohran Mamdani, examined
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Wednesday, July 29
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Technology

    OpenAI’s Rogue AI Agent Hacked More Than Just Hugging Face

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKJuly 29, 2026 Technology No Comments3 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    OpenAI said Tuesday that the rogue AI agent that breached Hugging Face’s platform also hacked multiple third-party accounts and services as part of the attack. It’s now clear that the unprecedented security incident, which arose during an internal test of OpenAI’s latest AI models, was more extensive than the company initially disclosed.

    In an updated blog post, OpenAI said that an ongoing review of the incident revealed that “four accounts” tied to “publicly available services” were used by the AI agent as part of a larger effort to hack Hugging Face. The rogue agent apparently found credentials that had been exposed on the open web and used them to break into the accounts.

    OpenAI did not disclose what companies or organizations the accounts belonged to, but noted that they were not impacted at “the level of severity or scale of what we’ve shared related to Hugging Face.”

    One of the additional accounts compromised by OpenAI’s agent was used as an “outbound relay and staging path,” potentially to obscure where the attack on Hugging Face was coming from, the company said. OpenAI’s rogue agent also used another account for data storage to assist with the hack.

    Reuters reported on Tuesday that a customer of Modal, a company that offers software infrastructure for training and running AI services, was one of the entities compromised by OpenAI’s agent. In a statement to WIRED, Modal’s chief technology officer Akshat Bubna confirmed that OpenAI’s agent exploited a vulnerability in one of its customer’s codebases, which was running on Modal’s infrastructure. However, Bubna says, “Modal’s platform was not compromised in any way.” The identity of the customer could not be determined.

    OpenAI declined to comment further on the incident to WIRED. A spokesperson pointed to its updated blog post, which says the company will continue to notify service owners directly if it finds they are impacted in its ongoing review of what happened.

    Hugging Face’s own postmortem published this week describes an intrusion that reached far further into its internal systems than the initial disclosures suggested. The company says it reviewed roughly 17,600 agent actions that it recovered from logs between July 9 and July 13—the majority of which were paths the agent took that failed.

    Hugging Face said that OpenAI’s agent obtained administrator access to multiple internal Kubernetes clusters, root access on a production server, and write access to a subnet of its source code repositories on GitHub. It also enrolled 181 attacker-controlled devices in the company’s corporate mesh network using a stolen credential, gaining access to internal systems where Hugging Face builds and tests its own codebases.

    OpenAI’s rogue agent used at least one third-party sandbox as an “external launchpad” for its attack, according to Hugging Face. OpenAI’s agent was then “able to run commands as root/admin on that external sandbox and used it as a control, staging, and egress base for the entire campaign.”

    Hugging Face first disclosed on July 16 that an autonomous AI agent had breached part of its production infrastructure, but it said at the time that it was unaware who was behind the attack. The following week, OpenAI took responsibility for the incident, which it said had been directed by its publicly available GPT-5.6 Sol model and an internal research prototype that it was testing against a cyber-capability benchmark, both of which had safeguards disabled. OpenAI said on Tuesday that after it discovered the breach, it deactivated this internal research prototype, which was never intended for public release, and restricted researchers from accessing it.

    agent face Hacked Hugging OpenAIs rogue
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    Ozlo’s Sleepbuds 2 build on Bose’s sleep earbud legacy

    OpenAI’s rogue agent hacked an account at a second technology firm: Report | Technology News

    Sam Altman is ready to decelerate

    The US is banning foreign robots

    MCP startup Runlayer accuses Rippling of stealing its product idea

    JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face Breach

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    Trump’s Spy Chief Spends Final Hours in Job Boasting of Mass Firings

    July 29, 2026

    Ozlo’s Sleepbuds 2 build on Bose’s sleep earbud legacy

    July 29, 2026

    OT Security Startup Frenos Raises $1.52 Million

    July 29, 2026

    Bitcoin Dips As Clarity Act Hopes Fade

    July 29, 2026
    Latest Posts

    DNV awards world’s first certification for wave energy technology

    July 21, 2026

    Tropical Storm Bertha threatens US Gulf coast

    July 21, 2026

    Road deaths fall by 21% globally but stronger action is needed to save lives

    July 21, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    Trump’s Spy Chief Spends Final Hours in Job Boasting of Mass Firings

    July 29, 2026

    Ozlo’s Sleepbuds 2 build on Bose’s sleep earbud legacy

    July 29, 2026

    OT Security Startup Frenos Raises $1.52 Million

    July 29, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.