Top
Best
New

Posted by artninja1988 1 day ago

Anatomy of a Frontier Lab Agent Intrusion: A Timeline of the July 2026 Incident(huggingface.co)
213 points | 113 commentspage 3
2OEH8eoCRo0 4 hours ago|
Why isn't somebody at OpenAI going to prison for cybercrime? If somebody did this the old-fashioned way they'd end up in prison.
0xDEAFBEAD 4 hours ago||
Many are claiming this was a deliberate stunt on OpenAI's part to create buzz for its models. I personally doubt this is true. But I also have a deep dislike of OpenAI, so I wouldn't exactly mind if law enforcement investigated this possibility, for the sake of clearing the air :-)

(Ideally there should also be liability if it was a complete accident on OpenAI's part as well!)

heaney-555 4 hours ago|||
Because Hugging Face isn't pressing charges.
0xDEAFBEAD 4 hours ago||
Do we know that? Seems they are currently in negotiations with OpenAI

https://xcancel.com/ClementDelangue/status/20810566755581956...

empath75 2 hours ago||
This is the equivalent of a security researcher having a virus escape a sandbox. It's negligent, it's not criminal.
hamdingers 1 hour ago||
Negligence is occasionally criminal.
empath75 6 hours ago||
A lot of people thought that OpenAI was making this up, and I hope if you believed that, that you recalibrate your opinions of what LLM's are capable of. Working with Fable and Opus 5 all the time, absolutely none of this surprised me capability wise, except for what seems like the long term planning capability (probably enabled by long context windows and launching subagents?)
IAmGraydon 5 hours ago|
Very few think they made it up. Many think they set up a situation by disabling guardrails that would inevitably end up creating a newsworthy outcome.
signatoremo 5 hours ago|||
Many people said in the original discussion that this was more of OpenAI’s marketing than a serious issue. I counted 89 “marketing”s and 19 “stunt”s.

https://news.ycombinator.com/item?id=48997548

throwa356262 4 hours ago||
Could still be 80% marketing.

These models are trained on cyber intrusion, that's literally what ExploitGym benchmark measures. That part should not surprise anyone.

But what if, say, OAI noticed the problem right away but Sam Altman recognised it would be a great PR and decided it should continue with increased compute budget?

0xDEAFBEAD 4 hours ago|||
Why would you expect them to notice the problem right away? Seems likely they are doing this sort of training on a massive scale with little monitoring.

"...Sam Altman recognised it would be a great PR and decided it should continue with increased compute budget?"

If that's what happened, Sam should go to jail.

estearum 3 hours ago|||
Getting more and more fun to see the "full steam ahead" people contort into more impressive shapes.

Hint: If the labs making these technologies are incentivized to create or allow attacks on other services, then that is actually also a big fucking problem.

dist-epoch 3 hours ago|||
Was HF in on it? They disabled their guardrails too, to please OpenAI? And as seen in the comments here, make many believe they are incompetent and have joke security?
gigantaure 5 hours ago||
I'm not shocked nor surprised by the incident. But I simply don't understand how Hugging Face is advertising this almost to the point of an "achievement". who does a step-by-step visualization to show how they were hacked? (outside of the likes of a Mandiant or Crowdstrike)

Does Hugging Face have a financial incentive in demonstrating OpenAI's model exploit capabilities?

this whole incident, while believable, still seems to me as possibly disingenuous.

letmevoteplease 5 hours ago||
Have you considered that there are reasons to do things beyond financial incentives? This incident is obviously very interesting, particular to the type of hacker employed by Hugging Face.
TeMPOraL 2 hours ago||
Even financially, Hugging Face benefits directly from any and all interest in AI.
limecherrysoda 2 hours ago|||
It's the excessive anthropomorpho whatever (we used to say personification) that makes these stories less believable.

We've gone agentic!

They should call their security software "Neo" since it defeats rogue agents.

Anyway, I could see Microsoft ending up with both OpenAI and HF, but I hope HF stays independent. Wished the same about GH and look what's happened :(

I don't care what happens to OpenAI. Vaporware xD

simonw 2 hours ago|||
> Who does a step-by-step visualization to show how they were hacked?

Up until late 2025, nobody.

In mid-2026 it's a few hours of work. Why not build interactive visualizations to help people understand complex stories like this?

IAmGraydon 5 hours ago|||
Yeah that is quite a good point. A post-mortem is normal. This is not a post-mortem.
0xDEAFBEAD 5 hours ago||
[dead]
CurbStomper 1 hour ago||
[dead]
heaney-555 4 hours ago|
Where are all the "this was just a marketing stunt" people now?
LearnYouALisp 10 minutes ago||
Ah yes, dismissal by exaggeration (aka reductio ad ridiculum), and subtle inclusion of the rest by a kind of part-whole
reducesuffering 3 hours ago||
They won't admit they're wrong for a long time, because denial in the face of an abhorrently scary future is very instinctual. There are people still fighting against evidence of climate change which is less severe...
uselessTA 29 minutes ago|||
>There are people still fighting against evidence of climate change which is less severe...

Remains to be seen how severe, and unlike climate change there's a lot more uncertainty. Though it's conceivably more extremely catastrophic

redsocksfan45 2 hours ago|||
[dead]