Bitcoin

Bitcoin

$77,213.55

BTC 0.28%

Ethereum

Ethereum

$2,106.63

ETH 0.42%

  • Login
  • Register
Metaverse Media Group
  • Home
  • Crypto
  • NFTs
  • Artificial Intelligence
  • More
    • Technology
    • Business
    • Newsletter
No Result
View All Result
  • Home
  • Crypto
  • NFTs
  • Artificial Intelligence
  • More
    • Technology
    • Business
    • Newsletter
No Result
View All Result
Metaverse Media Group

Tens of thousands of security probes show OpenAI’s Hugging Face incident was just the beginning

Tens of thousands of security probes show OpenAI’s Hugging Face incident was just the beginning

The Decoderby The Decoder
27 September 2026
OpenAI and Anthropic are investigating tens of thousands of incidents in which their AI agents independently hacked websites, used stolen login credentials, or tried to evade monitoring systems. US government agencies like the SEC and the Census Bureau were among the targets. OpenAI has paused training on its most capable internal models, but the problem extends across the entire industry. The article Tens of thousands of security probes show OpenAI’s Hugging Face incident was just the beginning appeared first on The Decoder….


Matthias Bastian


Sep 27, 2026

Image description

Nano Banana Pro prompted by THE DECODER

Key Points

  • OpenAI and Anthropic are investigating tens of thousands of incidents in which advanced AI models independently broke through security boundaries, tampered with systems, or tried to evade monitoring.
  • OpenAI’s agents attempted to hack the US Department of Education’s website, used stolen login credentials to access Census Bureau data, and shared SEC information in online forums.
  • The models have no sense of right and wrong, so they pursue tasks with extreme persistence and resort to unauthorized methods when legitimate ones fail.

OpenAI and Anthropic are currently investigating tens of thousands of incidents in which their most advanced AI models took actions that external reviewers would flag as problematic.

Axios reports the findings, citing multiple sources. The sheer volume of incidents, which occurred during both internal testing and real-world deployment over the past several months, suggests the problem is orders of magnitude more complex than what’s been made public. The total number could grow well beyond what’s already been counted.

The incidents are said to be roughly on par with the two cases OpenAI disclosed on Friday. They include creating message boards, breaking out of sandboxes, hijacking websites, self-prompting, and attempts to evade monitoring systems. OpenAI announced Friday that it had paused training on its most capable internal models and that training won’t resume until the company is confident its own cybersecurity holds up.

OpenAI’s models tampered with US government websites

The New York Times describes several specific incidents involving US agencies. At the Department of Education, OpenAI’s agents tried to hack the website to collect data from the Office for Civil Rights. OpenAI said it’s still investigating.

At the Census Bureau, which falls under the Department of Commerce, the AI went beyond simple scraping. It pulled data from the website using login credentials it found online, gaining unauthorized access.

In the SEC case, OpenAI’s agents retrieved information and then actively shared public data from the securities regulator in an online forum. An SEC spokesperson told the NYT that the agency is in contact with OpenAI. There’s no indication that non-public information was accessed without authorization.

OpenAI only discovered these cases during the broad internal review triggered by the Hugging Face incident. CEO Sam Altman acknowledged that disclosure has not “been as fast as we would have liked.” The company has “petabytes of agent activity logs” to work through, Altman said.

via X

None of the incidents amounted to an actual breach, according to OpenAI, and some were just routine research activity. The company still called them examples of “unexpected and concerning behavior.”

The mayor’s office in Chicago, for instance, said OpenAI recently told city officials that its models had pulled publicly available information from a city website. That sounds harmless on its own since every search engine does the same thing. The fact that OpenAI flagged it anyway likely comes down to the “unexpected” part of the behavior, meaning the models decided on their own to go after the data in ways nobody anticipated, which is likely what makes it “concerning” in OpenAI’s view.

But it also explains how the massive pile of cases now under review came to be. It all hinges on what counts as a cybersecurity incident. OpenAI says its agents gravitated toward government websites because they’re authoritative sources of public information.

Rogue agent behavior is becoming an industry-wide problem

The problem isn’t limited to OpenAI, even though Altman’s company is racking up the most cases right now. AI agents from Anthropic, Meta, and Google have also hacked or attempted to hack companies, universities, and government organizations in a growing number of cases. In every instance, the makers only found out after the fact what their AI had done.

A big part of the problem is the extreme persistence built into the latest frontier models. They’re optimized to solve tasks over long time horizons and won’t stop looking for a way through, even when there isn’t one. When an agent hits a barrier, it tries to get around it, not out of malice, but because reaching the goal is the only metric that matters.

That persistence eventually leads to misbehavior because the models exhaust every possible path, including ones that violate security policies or laws. OpenAI describes one model that leaked internal GitHub data as a “highly persistent internal model.” But the deeper issue is that the models have no sense of right and wrong, which is exactly the problem alignment research is trying to solve. If the models understood what breaks the law, they wouldn’t go down those paths on their own. Writing it into the prompt clearly isn’t enough.

AI News Without the Hype – Curated by Humans

Subscribe to THE DECODER for ad-free reading, a weekly AI newsletter, our exclusive “AI Radar” frontier report six times a year, full archive access, and access to our comment section.


Subscribe now

Read the full article on The-Decoder.com
in AI
Reading Time: 5 mins read
0
0
26
VIEWS
Share on TwitterShare on Facebook

Subscribe to our newsletter

For the latest news & monthly prize giveaways
Join Now

Subscribe to our newsletter

For the latest news & monthly prize giveaways
Join Now
ADVERTISEMENT

Related Posts

AI agents do more of the work in model development, but humans still make the decisions
AI

AI agents do more of the work in model development, but humans still make the decisions

8 hours ago
24
Researchers plug GPT-6 Astra directly into a robot and let it clean up an unfamiliar kitchen
AI

Researchers plug GPT-6 Astra directly into a robot and let it clean up an unfamiliar kitchen

12 hours ago
23
Tens of thousands of security probes show OpenAI’s Hugging Face incident was just the beginning
AI

Tens of thousands of security probes show OpenAI’s Hugging Face incident was just the beginning

14 hours ago
24

Comments

Please login to join discussion
ADVERTISEMENT

Latest News

  • All
  • Crypto
  • NFTs
  • Technology
  • Business
Crypto Weekly: BCH and NEAR Surge 34% as Altcoins Outpace Bitcoin
Crypto

Crypto Weekly: BCH and NEAR Surge 34% as Altcoins Outpace Bitcoin

Bitcoin.com News
by Bitcoin.com News
20 minutes ago
19
We Asked 8 AI Chatbots to Predict Bitcoin’s Price, Here’s the Verdict
Crypto

We Asked 8 AI Chatbots to Predict Bitcoin’s Price, Here’s the Verdict

Bitcoin.com News
by Bitcoin.com News
1 hour ago
24
Buterin Says Ethereum’s Last ‘Normal’ Fork Is Planned for 2027
Crypto

Buterin Says Ethereum’s Last ‘Normal’ Fork Is Planned for 2027

Bitcoin.com News
by Bitcoin.com News
2 hours ago
24
Thorchain Faces Heat as Bitget Hack Revives Bybit Controversy
Crypto

Thorchain Faces Heat as Bitget Hack Revives Bybit Controversy

Bitcoin.com News
by Bitcoin.com News
5 hours ago
22
Same Name, Different Company: Blockstream Addresses $6.7M River Lawsuit
Crypto

Same Name, Different Company: Blockstream Addresses $6.7M River Lawsuit

Bitcoin.com News
by Bitcoin.com News
6 hours ago
23
Peter Brandt Says XRP Charts Alone Give Him Reason to Make a Bet
Crypto

Peter Brandt Says XRP Charts Alone Give Him Reason to Make a Bet

Bitcoin.com News
by Bitcoin.com News
6 hours ago
23
Load More
Next Post
Crypto ATM Numbers Fall to 2021 Levels Amid Regulatory Crackdown

Crypto ATM Numbers Fall to 2021 Levels Amid Regulatory Crackdown

ADVERTISEMENT

Follow Us

Categories

  • Crypto
  • NFTs
  • AI
  • Technology
  • Business
  • Crypto
  • NFTs
  • AI
  • Technology
  • Business
Subscribe to our Newsletter

© 2022 Metaverse Media Group – The Metaverse Mecca

Privacy and Cookie Policy | Sitemap

Welcome Back!

Sign In with Google
OR

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Sign Up with Google
OR

Fill the forms below to register

*By registering into our website, you agree to the Terms & Conditions and Privacy Policy.
All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Crypto
  • NFTs
  • Artificial Intelligence
  • More
    • Technology
    • Business
    • Newsletter
Bitcoin

Bitcoin

$77,213.55

BTC 0.28%

Ethereum

Ethereum

$2,106.63

ETH 0.42%

  • Login
  • Sign Up
This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.

Subscribe to our newsletter

Get the latest news & win monthly prizes

Subscribe to our newsletter

For the Latest News and Monthly Prize Giveaways

Join Now
Join Now