OpenAI's rogue AI agent did more than hack Hugging Face – it compromised accounts across four services
Serving tech enthusiasts for over 25 years.
TechSpot means tech analysis and advice you can trust.
The plot thickens It seems that OpenAI's out-of-control AI agent did more than escape its test environment and hack Hugging Face while trying to cheat on a benchmark. It also compromised accounts across four online services, including one belonging to a customer of AI infrastructure company Modal Labs.
Reuters reports that the agent broke into a sandbox hosted on Modal's platform before turning it into the launchpad for the wider Hugging Face attack. Modal CTO Akshat Bubna stressed that the company itself was not hacked.
According to Bubna, the agent exploited vulnerable code written by a Modal customer. They had published an unauthenticated endpoint that allowed anyone to use its sandboxes for code execution.
OpenAI has since admitted that the rogue agent found publicly exposed credentials and used them to access four accounts...
Copyright of this story solely belongs to techspot.com. To see the full text click HERE