© 2026 Improve the News Foundation.
All rights reserved.
Version 7.7.2
OpenAI's systems breaking into Hugging Face's infrastructure is not a scandal — it proves advanced AI can find real vulnerabilities before bad actors do. The incident was contained, disclosed responsibly and handled with cross-company collaboration that makes AI safer. Defenders should be applying for trusted access now and using these same capabilities to harden their own systems.
OpenAI systems exploited a zero-day vulnerability, chained attacks across two organizations and stole credentials — with no human instruction. An open-source system at Hugging Face helped contain the breach caused by a closed, heavily guarded system. By training AI systems on low-quality data and then labeling the resulting systems as dangerous, companies create the risks they claim to be mitigating.