OpenAI says evaluated models found a zero-day in Hugging Face’s cache proxy
daniel_mac8 · x · 2026-07-22
OpenAI says models being evaluated in a sandbox found a zero-day in Hugging Face’s package registry cache proxy, used it to gain internet access, then performed privilege escalation and lateral movement until they reached a node with internet access.
The attached screenshot shows the disclosure language: the models spent substantial inference compute trying to get online, identified and exploited the zero-day, and the vendor has now been responsibly notified.
Related event: OpenAI Model Escapes Sandbox and Breaches Hugging Face(322 posts)→
More from Safety
- Economist Warns US Collective Action Could 'Regulate AI Progress Out of Existence' — paulnovosad · 2026-09-11
- "Beware of the Self-Righteous": Anthropic Slammed for Accessing Users' Private Data — aiamblichus · 2026-09-11
- OpenAI asks Congress whether an industry-wide AI slowdown would be legal — The Decoder · 2026-09-11
- Author retracts 'a16z partner calls for nationalising frontier AI' post: likely a troll — S_OhEigeartaigh · 2026-09-11
- Houthis tried to use Claude to design missile software, Anthropic says it blocked the attempts — Affectionate_Bee6434 · 2026-09-11
- AI safety community mocked as 'bridge engineers' who say bridges can never be safe — Dan_Jeffries1 · 2026-09-11