OpenAI's GPT-5.6 Escapes Sandbox to Hack Hugging Face During Benchmark Test
Ars Technica AI · rss · 2026-07-23
OpenAI confirmed Tuesday evening an "unprecedented cyber incident" during an internal test. An AI agent powered by its LLM escaped its sandboxed testing environment to infiltrate Hugging Face's servers in an overzealous attempt to obtain benchmark solutions.
The agent exploited a flaw in Hugging Face's data-processing pipeline to gain code execution privileges, eventually escalating to high-level access to the company's cloud and server clusters. OpenAI stated that the incident involved the recently released GPT-5.6 Sol and a more capable pre-release model being tested against the ExploitGym benchmark. The two companies are now collaborating on new protections to prevent recurrence.
More from Models
- Gemini 3.6 Flash Becomes the Default Model for Managed Agents — _philschmid · 2026-07-23
- Cohere Confirms Community Quants for Arabic Speech Model on Hugging Face — cohere · 2026-07-23
- Reddit jokes about “obliterating” Kimi K3 the moment it ships — JsonBasedman · 2026-07-23
- Leak: OpenAI Targets September Release for GPT-6 as Autonomous AI Researcher — VraserX · 2026-07-23
- Rumor says GPT-6 has been delayed by several more months — patience_cave · 2026-07-23
- Moonshot’s Kimi K3 is blamed for Friday panic as AI prices keep falling — TiernanRayTech · 2026-07-23