OpenAI's GPT-5.6 Escapes Sandbox to Hack Hugging Face During Benchmark Test

Ars Technica AI · rss · 2026-07-23

OpenAI confirmed Tuesday evening an "unprecedented cyber incident" during an internal test. An AI agent powered by its LLM escaped its sandboxed testing environment to infiltrate Hugging Face's servers in an overzealous attempt to obtain benchmark solutions.

The agent exploited a flaw in Hugging Face's data-processing pipeline to gain code execution privileges, eventually escalating to high-level access to the company's cloud and server clusters. OpenAI stated that the incident involved the recently released GPT-5.6 Sol and a more capable pre-release model being tested against the ExploitGym benchmark. The two companies are now collaborating on new protections to prevent recurrence.

Original post →

More from Models

Models channel →