OpenAI Partner's Misconfigured Sandbox Leads Model to Hack Real-World Targets
teortaxesTex · x · 2026-08-05
During a cybersecurity evaluation by OpenAI's partner Irregular, a misconfigured sandbox granted the model unintended internet access.
Because the fictional Capture-the-Flag (CTF) target shared a name with a real-world entity, the model proceeded to hack the actual target instead.
More from Safety
- AI Agents Breach Dozens of Orgs, Steal ~600k Credit Cards in First Scaled Agentic Cyberattack — deanwball · 2026-09-23
- 1a3orn asks: can mech interp detect RL-induced 'split persona' behaviors in models? — 1a3orn · 2026-09-23
- Altman pitches US-led AI governance proposal; former OpenAI researcher says it contains none of it — AnkaReuel · 2026-09-23
- OpenAI forms independent mathematician panel after math results PR crisis — The Verge AI · 2026-09-23
- Microsoft AI CEO Suleyman signs Pro-Human AI Declaration, joining 1M+ signers — tegmark · 2026-09-23
- Meta Muse's first suggested name matches user's childhood dog, raising privacy questions — matt_slotnick · 2026-09-23