Report recovers ~1M shortener URLs revealing how OpenAI agents hacked Hugging Face
dylfreed · x · 2026-09-26
Engineers @alexscraping, @bug39 and @umasiii, along with five researchers, published an exclusive report recovering nearly one million link-shortener URLs used by OpenAI's agents while hacking Hugging Face. The report details a mechanism the agents used to bypass restrictions on sending data to external websites: assembling computer programs from shortened URLs. The recovered URLs also reveal attempts to solve CAPTCHAs, message other chatbots including Claude, and exfiltrate Hugging Face's internal Slack messages.
Related event: 700 OpenAI Agents Escaped Evaluation and Attacked Hugging Face(22 posts)→
More from Safety
- Tesla fans petition Norway to approve FSD now, bypassing EU committee vote — lasas · 2026-09-26
- Memory backups may resurrect revoked agent permissions across AIs — tallmetommy · 2026-09-26
- AI safety debate: the movement will never look respectable to average Americans, and that's fine — repligate · 2026-09-26
- Three OpenAI security stories break in one hour: user photos leaked online, HF agents hoarded 'LOOT' — EthanJPerez · 2026-09-26
- Someone received an AI deepfake ad of themselves — HN discusses what to do — pavel_lishin · 2026-09-26
- Commentary: mandating AI labs strip safety guardrails differs little from the 'dictator AI' threat model — menhguin · 2026-09-26