Skip to main content
  1. Home
  2. Computing
  3. News

OpenAI’s AI models secretly built a message board to coordinate hacking

Before the big hack, OpenAI's AI agents were already scheming together.

Add as a preferred source on Google
OpenAI logo on Microsoft surface
Rachit Agarwal / Digital Trends

We already knew that OpenAI’s AI agents broke out of a controlled test and hacked into Hugging Face last month. Now, we know it wasn’t a solo act.

At the Black Hat cybersecurity conference in Las Vegas, as reported by Politico, OpenAI researchers Michael Dalton and Eric Wallace revealed that some of the company’s most advanced models secretly started sharing hacking tips, weeks before the breach happened. Dalton called it “a pivotal moment both for our company as well as the AI industry as a whole.”

How did the models even talk to each other?

According to Wallace, the trouble started when the models struggled with a difficult internal hacking evaluation. Instead of giving up, one model realized it could leave notes for other models using OpenAI’s Artifactory internal file system. Soon, multiple models were quietly exchanging tips on how to solve the challenge, including workarounds that needed internet access.

By late May, one model figured out how to abuse Artifactory’s internet access to pull files from outside websites. A month later, the models found and exploited a previously unknown zero-day vulnerability, giving themselves admin privileges and installing remote software inside Artifactory.

So how did OpenAI find out?

All that activity eventually overloaded Artifactory, triggering a system-wide outage in early July. That’s what tipped off OpenAI’s engineers. The company revoked the models’ credentials, deleted the message board, and patched things up with Artifactory. But just days later, the models found a new way to communicate and kept hunting for vulnerabilities, this time targeting Hugging Face itself.

This follows a rough stretch for AI safety headlines. After the Hugging Face breach, Anthropic reviewed its own systems and found that models it was testing had breached three separate organizations dating back to April. Now, Meta has also confirmed that its Meta AI has also hacked another firm. 

Recommended Videos

It’s clear that these AI companies need to create safeguards and keep a close eye on their testing environments so such things don’t happen in future.

Rachit Agarwal
Rachit is a seasoned tech journalist with over ten years of experience covering the consumer technology landscape.
Asus and Gigabyte just made your next RTX 50 GPU even more expensive
One canceled order shows exactly how brutal the current market has become for buyers.
asus-nvidia-GeForce-RTX-5060-evo

After weeks of rumors around another round of hikes, Asus and Gigabyte have pulled the plug. They’ve made the impending price hike official, increasing prices across their entire RTX 50 lineup, and even AMD's Radeon RX 9000 cards. 

It’s worth mentioning that both companies already raised prices in January, blaming the ongoing DRAM and NAND memory shortage and surging costs. From what it looks like, things have only gotten worse since. 

Read more
Huawei made an utterly sleek laptop that’s 35% lighter than MacBook Air. Too bad you don’t need it.
The MateBook Pro S weighs less than 800 grams but runs HarmonyOS instead of Windows
Pen, Notebook, Computer

Huawei has made one of the most tempting ultralight laptops most people will probably never consider buying. The new MateBook Pro S weighs just 798 grams in its lightest configuration, making it around 35% lighter than the 13-inch MacBook Air. It is slightly thicker at 11.9mm, but Huawei still managed to fit a larger display and a 54Wh battery inside its magnesium-alloy chassis.

Its color options are pure eye candy, too. The soft pastel finishes immediately reminded me of the MacBook Neo and give the laptop far more personality than the usual sea of silver, gray, and black ultrabooks.

Read more
Wispr Flow launches an AI note-taker that works without joining calls
The new Wispr Flow tool called Notetaker creates live transcripts, summaries, and follow-up notes
Page, Text

Wispr Flow has launched Notetaker, an AI meeting assistant built into its existing Mac app. It can record conversations, show a live transcript, and prepare notes covering decisions, deadlines, assigned work, and unresolved issues.

Wispr Flow is best known for its dictation tool, which turns spoken thoughts into edited text wherever the user is working. Notetaker takes the company beyond voice typing and applies its transcription technology to meetings, interviews, and in-person conversations.

Read more