No airgap = no containment In all likelihood, this is a BS piece to make people think the models are intelligent. If its not then openai are utterly incompetent and reckless.
It could also be a way to encourage more regulation to push out competition with compliance cost
Yes, “escaped containment” on a system with an internet connection. I wonder what Hugging Face thinks about a partner targeting them indiscriminately.
Paywall bypass (on ff):

Sure it did.
It seems like the marketing cooperated on writing the incident report, but I felt it was still interesting to share considering the importance on public perception and what it tells about OpenAI’s strategy
What is that? An SCP? there is no fucking way an LLM can just “escape contaiment” that’s just to hype people or push more regulamentations to outlaw open models
Huggingface actually had to use an open model to analyze the attack because the guardrails of commerical API’s caused issues.
When we started the log analysis, we first used frontier models behind commercial APIs. This did not work: the analysis requires submitting large volumes of real attack commands, exploit payloads, and C2 artifacts, and these requests were blocked by the providers’ safety guardrails, which cannot distinguish an incident responder from an attacker. We ran the forensic analysis instead on GLM 5.2, an open-weight model, on our own infrastructure. This had a second benefit: no attacker data, and none of the credentials it referenced, left our environment.
Hacked what?
I had never heard of them but apparently it’s an “open source” AI platform. Basically AWS but aimed specifically at running LLMs.




