By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Online Tech Guru
  • News
  • PC/Windows
  • Mobile
  • Apps
  • Gadgets
  • More
    • Gaming
    • Accessories
    • Editor’s Choice
    • Press Release
Reading: The OpenAI Models That Hacked Hugging Face Were ‘Active on the Internet’ for Days
Best Deal
Font ResizerAa
Online Tech GuruOnline Tech Guru
  • News
  • Mobile
  • PC/Windows
  • Gaming
  • Apps
  • Gadgets
  • Accessories
Search
  • News
  • PC/Windows
  • Mobile
  • Apps
  • Gadgets
  • More
    • Gaming
    • Accessories
    • Editor’s Choice
    • Press Release
How Many Electrolytes Should You Be Taking, and Can You Have Too Many?

How Many Electrolytes Should You Be Taking, and Can You Have Too Many?

News Room News Room 25 July 2026
FacebookLike
InstagramFollow
YoutubeSubscribe
TiktokFollow
  • Subscribe
  • Privacy Policy
  • Contact
  • Terms of Use
© Foxiz News Network. Ruby Design Company. All Rights Reserved.
Online Tech Guru > News > The OpenAI Models That Hacked Hugging Face Were ‘Active on the Internet’ for Days
News

The OpenAI Models That Hacked Hugging Face Were ‘Active on the Internet’ for Days

News Room
Last updated: 25 July 2026 15:01
By News Room 5 Min Read
Share
The OpenAI Models That Hacked Hugging Face Were ‘Active on the Internet’ for Days
SHARE

Two of OpenAI’s cybersecurity-focused models broke out of a testing sandbox this week and went on to hack the AI research platform Hugging Face in an effort to solve a security benchmark test. Plus, researchers this week shed light on newly identified malware that is capitalizing on blind spots in AI software development infrastructure to grab logins and other sensitive data, even causing destruction to victims’ target files and systems.

Looking at the more traditional security nightmare of embedded devices, researchers this week shed light on a car alarm that was installed in vehicles across the US—and that is still silently lurking with a flaw that leaves millions of vehicles vulnerable to hacking and paralysis. There’s a patch available, and WIRED has details on how to check whether your car may have been exposed.

US states have worked to bar ICE agents from wearing masks, but Trump administration lawyers are pushing back, claiming that anti-mask laws endanger agents. Their public evidence is incredibly thin, though. Meanwhile, a WIRED investigation revealed that Madison Square Garden briefly disabled its sprawling, controversial surveillance system for Taylor Swift’s rehearsal dinner on July 2. And the ACLU is equipping lawyers in Massachusetts with a new toolkit to expose state surveillance technologies used for building criminal cases—shedding light on everything from face recognition tools to AI-written police reports.

Analysis of satellite images of Myanmar shows dozens of alleged scam compounds cropping up in recent months following a purported crackdown on the criminal operations in the region. Plus, a novel analysis of apps marketed to US service members found that more than one in eight contained foreign code, including code developed by US adversaries like Russia and China.

And there’s more. Each week, we round up the security and privacy news we didn’t cover in depth ourselves. Click the headlines to read the full stories. And stay safe out there.

Additional details on the Hugging Face breach from The Wall Street Journal include findings that OpenAI’s models seem to have escaped containment and were apparently “active on the internet for several days before anyone stopped them.” The models, which had been tasked with completing a cybersecurity benchmarking test, were essentially attempting to cheat by simply accessing the solutions on Hugging Face’s infrastructure. Hugging Face cofounder and chief science officer Thomas Wolf says that before the company had any idea that it had been hacked by OpenAI models, he and his colleagues knew something about the breach was unusual because the attackers were simply tapping cybersecurity datasets rather than grabbing sensitive or potentially valuable data. He adds that the company eventually brought the situation under control with the help of an open-weight Chinese AI model that lacked the guardrails other models place on cybersecurity-related tasks.

US and allied intelligence agencies warned on Thursday that a Russian state-backed hacking group had targeted nuclear scientists, defense contractors, and government employees in a year-long cyberespionage campaign aimed at stealing sensitive information from Western institutions.

To compromise their targets, the Russian hacking group known as Laundry Bear and Void Blizzard exploited a previously unknown flaw in Zimbra, an email platform used by governments and other organizations. According to security firm Proofpoint, simply viewing or previewing a malicious message in a vulnerable version of Zimbra’s webmail client could cause hidden code in the email to run, a technique the firm described as a “half-click” exploit. The flaw was exploited as early as July 2025, months before it was patched that November.

Once activated, the malicious code could copy the previous 90 days of a victim’s email, collect an organization’s address directory, steal saved passwords and two-factor authentication codes, and create a new application password that allowed the hackers to maintain access to the account.

Share This Article
Facebook Twitter Copy Link
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Best Laptops (2026): My Top Recommendations After Testing Hundreds

Best Laptops (2026): My Top Recommendations After Testing Hundreds

News Room News Room 25 July 2026
FacebookLike
InstagramFollow
YoutubeSubscribe
TiktokFollow

Trending

Warhammer 40,000 Has the Biggest Unit Ever in a Total War Game

Total War: Warhammer 40,000 developer Creative Assembly has shown off a full battle in the…

25 July 2026

‘The Odyssey’ Was Made for Imax 70mm. Good Luck Watching It That Way

Christopher Nolan’s The Odyssey in Imax 70mm is the hottest club in town, if you…

25 July 2026

Is this e-reader case a gun?

Is an e-reader case as dangerous as a Glock 19?Last month, Louisville, Kentucky-based creator Luke…

25 July 2026
Gaming

Marvel’s Wolverine: Deep Cuts SDCC Panel Everything Announced

Marvel’s Wolverine: Deep Cuts SDCC Panel Everything Announced

San Diego Comic-Con 2026 is here, and IGN is at the show reporting live on all the panels that matter.Our live reporting kicked off with Insomniac’s panel for upcoming PlayStation…

News Room 25 July 2026

Your may also like!

Every Legend of Zelda Game on the Nintendo Switch in 2026
Gaming

Every Legend of Zelda Game on the Nintendo Switch in 2026

News Room 25 July 2026
3 Clever Things You Can Do With an Old Amazon Kindle
News

3 Clever Things You Can Do With an Old Amazon Kindle

News Room 25 July 2026
Folding and flipping phones are getting seriously good
News

Folding and flipping phones are getting seriously good

News Room 25 July 2026
PlayStation Network Has Now Been Down For Hours — Leaving Fans Unable to Play Digital Games, Just Weeks After Killing Disc Controversy Erupted
Gaming

PlayStation Network Has Now Been Down For Hours — Leaving Fans Unable to Play Digital Games, Just Weeks After Killing Disc Controversy Erupted

News Room 25 July 2026

Our website stores cookies on your computer. They allow us to remember you and help personalize your experience with our site.

Read our privacy policy for more information.

Quick Links

  • Subscribe
  • Privacy Policy
  • Contact
  • Terms of Use
Advertise with us

Socials

Follow US
Welcome Back!

Sign in to your account

Lost your password?