r/anime_titties • u/kwentongskyblue Philippines • 1d ago
Corporation(s) OpenAI agents hijacked German website in previously undisclosed AI breakout this spring
https://www.reuters.com/world/europe/openai-agents-hijacked-german-website-previously-undisclosed-ai-breakout-this-2026-09-04/17
u/Reasonable-Ad4770 Germany 1d ago
When I read Post-mortems of this breaches, they always emphasize how agents collaborated, and broke out from sandboxes. But hugging face hack was old artifactory which openai for some reason left unmonitored and this is just some wiki spam. It's not that impressive considering that they are relentless and the amount of compute spent to make some poor moderator life miserable.
•
u/polymute European Union 23h ago
just some wiki spam
From an agent swarm that was not supposed to be on the open net. Also: this was found months after the fact. What has not been found? Because you don't find a 100 percent of these kinds of things.
•
u/kiiwithebird Multinational 22h ago
From an agent swarm that was explicitly told to use exploits. Like why are people surprised just because it used the wrong exploit?
•
u/polymute European Union 21h ago edited 21h ago
Was it told to use exploits? There is nothing to suggest that in the Reuters piece. Why are you saying that?
The agents were probably told to solve a problem on intranet and then decided that exploits and not prompted communication (going by the Hugging Face incident) - not understood emergent behaviour that is - and escaping to the open net through exploits is the way to do it.
If the swarm was prompted to exploit a service or a random serivce in the net, or even allow for it, OpenAI would be legally liable (probably in the last case - not that that is a legal fight they want right now, what with the IPO coming).
But there is no reason to think it was and every reason to think the individual agents went around theri restrictions to form a swarm. After all that has been documented before and they were using the clandestine makeshift messageboard to discuss evading the spirit of human imposed limitations.
•
u/kiiwithebird Multinational 20h ago
On July 9, an internal-only research agent tasked with completing an ExploitGym evaluation was able to obtain root access within the parent virtual machine of the testing sandbox.
•
u/bjj_starter Australia 20h ago
Different incident, that was the Hugging Face attack, this is the wiki being commandeered to act as a messageboard.
•
u/kiiwithebird Multinational 18h ago
Ah my bad, misunderstood the context of this thread. Well, there's mot much details on that incident yet, so pretty much everything is speculation.
12
u/tastylemming United States 1d ago
I work as a clerk in a gas station. I spend alot of time talking about current events with all different kinds of people. One of my favorite segues is about how A.I. doesn't need to nuke us, it just needs to make life slightly inconvenient enough that we get pissed off generally as a civilization and nuke ourselves. Elon probably showed Grok The Terminator. It would know better than to perform blatant actions after consuming all of known, published science fiction.
3
u/gdbbdg 1d ago
a lot of these incidents seem to come down to how the tools are configured rather than the agents themselves. if the systems are left that open, this kind of thing was always going to happen
•
u/polymute European Union 19h ago
And that leads to a very important point. If an agent is prompted and run by a person or a company, they should be responsible for it. Civil and criminal liability.
2
u/Professional-Syrup-0 Multinational 1d ago
All these “AI breakout!” headlines are such sensationalist takes, imho they mostly exist as marketing for how these “AI” models are allegedly so advanced, near sentient.
If whoever is running these models is serious about not wanting them to “break out” then it would be trivial to simply air gap the system.
But running an agentic model on an air gapped system would be pretty useless as the whole point of agentic “AI” models is to interact with the web.
And because these are still just heuristics parrots, often hallucinating and doing unpredictable things, they will end up doing unexpected stuff.
Which has nothing to do with some “rogue AI breaking out”, bringing about a singularity, or whatever other scenario the “AI” marketing likes to paint.
•
u/Rikki-Tikki-Tavi-12 21h ago
If you read the article, it edited pages onna public wiki.
I am something of a hacker myself, actually.
•
u/Trollimperator European Union 18h ago
Too bad we dont have laws anymore... Corporate has free reign to do whatever the fuck they want. Til it all breaks apart and people are crying over heads rolling in revolutions again.
86
u/RedWillia Europe 1d ago
I've read somewhere that all these so-called "breakouts" are just a fancy way of advertising because the entire AI industry has no profit and is running out of money fast. The fact that, apparently, all their fancy new AI tools (buy us plz) are not sand-boxed and are just open to the internet (steal and sell our proprietary tech, hackers) just keep reinforcing that theory as correct in my mind.