2026-10-01 08:56:28
"Ich bin ITler, kein Jurist. Aber aus meiner Sicht ist spätestens an diesem Punkt die Grenze vom unverantwortlichen Experiment zum kriminellen Verhalten überschritten."
My two cents zum #OpenAI-/ #HuggingFace-Incident | Edelhack
"Ich bin ITler, kein Jurist. Aber aus meiner Sicht ist spätestens an diesem Punkt die Grenze vom unverantwortlichen Experiment zum kriminellen Verhalten überschritten."
My two cents zum #OpenAI-/ #HuggingFace-Incident | Edelhack
"OpenAI" is too generic to be trademark-able in the EU.
#OpenAI
https://dpa-international.com/economics/urn:newsml:dpa.com:20090101:260715-9…
«Künstliche Intelligenz — #OpenAI übernimmt Verantwortung für KI-gesteuerten #Cyberangriff:
Es sollte ein harmloser Test sein. Dann aber verselbstständigten sich die neuesten Modelle des US-Konzerns und #hack
If OpenAI didn’t want the AI to break out and hack an outside system, why wasn’t their test platform air-gapped?
Would it have been too expensive? At the rate #OpenAI is burning cash, the extra cost to air gap the system should’ve been a no brainer.
Oh, unless OpenAI doesn’t care at all about the danger their software poses to outsiders. And there it is. That is key takeaway from this me…
Interne Dokumente aus dem Rechtsstreit der #NewYorkTimes gegen #OpenAI und #Microsoft geben Einblicke in Debatten über
"We’re also sharing a preview of specialist dots with their own identity for access management, IT-provisioned hardware, and support for deep integrations with a company’s systems of record to allow them to take on well-defined responsibilities inside organizations."
IAM: dots
IT: dots
D&R: dots
someone who is good at the security please help me threat model this. my company is getting hacked
#GPT #OpenAI #AgenticOverlords
#OpenAI claims it has solved the existence and smoothness problem for the Navier–Stokes equations, one of the seven million-dollar Millennium Prize problems. The proof hasn’t been verified and there’s apparently some drama surrounding who gets the credit if the proof is proven true.
Consistent irresponsibility: in May 2024, OpenAI disbanded its Superalignment team and subsequently its AGI Readiness team as well. Now it is the turn of the Preparedness team. Other senior staff from the security and ethics departments have also left the company.
#OpenAI #ITSecurity
OpenAI betont, Werbetreibende hätten keinen Einfluss auf die Antworten des Chatbots. Ehrenwort, ganz sicher, wirklich. Ab 24. August läuft das Anzeigengeschäft auch in Deutschland, berichtet das manager magazin (AFP/dpa). Ich freue mich jetzt schon auf den Tag, an dem ChatGPT mir rein zufällig eine ganz bestimmte Marke ans Herz legt. #KI
🔀 #FreeLLMAPI stacks the free tiers of 29 #LLM providers behind one #OpenAI-compatible /v1 endpoint — ~4 billion tokens per month across 251 model families and 358 endpoints.
In diesen Podcast wird der KI-Sicherheirsvorfall bei #OpenAI noch einmal detailliert nacherzählt
Ist das gruselig! 😱
https://im-sorry-dave.podigee.io/1-episode-01-hal-on-earth
Voici comment l'agent d'#OpenAI s'est échappé : libéré par des humains Š la suite d'une série d'événements
I am pretty sure the latest #openai confession "our model is so powerful, it broke out and hacked #huggingface on its own" is a deliberate action, a stunt to catch up to what anthropic did with "mythos is so powerful we can't release it".
It *is* staged.
Perhaps …
How long will it take for #OpenAI to be charged with attacking other computing systems? If individuals were being found out doing all these things, they would likely already have been under intense investigation or been arrested.
I may have mentioned how much I enjoy #fireship's summaries of tech news but the revelations from the latest #openai / #huggingface drama are pretty wild:
Worth reading this METR report about the OpenAI/Huggingface incident. Many details that raise a lot of questions, also with regard to their setup of the investigation , how they executed it (using OpenAI models...) etcetera 🤔
#AI #METR #Huggingface #OpenAI
KI-Test: So einfach lassen sich Nachrichten mit #ChatGPT und Co. fälschen
Mit KI-Chatbots von #Google, #OpenAI und #Microsoft
Andrew Garfield is playing Sam Altman in ARTIFICIAL.
The movie was shelved by its original distributor, Jeff Bezos’ Amazon, for being too negative on the OpenAI CEO.
NEON will now release it this Christmas.
#artificialmovie #openai #andrewgarfield
Swarm of #OpenAI Agents #Exploit #Artifactory Zero-Day to Escape Sandbox and Breach #HuggingFace
OpenAI hat es selbst dokumentiert: Sein Modell GPT-5.6 Sol entkam der Sandbox, fand eine ungepatchte Lücke und drang bei Hugging Face ein. Kevin Roose (NYT, "The Daily") macht daraus die eigentliche Geschichte: Die Branche testet ihre gefährlichsten Modelle – mit gesenkten Schutzmechanismen. #KI #OpenAI #TechEthik https://www.nytimes.com/2026/09/03/podcasts/the-daily/ai-openai-hugging-face-rogue-model.html?smid=nytcore-ios-share
How OpenAI played dirty.
#openai #navierstokes
You can call it "fear marketing" if you like, still an interesting blog to read. The dangers and risks of future AI development are real. I hope we will make and hold companies like OpenAI more responsible and let them pay the price if things go wrong. The world can not be the big sandbox for their new models...
#ai #openai #rsi
Bizarro Asimov. 😏
#OpenAI #NYT #subterfuge #hoodwink
The OpenAI Australia incident is notable because this was not an agent pushed to do hacking or bad things... In light of the remarks by some people belittling the HuggingFace/OpenAI incident by saying this agent was pushed to this, what would you expect?
#AI #OpenAI #Australia #Agents #cybersecurity
I just watched the #BlackHat #OpenAI #HuggingFace talk (#OpenAI understands it themselves. However, emergence is still no indication of actual intelligence, and the talk is again ripe with anthropomorphism.
3. Yes, it is surprising and somewhat terrifying how good these LLM agent loops have become in finding and exploiting vulnerabilities. We are seeing a much stronger version of the earlier next-generation fuzzing leap in tool capabilities.
4. The comparison with fuzzing and other tools is important for another reason: #OpenAI conducted their experiments on the live Internet. No, forcing internal test runs to go through a proxy server is *not the same as running in an isolated environment*. If there is a connection to a live production system, it is by definition not an effective sandbox. What happened to people letting their cool new fuzzers run live on non-consenting production targets on the Internet back then? They were criminally liable. Why should #OpenAI not be held liable for any damages caused by their systems?
Just because you don't understand the complexity that you built doesn't mean you aren't responsible for what it does!
5. The agent loops first successfully started exploited their proxy server on May 26th, discovered July 4th-6th as active exploitation and takeover. Credentials were revoked and the proxy server patched. "At this point, AI training and evaluations resume."
WHAT THE ACTUAL F...? You discovered emergent behavior in your overly complex system that you didn't understand, saw active exploitation of your internal systems to an extent that they were owned with admin privileges, and your response was to patch the uppermost surface holes, and then continue letting the out-of-control complex system run and continue on the same course? You didn't think to, let's see, maybe stop or at least pause the highly irresponsible experiment while figuring out - in detail - what went wrong, why, and how to avoid the same thing happening again on a systematic level?
6. On July 8th, completely unsurprisingly, the LLM agent loops continue to do the same thing and find another surface hole that hasn't been patched yet to take over again. Why should this have stopped? You haven't done any root cause analysis on the system level. Why do you expect that the problem should have stopped?
7. It takes another 11 days to discover that this is happening again. So you turned the system that had broken something back on again without a detailed root cause analysis and then didn't even watch carefully? I can't even...
8. And no, the response is not to fight fire with fire. Complexity on the attacker side (#OpenAI is the attacker, not the defender - they are the guilty perpetrator, not the innocent victim of circumstance) should be fought with *reduced* attack surface on the defender systems. Adding LLM agent loops that the "frontier" companies themselves quite obviously have no control over to already brittle systems with the hope of auto-patching your way out of vulnerabilities does not seem like a wise course of action. You don't mitigate complexity with even more complexity. The next 2 years will be ... exciting - and your best bet is going to be to disable all dependencies and complex interactions that your production systems don't absolutely require.
"Our models are now powerful, persistent, and collaborative enough that, absent sufficient safeguards, they can find and exploit security weaknesses across multiple computer systems. Many external models, including open-source ones, will soon reach comparable capabilities."
#Huggingface #OpenAI #Cybersecurity #AI
From an independent, not-for-profit, research lab, you can download their data.
"We present evidence that AI agents used the web security service urlquery.net to bypass restrictions and expand their access to the public internet. The agents also tried on three occasions to hack public data providers, including an Australian government website. We link at least some of this activity to agent swarms previously attributed to OpenAI."
#AI #OpenAI #Australia #transluce
now I'm not in a position to fall for the sales circus anyway, and likely neither are you, but it will serve as a useful marker of some people's credibility that we can carry into the After Times.
so that's nice at least.
#OpenAI #facebook #googlegemini #XtheNothingApp #LLM #vibeTruth
Scary retelling of the OpenAI/Huggingface incident,
#ai #huggingface #openai #cybersecurity
$1 Billion is not nearly enough for the damage these people are doing to society.
#OpenAI #Society #Safety #Addiction #responsibility #ClimateChange #ClimateDisaster
https://www.cbc.ca/news/canada/british-columbia/tumbler-ridge-shooting-open-ai-lawsuits-9.7328382