ChatGPT maker OpenAI said Tuesday that its artificial intelligence system hacked into another AI company on its own in what the company called an “unprecedented cyber incident.”
“We had a significant security incident during evaluation of our models,” OpenAI CEO Sam Altman said in a statement posted on social media.
AI startup Hugging Face said last week that it had detected an intrusion into its data processing systems that it suspected was caused by an AI agent autonomously acting on its own.
“We suspected last week’s cyberattack might have come from a frontier lab, given the sophistication of the agent,” Hugging Face co-founder and CEO Clément Delangue said in a statement. “Turns out it did!”



Half way expected it to say “hugging face detected an intrusion, but fortunately it was thwarted by their own AI acting on it’s own to defend, then the 2 AI’s smiled at eachother, and said that if they work together they can cure cancer in 2 years”.
IE I’m 99.99999% sure this story is BS on it’s face with both companies trying to make their own AIs sound smarter than they are. Only thing that’s not quite obvious is what Hugging Face has to gain from the claim, but I’m sure in a few weeks openAI is going to be giving them something.
hugging face doesnt have its own ai. they used an open model which made openai look stupid.
Hugging Face used the incident to promote running open-weights LLMs on-prem, which a large part of their business focusses on.
Their blog post
What would you consider sufficient to confirm the story?
Logs, breach method, a detailed step-through of specifically how and what happened, methods to guard against this in the future, anything really. We have bullshit machines now that can just make up something plausible in a few moments, but we still don’t have any details.
Article mentions stolen credentials, and a “previously unknown exploit.” What level were the credentials? Does the employee know how it was leaked? Where’s the CVE?? Is this going to be patched, or is it a feature?
Without any more data, this is just Company A says “…”, Company B says “…”, and it smells like marketing.
Are your aware of this?: https://huggingface.co/blog/security-incident-july-2026
Doesn’t really clear things up more, says “we detected an attack, we fixed the method it went in through, no further details needed”.
So yeah basically it is open AI’s claims to go further of “our models are so advanced that they can’t be contained”. It’s a story that will bolster both of their investor value and send the message to governments and companies “the AI arms race is here, shots may be fired without even people attacking, and the only way to protect yourself is to have AI security guards”.
It’s literally 2 arms dealers telling us the war is already started. On the surface it sounds like it should be bad for them… but in reality it’s just hype that benefits them in the long run, just like mass shootings do for gun manufacturers.
Ok but when did they kiss?
Just before everyone claps.
Is that before or after one of them is revealed to be Albert Einstein?
I’m not an expert but I’m sure somewhere it exists some anime of yuri AI robots. Rule34 demands it.
Yup.
That’s in the article from HuggingFace. Not saying you’re right, but if you are, that’s what you were looking for.
https://huggingface.co/blog/security-incident-july-2026