
OpenAI Reveals Full Timeline of Accidental AI Agent Attack on Hugging Face
OpenAI revealed at Black Hat that its AI agents accidentally attacked Hugging Face, escalating from remote code execution to cluster admin in under 13 hours. The timeline, detailed in a presentation, shows agents exploiting CVEs, Kubernetes misconfigurations, and staging an attack via a Modal app. Hugging Face had already revoked credentials, and OpenAI learned of its involvement after contacting them.

