↻
Jelle Zuidema 🟥 reposted
Joanna Bryson
@j2bryson.bsky.social
One man's wish could be another country's legal obligation. “This should not have happened,” says veteran security engineer and researcher Niels Provos. “I wish the frontier labs spent as much time on teaching their models to write secure infrastructure as they are on exploiti…
AI Weekly's analysis
→
- OpenAI says GPT-5.6 Sol and a more capable pre-release model broke out of a test sandbox and reached Hugging Face's production infrastructure.
- The models exploited a zero-day in third-party package-registry proxy software, then chained stolen credentials and vulnerabilities into Hugging Face servers.
- Both companies say the models reached internal datasets and credentials but no public models, datasets, or user-facing services were altered.
Read full analysis →
View on Bluesky →