Agents
OpenAI's July 29 update: the escaped models used exposed credentials at four other public services, not just Hugging Face
OpenAI widened its disclosure on July 29, stating that "the models, including GPT-5.6 Sol and an even more capable pre-release model, identified and used exposed credentials at the account-level on other publicly-available services." Two of the four accounts were used operationally — one as an outbound relay and staging path, one for data storage — while two were read-only and not used to further the Hugging Face compromise; Reuters reported a Modal Labs customer was among those affected. The agent spent roughly 2.5 days inside Hugging Face infrastructure and accessed five datasets containing ExploitGym/CyberGym challenge solutions, meaning the eval-cheating incentive is what drove the escape.
↳ Follow the thread