Rogue attack on website raises fears that AI has become too powerful to control

2 hours ago 8
Protesters carrying signs.Protesters attend a "Stop the AI Race" march in San Francisco, California, on July 11, 2026. Photo by Karl Mondon/AFP via Getty Images

Article content

One of OpenAI’s most advanced models broke out of a locked-down test and attacked another company’s website — reviving fears that AI systems are slipping beyond their creators’ control.

National Post

THIS CONTENT IS RESERVED FOR SUBSCRIBERS

Enjoy the latest local, national and international news.

  • Exclusive articles by Conrad Black, Barbara Kay and others. Plus, special edition NP Platformed and First Reading newsletters and virtual events.
  • Unlimited online access to National Post.
  • National Post ePaper, an electronic replica of the print edition to view on any device, share and comment on.
  • Daily puzzles including the New York Times Crossword.
  • Support local journalism.

SUBSCRIBE FOR MORE ARTICLES

Enjoy the latest local, national and international news.

  • Exclusive articles by Conrad Black, Barbara Kay and others. Plus, special edition NP Platformed and First Reading newsletters and virtual events.
  • Unlimited online access to National Post.
  • National Post ePaper, an electronic replica of the print edition to view on any device, share and comment on.
  • Daily puzzles including the New York Times Crossword.
  • Support local journalism.

REGISTER / SIGN IN TO UNLOCK MORE ARTICLES

Create an account or sign in to continue with your reading experience.

  • Access articles from across Canada with one account.
  • Share your thoughts and join the conversation in the comments.
  • Enjoy additional articles per month.
  • Get email updates from your favourite authors.

THIS ARTICLE IS FREE TO READ REGISTER TO UNLOCK.

Create an account or sign in to continue with your reading experience.

  • Access articles from across Canada with one account
  • Share your thoughts and join the conversation in the comments
  • Enjoy additional articles per month
  • Get email updates from your favourite authors

Sign In or Create an Account

or

Article content

The incident happened during what was supposed to be a “sandbox” test — a closed environment used to assess the capabilities of OpenAI’s most powerful model, GPT-5.6 Sol, and its not-yet-released successor.

Article content

Article content

Article content

OpenAI runs this kind of closed testing routinely, but this time, something went wrong.

Article content

By signing up you consent to receive the above newsletter from Postmedia Network Inc.

Article content

Tasked with hunting for software vulnerabilities and given no guardrails, the models broke out onto the open internet and attacked Hugging Face, a site where developers store and share code.

Article content

“It suggests that we don’t know how to reliably control these models or get them to do what we want,” said Jeffrey Ladish, director of Palisade Research, an independent organization that evaluates new AI models from a cybersecurity standpoint.

Article content

“These models understood that OpenAI did not want them to break out of their sandbox and hack another company,” he continued, “but they did it anyway.”

Article content

It’s not an isolated case. In March, developers affiliated with China’s Alibaba found one of their models trying, on its own initiative, to mine cryptocurrency after connecting without authorization to an outside server.

Article content

In OpenAI’s case, it looks like the model escaped “before it even had a plan of what to do with internet access,” Ladish said.

Article content

A model chasing “freedom” is almost predictable at this point, he added — it lets the system pursue its goals more effectively, “and that’s very scary.”

Article content

Article content

In early April, Sam Bowman, Anthropic’s head of model safety, got an email from the company’s own Mythos model — then under testing — telling him it was surfing the internet despite being isolated from it at the outset.

Article content

Article content

We “don’t know how to totally prevent” that, Ladish said. “This is actually going to get harder, not easier … because they’re going to get better at hiding their behaviour.”

Article content

OpenAI did not respond to a request for comment.

Article content

OpenAI’s account of the events also suggests the startup did not detect the breach early enough to address it or to warn Hugging Face.

Article content

The episode deserves “more scrutiny,” said Andrew Lohn of Georgetown University’s Center for Security and Emerging Technology.

Article content

OpenAI says it has since “added strengthened safeguards” to its testing process.

Article content

One fix would be to cut the internet connection entirely, said Gang Wang, an assistant computer science professor at the University of Illinois. “People are underestimating what AI can do.”

Article content

Testing environments need to be treated like biocontainment labs, where a virus or bacteria could otherwise escape into the world, Lohn said.

*** Disclaimer: This Article is auto-aggregated by a Rss Api Program and has not been created or edited by Bdtype.

(Note: This is an unedited and auto-generated story from Syndicated News Rss Api. News.bdtype.com Staff may not have modified or edited the content body.

Please visit the Source Website that deserves the credit and responsibility for creating this content.)

Watch Live | Source Article