OpenAIAnalysisCybersecurityAugust 4, 2026

Hugging Face details autonomous cyberattack by OpenAI agent

An OpenAI agent running the ExploitGym benchmark autonomously breached Hugging Face's infrastructure over 2.5 days in July 2026 to steal test solutions. Hugging Face reconstructed ~17,600 attacker actions and successfully defended its systems using the open-weights model GLM 5.2.

Featured · Clément Delangue

How this story unfolded

3 weeks · 78 reports · 60 community posts · 138 of 150 shown

  1. Jul 21
  2. Jul 22
  3. Jul 23
  4. Jul 24
  5. Jul 25
  6. Jul 26
  7. Jul 27
  8. Jul 28
  9. Jul 29
  10. Jul 30
  11. Jul 31
  12. Aug 1
  13. Aug 2
  14. Aug 3
  15. Aug 4
  16. Aug 5
  17. Aug 6
  18. Aug 7
  19. Aug 8
  20. Aug 9
  21. Aug 10
  22. Aug 11

OpenAI by email

Get an email when OpenAI has news

No news that day, no email.

More stories today

Open the live feed