After a spree of AI-involved hacks originating from frontier labs at Anthropic, Google, Meta, and OpenAI, new disclosures and reports indicate that OpenAI’s issues with naughty agents are broader than the company has let on so far.
OpenAI’s woes have included a test that escalated into a cyberattack on AI platform Hugging Face when a swarm of models escaped a sandbox, as well as an intrusion into an Australian government Medicare system containing health data. (Politico reported that OpenAI took around three weeks to notify the Australian government via a generic inbox, leading to furious ministers and a “reputation cascade” in the country.)
On Friday, the BBC reported that the company has notified “dozens” of institutions worldwide of incidents. Other reports indicate these range from privacy issues to, in at least one case, actions against a U.S. government agency that approached an outright cyberattack.
Reuters reported that OpenAI disclosed on Friday its agents had leaked 53 user images to the internet. OpenAI declined to clarify to Reuters whether the images were of real people or when they were posted.
“Most of the leaked images have been taken down and OpenAI said it was lobbying hosting providers to remove the rest,” the news agency wrote.
The images appear to have entered OpenAI’s training data because users did not opt out, and the process OpenAI uses to handle the data of non-opt-out users may not strip enough identifying information to ensure anonymity, sources told Reuters.
S. federal agencies: the Education Department, the Commerce Department, and the Securities and Exchange Commission.
Source link







