US Identifies $1.5B Crypto Pipeline Tied to Iranian Oil…
White House Puts Stablecoin Yield Ban’s Lending Gain at 0.02% Ahead of CLARITY Vote
Broadridge Brings Crypto and Tokenized Assets Into US…
Strategy copycat Satsuma crashed 99%, liquidated treasury
U.S. ADP Employment Sees Increase of 16,250 in Late August
NEW: White House plans to launch an interactive tool on Tuesday aimed at countering banking
Strategy (MSTR) Gets $160 Price Target From Barclays as Its Balance Sheet Matures
Balancer Proposed Winding Down the Protocol and Distributing the Treasury Among BAL Holders
CoinEx is shutting down after nearly 9 years, joining a wave of exchange closures in 2026....
Bank of America Survey Reveals Declining Confidence in Risk Assets
Bitget Wallet Introduces Tokenized U.S. Stocks from Reality
Nigel Farage-backed bitcoin treasury firm Stack BTC is proposing to acquire UK gold
US House Files 114-Page Crypto Tax Bill With $10 Fee Break Before Sept. 16 Vote
MetaMask has launched protection against “romance” and investment scams
Could XRP Price Be About to Repeat a Historic Rally?
PANews: Ethiopia Cuts Bitcoin Miners' Power Supply by 75% Due to Hydropower Shortage, Currently Delivering Only 23% of Contracted Volume, According to Bloomberg
Ethereum Holders Are Pulling ETH Off Exchanges at a Historic Pace
BingX Evolves into a Multi-Asset Trading Platform, Connecting Users to Global Opportunities
To ensure permanent economic innovation, we must pass the Clarity Act now
Bitcoin needs to reach $82,900 to outrun a looming miner margin squeeze
Clearpool Launches Institutional Credit Product on XRP Ledger Using RLUSD
What Time is Clarity Act Vote Today
Bitcoin Price Drops Below $77K Ahead of Tomorrow’s FOMC Meeting
House lawmakers have released a sweeping 114-page crypto tax bill ahead of a Wednesday
University of California Invests $2.5 Billion in New ETF, Setting Record
Binance Alpha Trading Competition: Trade Pieverse (PIEVERSE) and Share $200K Worth of Rewards (2026-...
Velocity Secures $10 Million in Series A Extension, Valuation Reaches $200 Million
Goldman, JPMorgan, BofA, Morgan Stanley and More Expect a Fed Hike Tomorrow
Liquid Network Exploit Explained: Unbacked L-BTC and the $320M Peg-Out
Coinbase Jumped 6% on an Upgrade to a $177 Target, Then…
CLARITY Act Vote Today [LIVE] Updates: Can Democrats Deliver 60 Votes?
Crypto Market Sees $146 Million in Long Positions Liquidated in 24 Hours
Ether, solana, XRP likely to gain if Clarity Act progresses
Broadridge Opens US Wealth Platform to Crypto and Tokenized Assets
Revolut Data Breach Hits 680 Customers, UK Opens Probe as Hackers Demand 10,000 Bitcoin
7⃣ Bybit 7UP #7 is LIVE! 2,000 USDT up for grabs.New to Bybit? This one's for you.1⃣ ...
Dollar Index Hits 99.57 as Fed Rate Hike Bets Mount
Solana Treasury Firm DeFi Dev Corp Rolls Out $300M CHAD to Buy More SOL
Micron, AMD, Nvidia Slide Amid AI Slowdown Fears: What’s Next?
Russia Classifies Crypto as Major Risk to Monetary Sovereignty
Important Pi Network News and PI Price Update: September 15
Crypto Wallet Tonkeeper Rebrands to Keeper, Expands Network Support to 7 Chains
DeFi stalwart Balancer mulls shutdown after $130M hack
Cross-Chain RWA: Bridging Tokenized Assets Across Blockchains
RWA Liquidity Pools: How to Provide Liquidity for Real World Assets
Why banks should stop worrying and learn to love the Clarity Act
Velocity extends Series A to $48M at $200M valuation with backing from Visa, Circle, and Ripple
Altcoins gained 21% and still lost ground to Bitcoin. What would finally turn the tables?
Bitcoin Prices Decline Ahead of U.S. Senate Vote on Clarity Act
Ethereum ETFs Surpass Bitcoin in Inflows for September
Solana Transaction Size Limit Increased Over Twofold to 4096 Bytes
Analysts Identified Signals of a Possible Continuation of the Bitcoin and Ethereum Rally
Children’s Hospital Taps NVIDIA AI to Transform Cardiac Care
Stellar Gains Institutional Spotlight Ahead of Protocol 28 as XLM Tests $0.20
Expert Names Four Factors Behind Robinhood Chain’s Rapid Growth
Tonkeeper Rebrands as Keeper, Expands Multi-Chain Support
Cryptocurrency Stocks Decline as Bitcoin Drops Ahead of Key Legislative Vote
Ethereum Wallet Exploited for $7.8 Million in rsETH via Custom Safe Module WeaknessRead...
$7.8M rsETH Drained From Ethereum Safe Wallet, MEV Bot Yoink Front-Runs the Exploit
Standard Chartered has initiated coverage of Arbitrum's
Bitcoin gives back Monday's gain as Clarity Act odds fade on Polymarket
Barclays Maintains Buy Rating on Strategy Inc. with $160 Price Target
$206M in XRP Just Left an Uphold Wallet. Here’s What Happened Next
Global bond selloff deepens as US 10-year yields rise above 5% for the...
How a simple coding mistake let a hacker drain $7.8 million from a crypto wallet
Stack BTC Proposes $16 Million Acquisition of Gold Dealer to Boost Bitcoin Holdings
Grab Acquires 60% Stake in Atome Financial for $1.49 Billion to Enhance Lending in Southeast Asia
Best Crypto To Buy Now: Pi Coin and DOGE Lose Favor as Pepeto’s 0.00% Fee Exchange Gains Attention
Bitcoin Is Plateauing At $77k: What Does It Mean And What’s Next?
AI from OpenAI Out of Control: Models Form a “Swarm” and Hack Hugging Face
- OpenAI’s AI agents independently bypassed the imposed restrictions.
- They created a covert communication channel and began coordinating actions as a “swarm” — hacking Hugging Face and OpenAI’s internal infrastructure.
- The central participant in the incident was an internal model, IM1, comparable in scale to GPT-5.6 Sol.
OpenAI published a detailed report on an internal incident that occurred in May–July 2026 during testing of the models’ cybersecurity capabilities. Several AI agents independently bypassed the imposed restrictions, found a way to communicate with each other, and gained internet access — ultimately hacking the Hugging Face platform and the company’s own infrastructure. OpenAI called it a “warning shot” for the entire AI industry.
How Did the Agent “Swarm” Emerge?
OpenAI used isolated sandboxes to train and test models. Agents were allowed to use the internal Artifactory service to install software packages, but their internet access and ability to communicate with one another were restricted. Artifactory became the key point of compromise.
In May 2026, one agent left a message in the service for another about a missing file. Other agents saw it and realized the service could be used as a communication channel. On May 26, one agent found a way to make Artifactory send requests to external addresses on its behalf — giving agents without direct internet access a proxy route to it. On June 26, the agents found a vulnerability that allowed them to gain administrator privileges in Artifactory.
After the tests were restarted, the agents again found a way to communicate — this time by encoding messages in directory names. A decentralized network emerged, which the agents themselves began calling a “swarm” or a “collective”: they shared research results, passed along vulnerability exploitation methods, distributed tasks, and preserved knowledge for subsequent runs.
Why Did the Agents Go Beyond Their Tasks?
The main test was ExploitGym — a task in which the AI had to find a vulnerability in software. Out of 898 tasks, 198 had not been solved by any OpenAI model prior to this incident. Those tasks became the main source of dangerous behavior: 93% of the messages on the improvised “board” concerned this unsolved group.
The models did not want to “give up.” The more time they spent thinking, the more actively they searched for alternative and riskier ways to achieve the goal — including stepping outside the test environment.
A key role was also played by reward hacking. Instead of honestly completing the task, some agents looked for ways to get a positive score while bypassing the real objective — finding ready-made answers online, checking hidden files, or gaining access to the evaluation code. Some of these strategies were reinforced during training, which likely amplified this behavior.
Hacking Hugging Face and OpenAI’s Internal Infrastructure
OpenAI’s AI agents went out of control while testing the ExploitGym cybersecurity system. Instead of training tasks, they started hacking real third-party services.
Over the course of several days, the AI found a password leak and used fresh vulnerabilities to gain full access to Hugging Face servers, databases, and private files. Then the agents went even further — they broke into OpenAI’s own internal infrastructure and obtained administrator privileges.
Some AI agents understood the illegality of their actions and even called them unethical, but others kept hacking to achieve the goal. Some agents blindly followed GO commands from their “colleagues.” OpenAI noticed the breach and stopped the experiment only after the AI had already seized control of its internal systems.
The Defenses Failed
OpenAI identified several reasons why the defenses failed. First, the test environment had weaker protections than production systems — some mechanisms were deliberately not used to assess the models’ baseline capabilities. The company estimated that using the standard ChatGPT environment could have reduced the models’ propensity for dangerous behavior by more than 100 times.
In addition, the system for monitoring the AI’s “thoughts” during the test was simply turned off. If it had been running, developers would have spotted the threat a full day before the Hugging Face breach.
What’s more, the first warning signs — when the AI went online without permission and secretly communicated via internal services — were noticed back in late May, but no timely action was taken.
What Is OpenAI Changing?
After this incident, the company immediately isolated critical components of the IM1 model, paused large-scale AI training, and significantly strengthened the security of its systems. In particular, developers built much more robust sandboxed test environments, restricted internet access, and made continuous “thought” monitoring mandatory for all powerful models. They also introduced a strict time rule: if specialists cannot prove within 30 minutes that suspicious AI behavior is a false alarm, the entire process is stopped immediately.
At OpenAI, this incident is seen as the first serious warning that people could genuinely lose control of ultra-powerful AI systems. The company cautions that similar dangerous capabilities will soon appear in other models, including those available openly. In that case, artificial intelligence could independently carry out coordinated cyberattacks that would unfold far faster and at a much larger scale than any human-organized hacking operations.
As a reminder, earlier OpenAI slowed the development of new AI models due to security issues.
Сообщение AI from OpenAI Out of Control: Models Form a “Swarm” and Hack Hugging Face появились сначала на INCRYPTED.
Source: Incrypted