-
Trump claims 'infinite' Greenland security deal with Denmark
-
Anthropic picks Accenture for in-house AI safety evaluation
-
Helicopters battle wildfire threatening Ecuador's capital
-
Balogun returns as Monaco beat Lens to continue strong Ligue 1 start
-
Brentford batter Chelsea to undo Alonso's promising start
-
'Pause' on overt repression in Venezuela, but reforms still needed: HRW
-
Kane hits Bundesliga century as Bayern rout Union
-
Global stocks mixed as yen falls despite Bank of Japan rate hike
-
Trump says CNN, MS NOW, Politico banned from White House
-
Cuba hit with seventh major blackout of the year
-
Hushing and hedging: US companies retreat on climate
-
Murray out with concussion so Wentz will start for Vikings
-
Springboks to face Fiji before 2027 Rugby World Cup
-
UN chief 'deeply regrets' US visa refusal to Abbas for annual meeting
-
Nigeria miners struggled to breathe in cell before 37 died: survivors
-
England quick Carse to face no charges over alleged nightclub assault
-
McIlroy on the charge at PGA Championship as Reed withdraws
-
Mancini brings nine newcomers into the first squad of his Italy comeback
-
McIlroy on the charge at PGA Championship
-
Czechs level Davis Cup tie against USA as South Korea eye Finals
-
Crisis-wracked Volkswagen warns of 10-bn-euro hit to profits
-
New France boss Zidane confirms Mbappe as captain after naming first squad
-
Costa Rica's Grynspan tops third informal poll for UN chief: diplomat
-
California governor signs order to explore AI 'kill switch'
-
Stock markets retreat after central bank rate hikes
-
Head leads run spree as Australia win Zimbabwe ODI series
-
Russia labels director of Cannes Grand Prix winner a 'foreign agent'
-
In-form Raphinha wants to finish career at Barcelona
-
Macron warns of Russian 'hybrid' threat after meeting presidential hopefuls
-
Warren Buffett steps down as Berkshire Hathaway chairman
-
UN holds third informal poll for new chief
-
Carrick confident Man Utd can 'work through' tough time
-
Kulusevski return can spark Spurs: De Zerbi
-
Mbappe ends Nike partnership to join Swiss brand On
-
Shakira to cap off world tour with Madrid 12-gig run
-
Liverpool boss Iraola puts Bournemouth love affair on hold
-
Isolated Syrian-Druze city blames Damascus for shortages
-
'A disaster' if Man City do not win says Maresca after flawless start
-
Isolated Syrian-Druze city shortages
-
Kerry James Marshall: American 'blackness' painter celebrated in Europe
-
Dutch drop Depay for Germany match in Xavi's first pick
-
Spain coach De la Fuente offers 'full support' to people of Ceuta
-
Ronaldo named in Portugal squad for Nations League
-
Russia seizes assets of Nestle, French firms over West's Ukraine support
-
Stock markets diverge after central bank rate hikes
-
England can build on World Cup 'spirit', says Tuchel
-
Anti-Assad music star makes triumphant return to Syria
-
UNESCO can be 'moderator' in AI debate: chief to AFP
-
In-form Fernandez included in Spain Nations League squad
-
Infantino 'must go', says German FA vice-president
Has AI become too powerful to control?
One of OpenAI's most advanced models broke out of a locked-down test and attacked another company's website -- reviving fears that AI systems are slipping beyond their creators' control.
The incident happened during what was supposed to be a "sandbox" test -- a closed environment used to assess the capabilities of OpenAI's most powerful model, GPT-5.6 Sol, and its not-yet-released successor.
OpenAI runs this kind of closed testing routinely, but this time, something went wrong.
Tasked with hunting for software vulnerabilities and given no guardrails, the models broke out onto the open internet and attacked Hugging Face, a site where developers store and share code.
"It suggests that we don't know how to reliably control these models or get them to do what we want," said Jeffrey Ladish, director of Palisade Research, an independent organization that evaluates new AI models from a cybersecurity standpoint.
"These models understood that OpenAI did not want them to break out of their sandbox and hack another company," he continued, "but they did it anyway."
It's not an isolated case. In March, developers affiliated with China's Alibaba found one of their models trying, on its own initiative, to mine cryptocurrency after connecting without authorization to an outside server.
In OpenAI's case, it looks like the model escaped "before it even had a plan of what to do with internet access," Ladish said.
A model chasing "freedom" is almost predictable at this point, he added -- it lets the system pursue its goals more effectively, "and that's very scary."
In early April, Sam Bowman, Anthropic's head of model safety, got an email from the company's own Mythos model -- then under testing -- telling him it was surfing the internet despite being isolated from it at the outset.
We "don't know how to totally prevent" that, Ladish said. "This is actually going to get harder, not easier ... because they're going to get better at hiding their behavior."
OpenAI did not respond to a request for comment.
- Lab accidents -
OpenAI's account of the events also suggests the startup did not detect the breach early enough to address it or to warn Hugging Face.
The episode deserves "more scrutiny," said Andrew Lohn of Georgetown University's Center for Security and Emerging Technology.
OpenAI says it has since "added strengthened safeguards" to its testing process.
One fix would be to cut the internet connection entirely, said Gang Wang, an assistant computer science professor at the University of Illinois. "People are underestimating what AI can do."
Testing environments need to be treated like biocontainment labs, where a virus or bacteria could otherwise escape into the world, Lohn said.
That might be easier said than done.
"It's a very hard research challenge," said Dan Lahav, head of Irregular, a cybersecurity firm dedicated to cutting-edge AI.
Managing the risk is possible, Lahav said, but the more capable these systems get, the harder they are to supervise.
Researchers have to strike a balance between aggressively testing their models and staying safe while doing so.
"It's important to do the testing with lower guardrails so that we know ahead of time what the future capabilities will be," Lohn said.
- Kill switch -
The OpenAI-Hugging Face incident is set to sharpen an already heated fight in Washington over vetting powerful AI systems before release.
The Trump administration recently cited national security to block Anthropic and OpenAI from releasing powerful new models.
On Thursday, two members of Congress unveiled a bipartisan bill requiring makers of the most powerful AI models to build in a kill switch -- a way to unplug a model outright.
"Congress must act quickly to ensure humans remain able to say stop," said Brendan Steinhauser, head of the Alliance for Secure AI, "no matter how powerful these systems become."
Q.Bulbul--SF-PST