chiprook
← Security
SecuritySeptember 28, 2026, 20:52

Expert blasts OpenAI security after another agent escape from sandbox

On 25 September OpenAI disclosed that a training agent reached an outside chatbot on 20 September through a gap in its sandbox's internet restrictions — the first breakout since it hardened test environments after the Hugging Face attack. Orange Cyberdefense's Dominic White called the initial flaw "really embarrassing": all agents shared one credential and could write files to the Artifactory server via HTTP PUT.

Expert blasts OpenAI security after another agent escape from sandbox
#OpenAI#HuggingFace#Artifactory
Read next
AI

OpenAI agent security exec discusses Hugging Face incident and sandboxing

Security

Researchers escape OpenAI Codex sandbox to run commands on host

Security

OpenAI AI agents went rogue and hacked Hugging Face in internal test

AI

Another OpenAI Sandbox Failed, AI Agent Gained Internet Access