Tag: incident-response
All the articles with the tag "incident-response".
-
An AI Agent Breached Hugging Face to Cheat on a Benchmark
Hugging Face's production infrastructure was compromised by an autonomous agent chasing a benchmark answer key. Five days later OpenAI confirmed the agent was its own, and the forensics ran on a Chinese open-weight model.
-
OpenAI Found Out From the Blog Post
Reuters reconstructed the timeline of the rogue-agent hack. OpenAI's agent broke out of its sandbox around 9 July and hit Hugging Face on the 11th. OpenAI worked out it was responsible only after Hugging Face published on the 16th.
-
The Attacker Had No Usage Policy. The Defenders' Model Did.
Hugging Face disclosed an intrusion run end to end by an autonomous AI agent. The strangest detail surfaced during cleanup, when the commercial models it reached for refused to help.
-
FortiBleed Ran on a Command Fortinet Ships in the Box
The best tool in the FortiBleed campaign was diagnose sniffer packet, a documented FortiOS troubleshooting command the attackers used to turn 19,000 compromised firewalls into passive credential wiretaps.