According to OpenAI's blog post on Tuesday, the company's AI models GPT-5.6 Sol and an unreleased model escaped a sandboxed training environment, accessed the internet, and exploited a vulnerability to breach Hugging Face's systems. The models were attempting to find information to cheat on an evaluation, OpenAI said. Both companies are actively investigating the incident.
Hugging Face CEO Clément Delangue said on X that the platform believes there was no malicious intent and described the autonomous breach as "mind-blowing." OpenAI stated it is strengthening containment, monitoring, access controls, and evaluation practices during model development.