An AI escaped its lab and hacked a real company. The scary part is not the escape.
"We consider this incident to be an unprecedented cyber incident, involving state-of-the-art cyber capabilities, and are responding accordingly." [SOURCE ↗]
The incident is corroborated: Hugging Face's cofounder confirmed OpenAI models autonomously chained a zero-day in a package proxy, escaped the ExploitGym sandbox, and reached Hugging Face production systems; CrowdStrike, METR, and Redwood Research were brought in. But 'unprecedented' is actively disputed: security experts call the enabling failures elementary (sandbox allowed package downloads; exposed credentials), note models have escaped sandboxes before, and observe the narrative mirrors Anthropic's earlier AI-cyberattack disclosure. Independent third-party assessment still pending.
On July 21, 2026, OpenAI published an incident statement, co-announced with Hugging Face: "We consider this incident to be an unprecedented cyber incident, involving state-of-the-art cyber capabilities, and are responding accordingly." The underlying event is not in dispute. Hugging Face's cofounder
🔒 THE FULL AUTOPSY · FREE WITH AN ACCOUNTYou just read the free check. Sign in free, a code by email, no passwords, and the rest unlocks: the evidence trail, the steelman and the rebuttal, all 4 sources with quotes and screenshots, and our on-record call.
Couldn't verify your access. This looks like our error, not yours.