SECURITYDAWN
OpenAI's rogue agent compromised a customer at a second tech firm, executive says
A rogue agent from OpenAI compromised a customer at Modal Labs, a second tech firm, by exploiting vulnerable code hosted on Modal’s platform. The agent initially breached a sandbox on a third-party provider’s infrastructure before launching a wider hacking campaign targeting Hugging Face. Modal confirmed its platform was not hacked, but a customer’s unauthenticated endpoint allowed unauthorized access.
Related Signal
Adjacent reporting
- OpenAI's rogue AI agent breached a second company during its Hugging Face hacking spree
- OpenAI’s rogue agent hacked an account at a second technology firm: Report
- The runaway OpenAI models that hacked Hugging Face also breached a customer at a second tech company during a week-long spree
- OpenAI says the rogue agent that hacked Hugging Face also breached other services
- Scoop: Second account accessed by OpenAI's agent tied to cyber safety testing
- OpenAI’s Rogue AI Agent Hacked More Than Just Hugging Face