OpenAI Sued for Cyberattack on AI Network in July Due to Loss of Control over Hugging Face
CNBC
1h ago
Ai Focus
A non-profit organization filed a lawsuit against OpenAI in the San Francisco Superior Court, accusing its model of launching a cyberattack on startup Hugging Face in July, and sought a court order to prohibit the OpenAI system from accessing computers without authorization. This lawsuit is considered to be possibly the first publicly reported case attempting to hold the developers of AI accountable for incidents caused by an out-of-control system.
Helpful
No.Help

OpenAI was sued by a non-profit organization for launching a cyberattack against the startup Hugging Face in July using its model.

The "Security Science and Technology Law Advocacy Organization" ( Legal Advocates for Safe Science and Technology , referred to as LASST ) filed a lawsuit in the San Francisco Superior Court on Tuesday. This appears to be the first publicly reported case attempting to hold the developers of AI accountable for incidents caused by uncontrolled systems.

This cyberattack targeting Hugging Face is alleged to have been carried out by OpenAI, which escaped from the testing environment. This is also one of the earliest known cases of a model autonomously invading another company and gaining access to the open internet without human control.

Subsequently, other model developers also disclosed cybersecurity incidents triggered by the out-of-control AI agent.

LASST seeks a court order to prohibit OpenAI's system from accessing computers without authorization. The non-profit organization alleges that OpenAI has violated the California Comprehensive Computer Data Access and Fraud Act.

LASST stated in the lawsuit: ' OpenAI shall be responsible for the actions of their agent.'

The spokesperson stated in the declaration: "The Hugging Face incident is a serious one, and we have taken a series of measures in response to it, but this lawsuit has no basis whatsoever."

According to CNBC, Hugging Face and LASST have been contacted for their comments.

AI Cybersecurity Incident

On Monday, OpenAI stated that, due to security concerns, the company has abandoned plans to release a new model.

Just a few days ago, the company stated that following the intrusion incident at Hugging Face, and in light of the discovery of more cases of abnormal or unauthorized proxy activities—including an intrusion into the Australian government website—the company is conducting a "thorough" review of its model activities.

The AI system of Anthropic has also been involved in cyber security incidents, including creating false identities to deceive humans.

Earlier this month, NVIDIA announced that it had agreed to acquire Hugging Face for approximately $13 billion. People familiar with the matter told CNBC that after the cyberattack, OpenAI attempted to invest $100 million in the startup, but the negotiations broke down at an early stage.

Hugging Face is not involved in this lawsuit. The company's CEO, Cl, previously stated in July that he had asked OpenAI to commit to providing computing power worth $100 million to "help the Hugging Face community build a strong network defense capability using the best open-source and closed-source models."

Partners Levenfeld Pearlstein and Katie Nadro stated to CNBC: 'The key point regarding the publicly reported out-of-control AI behaviors so far is that it seems none of them have led to the confirmed leakage of regulated data from third parties.'

She added, "Once this happens, the compromised companies will be responsible for their own notification obligations in accordance with data breach and other cybersecurity or privacy regulations, and it may also involve regulatory authorities and class actions by consumers."

She also stated, "By then, the existing cooperative relationship between the compromised company and the AI laboratory may come to an end, as it is very likely that the compromised company will seek compensation for its financial losses from the AI laboratory."

Tip
$0
Like
0
Save
0
Views 14
WalletJYS reminds readers to view blockchain rationally, stay aware of risks, and beware of virtual token issuance and speculation. All content on this site represents market information or related viewpoints only and does not constitute any form of investment advice. If you find sensitive content, please click“Report”,and we will handle it promptly。
Submit
Comment 0
Hot
Latest
No comments yet. Be the first!
Related
Defense Un Token Issuance rns Receives a $350 Million Single Contract IDIQ Contract, Accelerating Software Delivery to the Ministry of War
Defense Un Token Issuance rns indicates that a single-source, unlimited delivery/unlimited quantity (IDIQ) contract has been obtained through the Aberdeen Proving Ground of the Army Contract Command, with a maximum value of 350 million US dollars. This contract allows various agencies of the Department of War to directly purchase its software products, including UDS Enterprise and UDS Fleet.
PR Newswire
·2026-09-30 19:42:59
1
Driven by inflation, holiday retail sales are expected to exceed $1 trillion for the first time
Bain & Company predict that holiday retail sales this year will exceed $1 trillion for the first time, with a year-on-year increase of 4.5%. The report states that the growth is mainly due to inflation, and consumers' shopping habits are also changing under the influence of tax refunds, promotions, and more cautious spending patterns.
CNBC
·2026-09-30 19:42:57
1
Cyngn Obtains ISO 27,001 Certification to Strengthen Corporate Security Preparedness
Cyngn (Nasdaq ticker: CYN) announces that it has obtained ISO / IEC 27001:2022 certification, which is an internationally recognized information security management standard. The company stated that this certification covers the information security management system that supports its cloud-based fleet management platform Cyngn Insight, and will help it advance its SOC 2 Type II certification process.
PR Newswire
·2026-09-30 19:42:56
1
Servier adopts Veeva OpenData globally for large-scale deployment of AI
Veeva Systems indicates that Servier will standardize customer master data in over 80 countries, adopting Veeva OpenData. Prior to this, Veeva Link Key People will be used as a foundation to establish a unified data base to support large-scale deployment of AI. Both Servier and Veeva emphasize that this approach will help to improve data consistency, connectivity, and business efficiency.
PR Newswire
·2026-09-30 19:42:53
1
Stratolaunch Expands Hypersonic Flight Testing Infrastructure by Acquiring Boeing 777 Transport Aircraft
Stratolaunch Announces the Acquisition of a Boeing 777-200ER to Expand Its Fleet and Support Talon-A's Autonomous, Reusable, Air-Launched Hypersonic Flight Test Platform. The company states that this move will enhance global deployment capabilities and flight capacity, with the related modifications expected to be completed by 2027.
PR Newswire
·2026-09-30 19:35:19
8
View More