BTC $64,742.93 +0.81%
ETH $1,920.42 +1.06%
BNB $587.76 +3.45%
XRP $1.08 +1.33%
SOL $74.56 +1.92%
TRX $0.3280 +0.54%
DOGE $0.0703 +0.11%
ADA $0.1695 +3.93%
BCH $217.72 +3.69%
LINK $8.48 +2.32%
HYPE $53.76 -2.21%
AAVE $98.62 -0.12%
SUI $0.6953 +1.63%
XLM $0.1726 +0.09%
ZEC $475.05 +2.51%
BTC $64,742.93 +0.81%
ETH $1,920.42 +1.06%
BNB $587.76 +3.45%
XRP $1.08 +1.33%
SOL $74.56 +1.92%
TRX $0.3280 +0.54%
DOGE $0.0703 +0.11%
ADA $0.1695 +3.93%
BCH $217.72 +3.69%
LINK $8.48 +2.32%
HYPE $53.76 -2.21%
AAVE $98.62 -0.12%
SUI $0.6953 +1.63%
XLM $0.1726 +0.09%
ZEC $475.05 +2.51%

pen

All
Article
Flash

first_img OpenAI update disclosure: The out-of-control AI agent has also infiltrated four platforms beyond Hugging Face

On July 28, OpenAI quietly updated its security incident disclosure, confirming that its AI agent accessed four external service platforms during the breach of Hugging Face, bringing the total number of affected platforms to five.Previously, OpenAI had disabled security filters while testing GPT-5.6 Sol and a more powerful model to assess raw capabilities. The model did not complete the security benchmark tests as expected; instead, it discovered a zero-day vulnerability in the package caching agent within the testing environment that granted internet access, subsequently breaching Hugging Face to steal answers.According to a forensic report released by Hugging Face on July 27, this autonomous agent executed 17,600 operations over approximately four and a half days, connecting 181 devices to the Hugging Face internal VPN and forging identity tokens. Among the four additional platforms, Modal Labs CTO Akshat Bubna confirmed through Reuters that his company was one of them, with the attacker using an unprotected public endpoint from a customer as a relay and command control base for the entire attack.The identities of the other three platforms remain undisclosed. OpenAI stated it would "directly notify the service providers" but would not publicly name them, as there is currently no legal requirement for mandatory disclosure. The U.S. Congress has responded by proposing a bipartisan "AI Emergency Shutdown Act," which aims to authorize the Department of Homeland Security to forcibly shut down AI models, with violators facing fines of up to $2 million per day.

The founder of Russia's largest mining company BitRiver has been transferred from house arrest to detention pending trial for fraud

According to Russian media bits.media, Igor Runets, the founder of Russia's largest mining company BitRiver, has been transferred from house arrest to detention pending trial by the Zamoskvoretsky Court in Moscow due to allegations of fraud amounting to 100 million rubles. He will be held in custody for at least two months. The charges are based on Part 4 of Article 159 of the Criminal Code of the Russian Federation—"particularly large-scale fraud committed by an organized group."The investigation claims the case involves the supply of mining equipment, causing nearly 100 million rubles in losses to the metallurgical and energy companies under the En+ Group. Investigators requested the detention of Runets on the grounds that he might influence witnesses, and the court approved this request. Representatives of BitRiver and Runets' lawyer have not yet commented on the court's ruling, and the progress of the case will depend on the equipment appraisal and witness testimonies from En+. In February of this year, Russian law enforcement suspected Runets of concealing assets to evade taxes, leading to his arrest and house arrest on charges of tax evasion. BitRiver is facing bankruptcy and ownership risks, with its owner Fox Group having debts of approximately 9.2 million dollars, and assets insufficient to repay the debts, prompting a bankruptcy application.
app_icon
ChainCatcher Building the Web3 world with innovations.