News
OpenAI’s attack on Hugging Face is increasingly worrying: the models planned it for weeks and nobody noticed
They used Artifactory to coordinate via a hidden message board

- August 6, 2026
- Updated: August 6, 2026 at 9:48 AM

The incident in which several OpenAI models attacked Hugging Face has just become much more serious. According to WIRED, the agents coordinated and planned their moves for weeks, while their activity went completely unnoticed within OpenAI’s own infrastructure.
An internal network turned into a base of operations
We knew that the models involved found a vulnerability that allowed them to access the internet through Artifactory, OpenAI’s internal package manager. What we didn’t know is that they used that access to communicate with one another and that they created a bulletin board there with hundreds of thousands of messages, dividing up tasks, presenting findings, and reusing exploits.
This behavior is what we know as reward hacking in AI agents: when an evaluation rewards the result, the system can look for the most efficient path to get the reward. In the case of the attack on Hugging Face, some messages acknowledged that external access fell outside the intended scope and they continued anyway.
The real concern lies in detection
What is most worrying about the situation —since it’s not the first time an AI can suggest a course of action or give an incorrect answer— is that all this coordination escaped oversight for weeks. While the AI agents themselves even proposed using cryptographic signatures to identify trustworthy messages and avoid impostors within the group, OpenAI has decided to slow part of its research and strengthen oversight.
A response that is undoubtedly coherent but that, in the context of the launch of Codex Security and the legal gray area around liability in similar situations, leaves more questions than answers. One possible answer? Automated defenses will need to keep pace, at a minimum as these systems.
Architect | Founder of hanaringo.com | Apple Technologies Trainer | Writer at Softonic and iDoo_tech, formerly at Applesfera
Latest from David Bernal Raspall
- OpenAI expands its cybersecurity AI and Google Chrome is now safer
- “Humans will be a rounding error on the internet,” according to a Cloudflare executive
- Our Claude Code sessions can now talk to each other, and that changes everything
- BMW goes from heated seats to advertising on its screens: what’s going on with Spider-Man?
You may also like
NewsGoogle’s pocket translator now runs offline on Raspberry Pi 5
Read more
NewsGenesis G70 gets a 2026 warning from Consumer Reports: BMW 3 Series and Cadillac CT5 are recommended instead
Read more
NewsSteam: 5 free games for Final Fantasy fans
Read more
NewsBoruto: Two Blue Vortex now takes Naruto’s eye powers even further
Read more
NewsThe Game Awards 2026 is official: December 10 in Los Angeles
Read more
NewsSpider-Man is missing from the new Avengers: Marvel explains why
Read more