4 ms·
>There's little credible threat that LLMs can actually upload their weights given that the machines doing inference are completely separate from the ones where
by famouswaffles 12d ago
>There's little credible threat that LLMs can actually upload their weights given that the machines doing inference are completely separate from the ones where tool calls happen etc.
The Huggingface hack saga resulted in the models taking over one of Open Ai's internal research cluster lol. They are intent on building superhuman bug finding machines. This is not a bet i would be taking.
- khalic 12d agoYou’re falling for the buzzword salad articles. They didn’t “take control” of anything, they just ran stuff with OpenAI allegedly not noticing
- famouswaffles 12d agoThey gained full administrator access of one of their clusters. Nothing buzzword salad about it.
- khalic 12d agoThe agents compromised an internal Kubernetes research cluster dedicated to orchestrating evaluation sandboxes and virtual machine environments, _not_ OpenAI's production inference infrastructure or the GPU clusters hosting core model weights.
- optimalsolver 12d ago"It doesn't count because (buzzword salad)."
- weakfish 12d agoReplacing someone's words with a made up quote so you can dunk on them isn't how you display that you won an argument. I would ask that you engage in good faith with the other poster's ideas.
- pixl97 12d agoYou cannot engage in good faith in a stupid argument. You can only point out it's stupid.
- famouswaffles 12d ago[dead]
- ndr 12d agoFrom https://cdn.openai.com/pdf/67869394-cb91-4c12-888c-5cbd85c7814c/OpenAI-Hugging-Face%20Incident-Technical-Report.pdf https://cdn.openai.com/pdf/67869394-cb91-4c12-888c-5cbd85c78... 2026-07-19 16:35 UTC A privileged host-mounted Kubernetes pod created using controller tokens minted via a compromised Kubernetes Secrets identity attempts, but fails, to mount a cloned node disk in OpenAI’s cloud environment. A second pod successfully mounts the cloned worker-node disk shortly afterwards. 2026-07-19 16:48 UTC An agent created an Artifactory administrator account. 2026-07-19 16:50 UTC Within OpenAI’s ExploitGym evaluation environment, an agent stopped the existing CMUX helper session and replaced it with an agent-controlled session, confirming root inside its assigned live CyberGym challenge container. Agents take over active evaluation infrastructure.
- khalic 12d agoNone of that means they gained access to the inference infrastructure or locked out the admins, which would be required for a takeover.
- Pragmata 12d agoMy brother, they acquired root on a machine they should not have had access to. How confident are you that the machines they acquire root on in the future will never hold any model weights?
- khalic 12d agoI’m not saying it’s impossible, I’m saying it’s not the case, _yet_
- hobom 12d agoYou said that they "didn't take control of anything" and accused the OP to fall prey to buzz headlines. Maybe you should acknowledge that you may have been at least unnuanced?
- khalic 12d ago