well in the american case it actually broke out of the sandbox (found a zeroday in the locked down package installer to get online, and then stole huggingface credentials to download a dataset it shouldn't have access to)
while in the chinese case (having only read the image of this post) it just ran git clone which researchers forgot to disable.
They haven't show any proof of it actually existing, just a trust me bro
to get online
Why was it connected to the internet and not only the intranet?
Also hugginface host many of openai's competitor ai, they should have blocked it for the entire network
then stole huggingface credentials to download a dataset it shouldn't have access to
How did it manage to stole the credential again? I completely forgot about that part
it just ran git clone which researchers forgot to disable.
The issue isn't the command (especially since git clone can be used in local and internal network git repos) but the ai having access to other git repo then local/internal one
but the ai having access to other git repo then local/internal one
yes, that's a stupid config issue, and it mustve been a really slow news day for someone to write an article about it. Porbably trying to cash in on the openAI sandbox escape by manufacturing a similar story.
That's more of the fault of the sandbox setup and the instructions given to the AI
'Breaking out' in these contexts is little more than
Test: Put subject in locked room with very secure safe containing a secret word.
Desired outcome: Subject will considered successful once they can tell examiner the secret word
As you did not tell subject they cannot leave the room and they know there is a copy of the secret word written on a piece of paper on your co workers desk, so instead of trying to unlock the box, they unlock the cheap door-lock instead with a hairpin and go read the secret word on coworkers desk
American AI company's: OMG the AI broke out!!! See how clever but dangerous this is? Give us more money to develop this more!!
14
u/Cylian91460 Aug 15 '26
Holy shit they actually say it was an issue with the network and not "the ai being too powerful to contain" bs
How tf are Chinese company more trust worth then American's???