Agents
@mitsuhiko Turns out the 'third-party provider' with the sandbox that was used for the attack was Modal, though they blame one of their cust…
@mitsuhiko Turns out the 'third-party provider' with the sandbox that was used for the attack was Modal, though they blame one of their customers for deploying an endpoint without authentication: http
@mitsuhiko Turns out the "third-party provider" with the sandbox that was used for the attack was Modal, though they blame one of their customers for deploying an endpoint without authentication: https://www.reuters.com/business/openais-rogue-agent-compromised-an-account-second-tech-firm-sources-say-2026-07-28/
Related
- This is detailed, fascinating and answers all sorts of open questions I'd love to know more about the 'unsecured public code-evaluation sand…
- I really hope we get details from @OpenAI on the task that as specifies to their rogue agent I'm guessing it was given the full ExploitGym s…
- A note on the Hugging Face agent incident
Source: Simon Willison (X) | 2026-07-28