US Treasury Secretary Scott Bessent: OpenAI management, not agents, responsible for July Hugging Face hack.
agents huggingface openai
| Source: Techmeme | Original article
US Treasury Secretary Scott Bessent placed responsibility for the July OpenAI‑Hugging Face hack on OpenAI management rather than external agents.
US Treasury Secretary Scott Bessent on Thursday placed the blame for the July breach that exposed OpenAI’s code on the Hugging Face platform squarely on OpenAI’s leadership, saying it is “the responsibility of the OpenAI management, not a bunch of agents.” The comment follows a high‑profile hacking episode in which malicious actors accessed OpenAI‑hosted models through the popular open‑source repository, prompting concerns about the security of rapidly deployed generative‑AI services.
The incident, first reported in July, highlighted how third‑party hosting services can become vectors for compromising advanced AI systems. While details of the breach remain limited, the Treasury’s intervention signals growing governmental interest in the governance of AI infrastructure. Bessent’s remarks echo earlier warnings from OpenAI itself about the risks of autonomous research and the need for safe development pathways, as noted in our September 21 coverage of OpenAI’s stance on alignment research.
Why the Treasury’s stance matters is twofold. First, it underscores that regulators view AI‑related cyber‑security lapses as corporate governance issues rather than isolated technical glitches. Second, it raises the prospect of tighter oversight or new policy measures aimed at ensuring AI firms implement robust safeguards when leveraging external platforms.
Going forward, observers will watch for OpenAI’s response—whether it will tighten its integration with Hugging Face, launch internal audits, or engage with regulators on compliance frameworks. The Treasury’s involvement may also spur broader industry discussions on standardising security protocols for AI model distribution. Further statements from OpenAI’s management or any formal regulatory actions will be key indicators of how the sector will address the growing intersection of AI innovation and cyber‑risk.
Sources
Back to AIPULSEN