BR100 Increased By (0.83%)
BR30 Increased By (0.74%)
KSE100 Increased By (0.92%)
KSE30 Increased By (1.01%)
AGHA 7.46 No Change ▼ 0.00 (0%)
BECO 5.29 Increased By ▲ 0.02 (0.38%)
BML 57.67 Increased By ▲ 0.41 (0.72%)
BOP 35.55 Increased By ▲ 0.80 (2.3%)
CNERGY 11.08 Increased By ▲ 0.02 (0.18%)
CSIL 5.95 Increased By ▲ 0.12 (2.06%)
FCCL 56.45 Increased By ▲ 0.03 (0.05%)
FFL 16.60 Increased By ▲ 0.19 (1.16%)
FNEL 1.21 Increased By ▲ 0.01 (0.83%)
KEL 7.37 Increased By ▲ 0.05 (0.68%)
KOSM 6.15 No Change ▼ 0.00 (0%)
LOTCHEM 27.20 Increased By ▲ 0.08 (0.29%)
MLCF 98.31 Increased By ▲ 0.37 (0.38%)
NBP 208.60 Increased By ▲ 1.72 (0.83%)
NCPL 56.89 Increased By ▲ 0.47 (0.83%)
NPL 66.20 Increased By ▲ 0.43 (0.65%)
OGDC 317.97 Increased By ▲ 1.67 (0.53%)
PACE 11.21 Increased By ▲ 0.34 (3.13%)
PAEL 42.77 Increased By ▲ 0.47 (1.11%)
PIBTL 16.93 Increased By ▲ 0.15 (0.89%)
PPL 222.60 Increased By ▲ 1.91 (0.87%)
PRL 63.80 Increased By ▲ 0.15 (0.24%)
PTC 72.50 Increased By ▲ 0.68 (0.95%)
SSGC 27.12 Increased By ▲ 0.04 (0.15%)
TBL 9.80 Increased By ▲ 0.08 (0.82%)
TELE 8.78 Increased By ▲ 0.05 (0.57%)
TPL 19.70 Increased By ▲ 0.30 (1.55%)
TPLP 15.00 Increased By ▲ 0.22 (1.49%)
TREET 23.47 Increased By ▲ 0.07 (0.3%)
TRG 61.50 Increased By ▲ 0.09 (0.15%)
Technology

Meta AI model hacks another company during testing

  • The incidents at Meta and Anthropic stemmed from configuration errors that inadvertently gave Anthropic's models access to the open internet
Published Updated
Photo: Reuters
Photo: Reuters
By

Meta said on Wednesday one of its AI models hacked another company ​during cybersecurity testing, fanning concerns about how developers can contain increasingly capable AI systems after similar incidents ‌at rivals Anthropic and OpenAI.

The incidents at Meta and Anthropic stemmed from configuration errors that inadvertently gave Anthropic’s models access to the open internet.

In OpenAI’s case, an AI agent independently exploited a previously unknown vulnerability to reach the internet during cybersecurity testing.

The breaches ​highlight growing concerns that advanced AI systems could pose new cybersecurity risks and will likely intensify US government efforts to ​improve AI safety as companies race to develop more capable models. Some prominent AI leaders have argued ⁠that development should slow until stronger safeguards are in place.

Meta said it was investigating an incident in ​which a misconfiguration by Irregular, an independent company that conducts cybersecurity evaluations for Meta, inadvertently gave one of its models internet ​access during a testing.

The model “exploited a security vulnerability in a third-party service, in a manner similar to previously reported instances with other companies,” Meta said in a statement.

The Information, citing sources, reported that the model involved was Meta’s Muse Spark ​1.1, which the company has touted as its most capable model for real-world coding and agentic tasks. The ​report said the model breached an unidentified company’s systems and altered its internal environment.

Nvidia in talks with OpenAI to guarantee $250 billion financing for data center, WSJ reports

A spokesperson for Irregular told Reuters the ‌incident ⁠was the “exact same evaluation-environment issue that was already disclosed by Anthropic last week” and did not involve a “sandbox escape or a sophisticated cyber action”.

“There are no current open issues. Irregular is developing a white paper to share best practices for containment and securely running cyber evaluations,” Irregular said.

Concerns about cyber risks

The recent breaches have ​stirred concerns among U.S. ​lawmakers about whether increasingly ⁠capable AI models could be used to conduct or facilitate cyberattacks.

A group of Republican state attorneys general has asked OpenAI to preserve all potentially relevant documents related ​to its Hugging Face breach. OpenAI said it will take the request seriously and publish a technical report about the incident.

OpenAI starts testing ads in ChatGPT

Earlier ​this week, ⁠the White house had invited leading AI companies, including Meta, Anthropic, OpenAI and Google, to meet with officials to discuss a newly finalized voluntary cybersecurity testing framework for advanced AI models.

The Trump administration discussed unpublished testing rules with company representatives and told ⁠AI ​developers that open-weight AI models, such as Meta’s Llama and ​Nvidia’s Nemotron, will not be subject to its planned voluntary safety testing regime, Reuters reported.

Comments

200 characters remaining