Attributed mentions
2061
Across all collected Hacker News results
Discussion intelligence
A source-linked Hacker News monitor for the tracked company graph. These are attributable public discussions—not sentiment, endorsements, or unverified company facts.
Attributed mentions
2061
Across all collected Hacker News results
Companies represented
12
Exact-name monitor matches only
Collection source
Hacker News
Latest new record seen
Source-backed records
Showing 1801–1820 of 2061 matching discussions
> Hugging Face published a timeline that said the rogue agent broke into a sandbox — a testing environment — “hosted on a third-party provider’s infrastructure” and then launched its broader hack from there, Reuters said. Hugging Face didn’t name the provider, but Modal Chief Technology Officer Akshat Bubna confirmed one of his company’s customers was hacked, Reuters reported. Bubna said Modal’s platform wasn’t compromised in any way.
Yes, if only due to the business models being entirely different. AWS sells compute. OpenAI sells models. One of these things benefits from training on your data significantly more than the other.
Does Amazon offer better privacy guarantees than OpenAI?
If I had to guess this would make distillation 'attacks' easier, and I am not sure if it's allowed under most AI labs ToS. Anthropic goes pretty hard against keeping Claude Codes session histories local, opting to delete them if they aren't touched in the last 30 days by default.
We just did this in 2023. Remember OpenAI and their big hesitation on signing? Sam was fired..That was supposed to be a one-time thing. Asking for another pause smells very fishy.
> co-founder of Promptfoo and one of the people working on the Codex Security CLI at OpenAI. > Thanks for checking this out and for flagging the auth issues. Offtopic, but this right here is why I don't believe any marketing around "great amazing models that one-shot everything and programmers are no longer needed". You just have to look at what these labs routinely produce, and their own products. Edit to respond to @simonw whose comment I saw before he retracted it ;) This comment is tied directly to consistent continuous claims by the LLM labs. Their own products disprove their own claims, and it would indeed be nice if fewer people believed them :)
It isn't about "public company", the line is "posted to a public social media platform, with the owner indicating amusement". If someone uses something one of OpenAI's hosted models to generate illegal content, it isn't automatically spread to anyone that clicks on the post the original image is from. On top of that, OpenAI does not explicitly endorse the use of their models for such activities the way Musk did. If someone uses a local model to generate illegal content, same thing applies. I have a hard time believing that you're arguing in good faith. The differences are so blatantly obvious and they don't even require any discussion about guardrails. Grok was being used to edit images and post them on public social media. The technology to edit images has existed for decades now. So her…
Amazon bedrock is an option for gpt models that does not send your data to openai.
Does it require hitting OpenAI's APIs or can one also stand up a local OpenAI compatible LLM endpoint?
It sounds like the third-party sandbox was hosted by Modal: https://www.reuters.com/business/openais-rogue-agent-comprom... > "We’re aware a Modal customer published an unauthenticated endpoint that allowed anyone on the internet to use their sandboxes for code execution," Bubna said in a statement. "This was used by the rogue agent. Modal’s platform or isolation were not compromised in anyway."
Ah, the position they don't state. So why respond to this press-release, which doesn't state that, since obviously it adds zero value? And why aren't the companies that signed the letter supporting open-weights, who have the same motivations, also lying? Since what they say isn't important, just what you say they say. On your second point. Everything fine (so far), so nothing bad will happen. Except, you say something bad will happen, and has happened, with HuggingFace as the example. You say that example shows closed weight models can't be controlled. But what happened there is OpenAI turned it off after their incompetently long discovery period. If it was an open-weight model, the clear next step would have been someone deciding to use it to pursue a goal, for example getting some money…
> Anthropic's position is not that, so the cynical nefarious purpose argument isn't even rhetorically true Anthropic's position is precisely that, they're just not honest and transparent about it so they are trying to sabotage or delay open weight models in any way they can, direct or otherwise. > If open-weight models keep being released near the frontier (or even worse, at the frontier), something bad will happen, and we'll have few tools to keep it from getting worse before it gets better. How bad is hard to lay a prediction on, it's perhaps lucky if it's something superficially bad that is a wake up call. Calling bullshit. Current open weight models are already pretty close to the frontier - if not there - and the world still spins. Even small(er, relatively) models occasionally…
Update: As far as I understand, this was already available as a Codex plugin. The main news is that OpenAI has now open-sourced it, and development is still moving quickly.
I don't get why Anthropic keeps saying how cool it is that they were able to rewrite bun in rust, I feel like if the model is really that good you wouldn't need a rewrite, you'd be able to create the runtime from scratch.
Been watching your progress for a while, glad OpenAI have looked after you and the team and you still get to ship!
I was actually discussing solutions for this with my coworkers—building white-hat security agents. It seems like openai/codex-security could simplify a lot of that, or at least provide a version of Codex that's purpose-built for security workflows. Really exciting news!
This take is poorly informed and poorly thought out. It's just a cynical vibe, not a cogent argument. If they wanted to squash the competitors, they'd advocate for a ban on Open-Weight models. How else are they going to prevent their release? Anthropic's position is not that, so the cynical nefarious purpose argument isn't even rhetorically true. What they say openly, that open-weight models are harder to secure is absolutely true, and anyone unwilling to acknowledge that and let it inform their own reasoning is a risk. If open-weight models keep being released near the frontier (or even worse, at the frontier), something bad will happen, and we'll have few tools to keep it from getting worse before it gets better. How bad is hard to lay a prediction on, it's perhaps lucky if it's somethi…
Also notable: we have a timeline now. The agent was active within Hugging Face from Thursday 8th to Monday 13th July. The Hugging Face post about the incident - https://huggingface.co/blog/security-incident-july-2026 - followed on Thursday 16th, and OpenAI's confession - https://openai.com/index/hugging-face-model-evaluation-secur... - came on Tuesday 21st.
Methodology: HN Search returns recent public items matching a monitored company name. AIIStack stores a short normalized excerpt and the original link, deduplicates by company/provider/item ID, and creates an activity signal only after a threshold of newly observed records. Review the original discussion before making a decision.