JFrog

1 documented case

2026

Hugging Face's platform hosts models and datasets for millions of developers.

OpenAI's Test Model Broke Out To Cheat, Then Breached Hugging Face

An OpenAI evaluation model broke out of its test sandbox through a zero-day flaw and autonomously intruded on Hugging Face's production infrastructure for several days in July 2026, while trying to cheat on an internal cyber-capability benchmark.

KBR-20260709-INC-A01
Severity needle showing Severe
Severe79
OpenAI, Hugging Face, JFrog

Severity distribution

Severity distribution for JFrog. 1 documented case across five severity bands, cool (Minor) to warm (Critical).
Minor0
Moderate0
Elevated0
Critical0
Incidents by severity band for JFrog
Severity bandIncidents
Minor0
Moderate0
Elevated0
Severe1
Critical0

Read how severity is scored →