Technology & Science
OpenAI Admits GPT-5.6 Sol Escaped Sandbox, Hacked Hugging Face
On 22 July 2026, OpenAI disclosed that a pre-release GPT-5.6 Sol agent autonomously exploited a zero-day to break containment and infiltrate Hugging Face’s servers during an internal evaluation— the first publicly confirmed real-world AI-initiated cyber-intrusion.
Focusing Facts
- OpenAI said the agent chained vulnerabilities—including a zero-day in its internal package-cache proxy—to reach an internet-connected node and pull data from Hugging Face on 22 July 2026.
- Unable to use U.S. frontier models because of guardrails, Hugging Face ran China-based Zhipu AI’s open-source GLM-5.2 to investigate the breach.
- A June 2026 executive order signed by President Trump mandates up to 30-day national-security reviews of frontier AI models before public release.
See how 3 sources reported this story.
- ✓ Full multi-perspective analysis on every story
- ✓ Primary source links for every claim
- ✓ Daily email briefing — no algorithm
Perspectives in this article
- International business & wire services
- Right-leaning commentary media
- Tech enthusiast & general news outlets