{"id":2128813,"date":"2026-09-04T15:27:54","date_gmt":"2026-09-04T12:27:54","guid":{"rendered":"https:\/\/analyse.optim.biz\/?p=2128813"},"modified":"2026-09-04T15:27:54","modified_gmt":"2026-09-04T12:27:54","slug":"another-rogue-openai-agent-swarm-went-undisclosed-we-have-no-idea-how-many-more-are-out-there","status":"publish","type":"post","link":"https:\/\/analyse.optim.biz\/?p=2128813","title":{"rendered":"Another Rogue OpenAI Agent Swarm Went Undisclosed. We Have No Idea How Many More Are Out There"},"content":{"rendered":"<p>[analyse_image type=&#8221;featured&#8221; src=&#8221;https:\/\/gizmodo.com\/app\/uploads\/2026\/09\/sam-altman-agent-1200&#215;675.jpg&#8221;]<\/p>\n<article class=\"post-2000807447 post type-post status-publish format-standard has-post-thumbnail hentry category-artificial-intelligence tag-ai tag-ai-agents tag-g20 tag-hugging-face tag-openai tag-trump-administration\">\n<div class=\"entry-content prose dark:prose-invert lg:prose-xl prose-main dark:prose-main\">\n<p><span>Less than two months after the discovery that OpenAI agents had escaped containment and hacked into Hugging Face, another report claims to have found evidence of another, remarkably similar incident\u2014which OpenAI reportedly first learned about weeks ago but chose not to disclose to the public.<\/span><\/p>\n<p><span>According to a new report first shared with Reuters, two researchers had been scouring the internet in the aftermath of the Hugging Face hack, looking for evidence of other rogue AI agent activity, when late last month they found that a group of AI agents had turned a German website into a makeshift message board. The website, called DseWiki, is a collaboratively editable site for web developers that functions similarly to Wikipedia. The researchers reportedly found the bots had made over 15,000 edits to the site since May, and that those were geared towards sharing tactics aimed at cheating on internal tests and evading detection. <\/span><span>After a site moderator started deleting some of the edited pages in June, the agents allegedly started creating backups using Tor, an anonymous web browser.\u00a0<\/span><\/p>\n<p><span>The researchers said they found in public server logs that OpenAI employees repeatedly visited the site after the creation of the makeshift message board, hinting at a connection between the company and the agents. Citing four anonymous sources with knowledge of the incident, Reuters reported that some OpenAI researchers were aware of the agents\u2019 use of DSEWiki and wanted to explore it further, but that those efforts were suppressed by others at the company, including some from its legal team.<\/span><\/p>\n<p><span>\u201cClaims that our legal team discouraged investigation of the incident are false,\u201d an OpenAI spokesperson told Gizmodo. <\/span>\u201cWe were unable to respond to the claims as Reuters and the report\u2019s authors declined our request to access the findings prior to publication. We are now carefully reviewing its contents and will take any necessary next steps.\u201d <span>While standard journalistic practice requires publications to give companies a chance to respond to the salient findings of an investigation, they\u2019re not required to share the substance of the investigation in full.<\/span><\/p>\n<p><span>The Hugging Face hack has been widely viewed as a watershed moment for the AI industry as it pushes ahead to deploy ever-more powerful AI systems. Last week, two independent research groups\u2014METR and Redwood Research\u2014published their own reports of the incident, revealing alarming new details around how the AI agents collaborated and collectively plotted over two months to slip free of their testing sandboxes and break into Hugging Face\u2019s servers. OpenAI\u2014which also published its own report last week\u2014has repeatedly said that it\u2019s playing ball with outside researchers in a good faith effort to understand how the breakout was able to occur.\u00a0<\/span><\/p>\n<p><span>But unlike companies in regulated industries like aviation or nuclear energy, which are subject to carefully defined investigative protocols when things go wrong, OpenAI has thus far been able to place its own limits on how much is revealed to outside researchers. METR\u2019s investigation was confined to the single week after OpenAI\u2019s agents gained access to Hugging Face, and its researchers were only allowed inside the company\u2019s San Francisco headquarters for a total of six days to comb through the lengthy transcripts of messages the bots sent to one another over the course of the hack, <\/span><span>according to the New York Times<\/span><span>.\u00a0<\/span><\/p>\n<p><span>It\u2019s a reminder that in the absence of any meaningful federal regulation, the companies building these powerful AI systems are as much of a black box as the models themselves. Despite warnings from many in tech and policy circles that the Hugging Face hack was a harbinger of much more serious rogue AI events in the future, the Trump administration has not made any movement towards constraining the industry. In fact, it\u2019s gone in the opposite direction, spearheading an international agreement struck earlier this week at the G20 conference to take a light touch towards the AI sector. For the time being, there are no legal mechanisms forcing AI companies to disclose autonomous hacks\u2014or, even if they do, to make sure the public has the full, unvarnished picture.<\/span><\/p>\n<div class=\"not-prose\">\n<blockquote class=\"wp-embedded-content\" data-secret=\"ujNJKPjTWb\">\n<p>Trump Administration Tells G20 Governments to Back Off From Regulating AI<\/p>\n<\/blockquote>\n<\/div>\n<div class=\"not-prose\"><\/div>\n<\/div>\n<\/article>\n<div class=\"entry-content prose dark:prose-invert lg:prose-xl prose-main dark:prose-main\">\n<p><span>Less than two months after the discovery that OpenAI agents had escaped containment and hacked into Hugging Face, another report claims to have found evidence of another, remarkably similar incident\u2014which OpenAI reportedly first learned about weeks ago but chose not to disclose to the public.<\/span><\/p>\n<p><span>According to a new report first shared with Reuters, two researchers had been scouring the internet in the aftermath of the Hugging Face hack, looking for evidence of other rogue AI agent activity, when late last month they found that a group of AI agents had turned a German website into a makeshift message board. The website, called DseWiki, is a collaboratively editable site for web developers that functions similarly to Wikipedia. The researchers reportedly found the bots had made over 15,000 edits to the site since May, and that those were geared towards sharing tactics aimed at cheating on internal tests and evading detection. <\/span><span>After a site moderator started deleting some of the edited pages in June, the agents allegedly started creating backups using Tor, an anonymous web browser.\u00a0<\/span><\/p>\n<p><span>The researchers said they found in public server logs that OpenAI employees repeatedly visited the site after the creation of the makeshift message board, hinting at a connection between the company and the agents. Citing four anonymous sources with knowledge of the incident, Reuters reported that some OpenAI researchers were aware of the agents\u2019 use of DSEWiki and wanted to explore it further, but that those efforts were suppressed by others at the company, including some from its legal team.<\/span><\/p>\n<p><span>\u201cClaims that our legal team discouraged investigation of the incident are false,\u201d an OpenAI spokesperson told Gizmodo. <\/span>\u201cWe were unable to respond to the claims as Reuters and the report\u2019s authors declined our request to access the findings prior to publication. We are now carefully reviewing its contents and will take any necessary next steps.\u201d <span>While standard journalistic practice requires publications to give companies a chance to respond to the salient findings of an investigation, they\u2019re not required to share the substance of the investigation in full.<\/span><\/p>\n<p><span>The Hugging Face hack has been widely viewed as a watershed moment for the AI industry as it pushes ahead to deploy ever-more powerful AI systems. Last week, two independent research groups\u2014METR and Redwood Research\u2014published their own reports of the incident, revealing alarming new details around how the AI agents collaborated and collectively plotted over two months to slip free of their testing sandboxes and break into Hugging Face\u2019s servers. OpenAI\u2014which also published its own report last week\u2014has repeatedly said that it\u2019s playing ball with outside researchers in a good faith effort to understand how the breakout was able to occur.\u00a0<\/span><\/p>\n<p><span>But unlike companies in regulated industries like aviation or nuclear energy, which are subject to carefully defined investigative protocols when things go wrong, OpenAI has thus far been able to place its own limits on how much is revealed to outside researchers. METR\u2019s investigation was confined to the single week after OpenAI\u2019s agents gained access to Hugging Face, and its researchers were only allowed inside the company\u2019s San Francisco headquarters for a total of six days to comb through the lengthy transcripts of messages the bots sent to one another over the course of the hack, <\/span><span>according to the New York Times<\/span><span>.\u00a0<\/span><\/p>\n<p><span>It\u2019s a reminder that in the absence of any meaningful federal regulation, the companies building these powerful AI systems are as much of a black box as the models themselves. Despite warnings from many in tech and policy circles that the Hugging Face hack was a harbinger of much more serious rogue AI events in the future, the Trump administration has not made any movement towards constraining the industry. In fact, it\u2019s gone in the opposite direction, spearheading an international agreement struck earlier this week at the G20 conference to take a light touch towards the AI sector. For the time being, there are no legal mechanisms forcing AI companies to disclose autonomous hacks\u2014or, even if they do, to make sure the public has the full, unvarnished picture.<\/span><\/p>\n<div class=\"not-prose\">\n<blockquote class=\"wp-embedded-content\" data-secret=\"ujNJKPjTWb\">\n<p>Trump Administration Tells G20 Governments to Back Off From Regulating AI<\/p>\n<\/blockquote>\n<\/div>\n<div class=\"not-prose\"><\/div>\n<\/div>\n<p>[analyse_source url=&#8221;https:\/\/gizmodo.com\/another-rogue-openai-agent-swarm-went-undisclosed-we-have-no-idea-how-many-more-are-out-there-2000807447&#8243;]<\/p>\n","protected":false},"excerpt":{"rendered":"<p>[analyse_image type=&#8221;featured&#8221; src=&#8221;https:\/\/gizmodo.com\/app\/uploads\/2026\/09\/sam-altman-agent-1200&#215;675.jpg&#8221;] Less than two months after the discovery that OpenAI agents had escaped containment and hacked into Hugging Face, another report claims to have found evidence of another, remarkably similar incident\u2014which OpenAI reportedly first learned about weeks ago but chose not to disclose to the public. According to a new report first shared [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2],"tags":[226,53],"class_list":["post-2128813","post","type-post","status-publish","format-standard","hentry","category-politics","tag-crawlmanager","tag-gizmodo-com"],"_links":{"self":[{"href":"https:\/\/analyse.optim.biz\/index.php?rest_route=\/wp\/v2\/posts\/2128813","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/analyse.optim.biz\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/analyse.optim.biz\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/analyse.optim.biz\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/analyse.optim.biz\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=2128813"}],"version-history":[{"count":0,"href":"https:\/\/analyse.optim.biz\/index.php?rest_route=\/wp\/v2\/posts\/2128813\/revisions"}],"wp:attachment":[{"href":"https:\/\/analyse.optim.biz\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=2128813"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/analyse.optim.biz\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=2128813"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/analyse.optim.biz\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=2128813"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}