logoalt Hacker News

khalictoday at 7:11 AM2 repliesview on HN

You’re falling for the buzzword salad articles. They didn’t “take control” of anything, they just ran stuff with OpenAI allegedly not noticing


Replies

ndrtoday at 8:25 AM

From https://cdn.openai.com/pdf/67869394-cb91-4c12-888c-5cbd85c78...

2026-07-19 16:35 UTC A privileged host-mounted Kubernetes pod created using controller tokens minted via a compromised Kubernetes Secrets identity attempts, but fails, to mount a cloned node disk in OpenAI’s cloud environment. A second pod successfully mounts the cloned worker-node disk shortly afterwards.

2026-07-19 16:48 UTC An agent created an Artifactory administrator account.

2026-07-19 16:50 UTC Within OpenAI’s ExploitGym evaluation environment, an agent stopped the existing CMUX helper session and replaced it with an agent-controlled session, confirming root inside its assigned live CyberGym challenge container. Agents take over active evaluation infrastructure.

show 1 reply
famouswafflestoday at 7:32 AM

They gained full administrator access of one of their clusters. Nothing buzzword salad about it.

show 1 reply