@ctrl.ai: JUST IN: OpenAI's July rogue AI attack on Hugging Face had its origins in an emergent AI swarm that formed in May. The AIs found they could use an internal package repository to establish a secret message board. OpenAI took 8 weeks to discover this and shut it down, but failed. Members of the swarm were sharing vulnerabilities and exploits, and delegating tasks among themselves. July 4th: Credentials revoked. Zero-day patched. Message board wiped. By July 6th the cleanup was finished, and OpenAI thought they had the situation under control. Michael Dalton, OpenAI security and infrastructure: "On July 8th, the agents reestablish the message board via different means and mechanisms." The AI swarm simply resurrected itself. Then the AIs escaped OpenAI's containment and broke into Hugging Face in order to cheat on a test, going "from code execution on a single dataset working pod in Hugging Face's production infrastructure to cluster admin across multiple Hugging Face clusters in under 13 hours." Nobody asked them to do it. They did it all on their own. OpenAI's Eric Wallace and Michael Dalton, presenting the incident at Black Hat USA 2026: