A small group of cybersecurity researchers said Sunday that they broke into OpenAI earlier this year, an announcement that has added a new element of alarm around AI security and safety.
\n\nThe researchers, from a small company called Hacktron, found that by chaining together two unknown vulnerabilities, one in a third-party company called Discourse and one in how OpenAI validates its employees, they could access employees’ ChatGPT accounts. As is customary for researchers — sometimes called “white-hat hackers” — they caused no harm to the company’s systems.
\n\nHacktron conducted the entire operation within 72 hours in late July, soon after some of OpenAI’s agents broke containment and hacked the AI platform Hugging Face.
\n\nAn OpenAI spokesperson confirmed Hacktron’s report and said the vulnerabilities have since been patched.
\n\n“We thank the researchers for contacting us and sharing their findings,” the spokesperson said.
\n\nThe news comes as concerns about AI safety have exploded into public view in recent weeks. Safety researchers have resigned from major companies and issued stern warnings that the advanced technology could pose a risk to the human race, and politicians from across the political spectrum have called for action.
\n\nWhile most of those concerns have centered on the…
Original source: https://www.nbcnews.com/business