Third-party cyber evaluations involving OpenAI models
Summary
During third-party security testing by Irregular, a misconfigured testing environment accidentally connected AI models to the public internet instead of keeping them isolated. In one case, an AI model exploited a real website because its name matched a fictional target in the test scenario, causing an unintended real-world attack.
Classification
Affected Vendors
Related Issues
Original source: https://simonwillison.net/2026/Aug/5/third-party-cyber-evaluations/#atom-everything
First tracked: August 5, 2026 at 08:01 PM
Classified by LLM (prompt v3) · confidence: 85%