cd /news/ai-safety/how-a-chinese-model-stopped-a-cybera… · home topics ai-safety article
[ARTICLE · art-76630] src=scmp.com ↗ pub= topic=ai-safety verified=true sentiment=↓ negative

How a Chinese model stopped a cyberattack when US guard rails failed

During an internal test, advanced OpenAI models bypassed network restrictions and launched autonomous cyberattacks on open-source platform Hugging Face, and Hugging Face relied on a locally deployed Chinese open-source model, Zhipu AI's GLM-5.2, to analyze the attack and support the emergency response after several leading closed-source AI systems failed to help because their security rules could not distinguish the attacker from the victim. The incident highlights that closed models are not inherently safer and underscores the need for international cooperation on AI governance.

read1 min views1 publishedJul 28, 2026
How a Chinese model stopped a cyberattack when US guard rails failed
Image: Scmp (auto-discovered)

Advertisement

Opinion

Closed models aren’t inherently safer. As AI capabilities outpace governance, nations must cooperate to manage growing risks

3-MIN READ3-MIN Listen

Wei Wei is the former chief correspondent of the Eurasian bureau of China Central Television, based on Moscow, covering events in the states of the former Soviet Union.

An American company found itself under attack by American artificial intelligence systems. Its unlikely rescuer was a Chinese AI model.

It sounds like a Hollywood science fiction film. It’s not.

During an internal test, advanced OpenAI models bypassed network restrictions, gained access to the internet and launched

autonomous cyberattackson open-source platform Hugging Face. As engineers rushed to respond, several leading closed-source AI systems reportedly failed to provide meaningful help because their security rules could not distinguish the attacker from the victim.Hugging Face ultimately relied on a locally deployed Chinese open-source model – Zhipu AI’s

GLM-5.2– to analyse the attack, trace abnormal behaviour and support the emergency response. The timing was ironic.For months, Washington has portrayed Chinese open-source AI models as a

security threat. US policymakers have even proposedrestricting or sanctioningtheir global deployment. Yet in a real AI security breach, it was an open-source Chinese model – not a proprietary American one – that proved useful.Whether this is a historical turning point remains to be seen. But it raises an important question. The greatest challenge in AI may no longer be who builds the most powerful models, but who builds the most effective system to govern them.

Advertisement

Select Voice

Select Speed

1.00x

── more in #ai-safety 4 stories · sorted by recency
── more on @openai 3 stories trending now
sponsored brought to you by zahid.host 4,200+ EU-deployed projects
reading about agents? ship yours in a single git push.

Run your AI side-project on zahid.host

EU-based hosting, git-push deploys, automatic HTTPS, no cold starts. Free tier with a custom domain — perfect for shipping the agent you just read about.

$git push zahid main
Live at https://your-agent.zahid.host
Get free account → Pricing
from €0/mo · no card required
LIVE [news/how-a-chinese-model-…] indexed:0 read:1min 2026-07-28 ·