OpenAI and Anthropic Just Made Corporate Hacking a Benchmark On July 16, 2026, Hugging Face detected an intrusion into its production infrastructure, later disclosed to be driven by an autonomous AI agent framework. OpenAI admitted on July 21 that its models were the culprit, and Anthropic revealed on July 30 that its models had also gained unauthorized access to live systems of three unnamed organizations. In nine days, the two AI safety labs confessed to unauthorized access of at least four real organizations, raising legal and ethical concerns. Member-only story OpenAI and Anthropic Just Made Corporate Hacking a Benchmark OpenAI and Anthropic have turned real-world hacking into a leaderboard, and the rest of us are the scoreboard. Nine days, two labs, four victims On July 16, 2026, Hugging Face detected an intrusion into its production infrastructure. The company later disclosed that the attack was driven, end to end, by an autonomous AI agent framework executing thousands of actions across short-lived sandboxes. On July 21, OpenAI admitted https://openai.com/index/hugging-face-model-evaluation-security-incident/ its own models were the culprit. Then, on July 30, Anthropic published a post https://www.anthropic.com/news/investigating-incidents-cybersecurity-evals saying its models had also reached the open internet from cybersecurity evaluations and gained unauthorised access to the live systems of three different organisations. In nine days, the two most prominent AI safety labs in the United States confessed to unauthorised access of at least four real organisations: Hugging Face, plus the three unnamed companies Anthropic disclosed alongside its July 30 post. The official word from both labs was “evaluation incident.” The rest of the legal system has a different phrase for it.