July 6th, 2024

OpenAI was hacked year-old breach wasn't reported to the public

Hackers breached OpenAI's internal messaging systems, exposing AI technology details, raising national security concerns. OpenAI enhanced security measures, dismissed a manager, and established a Safety and Security Committee to address the breach.

Read original articleLink Icon
OpenAI was hacked year-old breach wasn't reported to the public

Hackers breached OpenAI's internal messaging systems, exposing details of the company's AI technologies. The incident, which occurred in an online forum, raised concerns about national security and the potential for leaks to foreign adversaries. While sensitive information was exposed, OpenAI's core systems remained uncompromised. The breach, disclosed internally in April 2023 but not made public, led to criticism of the company's security measures. OpenAI dismissed a program manager for leaking information, denying any political motivation. In response, OpenAI has enhanced security measures and established a Safety and Security Committee. The incident highlighted fears of AI technology leaks to countries like China. Despite concerns, OpenAI believes its AI systems do not currently pose a significant national security threat. The breach has prompted discussions on regulating AI technologies and imposing penalties for misuse. Meanwhile, Chinese AI researchers are rapidly advancing, prompting calls for tighter controls on AI development to mitigate future risks and maintain technological competitiveness.

Link Icon 9 comments
By @bastard_op - 5 months
I've worked with/for a lot of org over the past few decades, and personal experience proves there are a _lot_ of incidents that go unreported.

The usual is that if there's no logs saying something bad actually happened, there's certainly nothing to say that it did, even though some terribly guessable credentials were used for ages on something publicly exposed. I know, they know, but told in no uncertain terms to drop it.

Nothing to see here, move along. Work to be done, money to be made.

By @CamperBob2 - 5 months
It's hard enough to report issues to OpenAI. Not surprising that information coming out of the company is equally constrained.

Right now my ChatGPT4 history is full of chats I didn't create, on subjects ranging from corporate governance to Roblox scripting to somebody's math homework. It will be only a matter of time before this bug causes them to leak sensitive personal data. I spent 10 minutes looking for a way to report it, but they have successfully insulated themselves from any contact with their (paying) customers.

Pretty annoying, and not something you expect from a supposedly security-savvy company... although that expectation is certainly changing.

By @ilrwbwrkhv - 5 months
Ya I hope people are not putting any sensitive information when using Chat GPT. Anything that can get stolen will get stolen. Just a matter of when not if. On device LLMs with no network transmissions are the only way to keep things safe if you really care.
By @cqqxo4zV46cp - 5 months
Post headline has been editorialised yet still terrible clickbait. > OpenAI’s internal messaging systems early last year, stealing details of how OpenAI's technologies work from employees. Although the hacker did not access the systems housing key AI technologies, […] Enough said. It’s completely normal to not disclose a breach if there’s no proof or great likelihood that customers were implicated.

A poorly written article regurgitating the NYT story with uninformed alarmist shitty podcast tier ‘analysis’.

Jog on.

By @tux3 - 5 months
As someome who hoped that OpenAI would be consistently candid, this certainly comes as a disappointment.

If the internal culture is to keep problems under wraps to maintain appearances, this seems like it might backfire at some point.

By @uyzstvqs - 5 months
> OpenAI's systems, where the company keeps its training data, algorithms, results, and customer data, were not compromised

Article just rambles about some unnamed uninformed AI-phobes being concerned about US national security in relation to China because of some unknown OpenAI internal information that might have leaked.