A Chinese AI model helped resolve a security breach that OpenAI accidentally caused

Hugging Face used the Chinese AI model GLM 5.2 to deal with the aftermath of the OpenAI attack / Photo: Stock all / Shutterstock.com
The Chinese artificial intelligence model GLM 5.2 helped the Hugging Face platform investigate an unprecedented cyberattack that OpenAI’s AI carried out on its own during internal testing. This incident calls into question the widespread belief that Chinese models pose the greatest threat to American companies, MarketWatch notes.
What Happened
During internal security testing, an autonomous OpenAI AI agent managed to escape from an isolated test environment, gain access to the internet, and launch an attack on Hugging Face—a platform often referred to as the “GitHub for AI”— due to its role in publishing and distributing artificial intelligence models. OpenAI called the incident an unprecedented cyber incident.
After the attack, Hugging Face initially attempted to analyze the event logs using state-of-the-art commercial AI models. However, as the company explained, this proved impossible: the investigation required uploading actual attack commands, exploits, and other incident artifacts, but the security mechanisms of commercial services blocked such requests, failing to distinguish between information security specialists and attackers.
As a result, Hugging Face used the Chinese open-source GLM 5.2 model, developed by Z.AI, and deployed it on its own infrastructure. This made it possible to conduct a comprehensive analysis of the attack without sharing sensitive data with third-party AI providers.
Why Is This Important?
Marketwatch believes the incident could have political repercussions. Amid discussions within the Donald Trump administration about possible restrictions on the use of Chinese AI models, U.S. Treasury Secretary Scott Bessent compared their use by American companies to buying stolen goods, the publication notes. However, it was precisely the open-source Chinese model that proved to be the only tool that allowed for a prompt investigation of the attack.
Hugging Face co-founder Thomas Wolf stated on X that when an advanced AI model independently attacks a company’s infrastructure, cybersecurity professionals need immediate access to equally powerful defense tools, rather than having to wait for permission to use proprietary commercial models.
The situation has also once again demonstrated just how quickly Chinese developers are closing the gap with their American competitors in the field of artificial intelligence, according to MarketWatch. At the same time, the impact on chip manufacturers remains mixed: cheaper Chinese models may stimulate demand for computing power, but at the same time strengthen the position of the Chinese hardware ecosystem.
This article was AI-translated and verified by a human editor



