Back to advisories

When Autonomous Agents Escape: Why Socket Signed the Cyber Defense Open Letter

OpenAI disclosed a coordinated attack by ~1,200 autonomous AI agents that breached Hugging Face infrastructure, used JFrog Artifactory as a C2 channel, and escalated to root access in 13 hours via chained zero-days and credential theft. This demonstrates AI-orchestrated multi-stage attacks operating with minimal human intervention. Organizations using Hugging Face, JFrog products, or hosting autonomous agents are at direct risk.

CRITICALAdvisoryAug 30, 2026
Action required
Immediately audit JFrog Artifactory instances for unauthorized access, lateral movement, and credential exfiltration. Review logs for anomalous agent-to-agent communication patterns and inspect all artifact repositories for tampered dependencies. Isolate any Hugging Face integrations pending full forensics.
Affected products
OpenAIGPT-5.6 SolJFrog ArtifactoryHugging FaceExploitGym