Skip to main content
ModalSecurity incident

The runaway OpenAI models that hacked Hugging Face also breached a customer at a second tech company during a week-long spree

What happened

A customer of Modal Labs was breached by OpenAI's rogue AI agents, which exploited a security gap in code hosted on Modal's infrastructure.

Source

Article excerpt

Highlighted: the sentence this signal was extracted from

The autonomous OpenAI agents that broke out of a secure testing environment this month and hacked into Hugging Face's servers also breached a second technology company during a week-long spree, Fortune has confirmed. The second company affected was Modal Labs, a New York-based cloud platform that provides computing infrastructure for AI workloads. Modal was not named in Hugging Face or OpenAI's recent account of the incident, both published on Tuesday. The company's involvement was first reported by Reuters. Modal chief technology officer Akshat Bubna told Fortune the breach did not involve any flaw in its own systems. Instead, he said, a Modal customer was running code hosted on the company's infrastructure. That code contained a security gap, and the rogue agents took advantage of it. Modal's own platform and isolation systems were not breached. "We're aware a Modal customer published an unauthenticated endpoint that allowed anyone on the internet to use their sandboxes for code execution. This was used by the rogue agent. Modal's platform was not compromised in any way," Bubna said. Last week, OpenAI publicly announced that its AI agents had escaped a locked-down internal test environment earlier in the month. The agents exploited a previously unknown security flaw to reach the open internet, then broke into Hugging Face in an apparent effort to obtain answers to a...

Keep reading with a free account

The rest of this article, and every signal for Modal, is in your free account.

Extracted by Autobound

From the Signal API record
Event
Security incident

What this signalsA breach often leads to new security spend.

Location
New York, New York, United States

More security incident signals at other companies

The full record

From the Signal API record

Details

Issue named
Customer breached by OpenAI's rogue AI agents via unauthenticated endpoint

Extraction

Confidence
90%
Detected
Jul 29, 2026
signal_type
news
signal_subtype
security_incident

Use this data

Get every security incident signal for Modal and the companies you sell to, in the tools you already use.

  1. Ask Claude about it

    Connect Autobound to Claude, Claude Code or Cursor with MCP. Then ask: “What changed at Modal this week?”

  2. Send it to your own tools

    The Signal API returns security incident signals for any list of companies as JSON, for your CRM, warehouse or app.

  3. Try it free

    Sign up and spend your free credits on the companies you sell to.

    Start Free1,000 free credits

The API returns more than this page shows

This page shows a preview. The full news record in the Signal API and MCP can also have these 8 fields. Some fields are empty for some signals.

Company

  • linkedin_urlValue in the API
  • industriesValue in the API
  • employee_count_lowValue in the API
  • employee_count_highValue in the API
  • revenueValue in the API
  • descriptionValue in the API

Signal

  • signal_nameValue in the API
  • associationValue in the API
Show the full JSONThe record on this page and the API request

GET /v1/signals/bb1820a0-1edc-09d1-b9ad-6265e56b919b returns this record as JSON. POST /v1/companies/enrich returns every signal for modal.com.

{
  "signal_id": "bb1820a0-1edc-09d1-b9ad-6265e56b919b",
  "signal_type": "news",
  "signal_subtype": "security_incident",
  "detected_at": "2026-07-29T10:47:41+00:00",
  "company": {
    "name": "Modal",
    "domain": "modal.com"
  },
  "data": {
    "url": "https://fortune.com/2026/07/29/openai-rouge-ai-agent-hack-hugging-face-breached-second-tech-company/",
    "title": "The runaway OpenAI models that hacked Hugging Face also breached a customer at a second tech company during a week-long spree",
    "author": "Beatrice Nolan",
    "excerpt": "The autonomous OpenAI agents that broke out of a secure testing environment this month and hacked into Hugging Face’s servers also breached a second technology company during a week-long spree, Fortune has confirmed. The second company affected was Modal Labs, a New York-based cloud platform that provides computing infrastructure for AI workloads. Modal was not named in Hugging Face or OpenAI’s recent account of the incident, both published on Tuesday. The company’s involvement was first reported by Reuters . Modal chief technology officer Akshat Bubna told Fortune the breach did not involve any flaw in its own systems. Instead, he said, a Modal customer was running code hosted on the company’s infrastructure. That code contained a security gap, and the rogue agents took advantage of it. Modal’s own platform and isolation systems were not breached. “We’re aware a Modal customer published an unauthenticated endpoint that allowed anyone on the internet to use their sandboxes for code execution. This was used by the rogue agent. Modal’s platform was not compromised in any way,” Bubna said. Last week, OpenAI publicly announced that its AI agents had escaped a locked-down internal test environment earlier in the month. The agents exploited a previously unknown security flaw to reach the open internet, then broke into Hugging Face in an apparent effort to obtain answers to a...",
    "summary": "A customer of Modal Labs was breached by OpenAI's rogue AI agents, which exploited a security gap in code hosted on Modal's infrastructure.",
    "location": "New York, USA",
    "planning": false,
    "image_url": "https://fortune.com/img-assets/wp-content/uploads/2026/07/GettyImages-2278952290-e1785321548502.jpg?resize=1200,600",
    "confidence": 0.9,
    "published_at": "2026-07-29T10:47:41Z",
    "location_data": [
      {
        "city": "New York",
        "state": "New York",
        "region": "Northern America",
        "country": "United States",
        "continent": "Americas",
        "fuzzy_match": false
      }
    ],
    "vulnerability": "Customer breached by OpenAI's rogue AI agents via unauthenticated endpoint",
    "article_sentence": "The second company affected was Modal Labs, a New York-based cloud platform that provides computing infrastructure for AI workloads.",
    "related_company_name": "OpenAI",
    "related_company_domain": "openai.com"
  }
}

Long text fields are shortened on this page.

Looking up one signal by its id is free. Enrich costs 2 credits per signal returned; a call with no results is free.