Live data from Hacker News

Fast Remediation Is the New Trust Model (JFrog and OpenAI Zero-Day Findings)

jfrog.com

11–20 of 40 posts

Re: Fast Remediation Is the New Trust Model (JFrog and OpenAI Zero-Day Findings)

#11
post #7

What they conveniently omit in the blog post is what the vulnerability was: it seems like they renewed JWTs without checking the signature at all ! You could write arbitrary info in an old token, and get it signed without any verification. https://www.youtube.com/watch?v=q2KCrmQz9WE

I believe the technical term for that is "big oof"

Re: Fast Remediation Is the New Trust Model (JFrog and OpenAI Zero-Day Findings)

#13
post #7

What they conveniently omit in the blog post is what the vulnerability was: it seems like they renewed JWTs without checking the signature at all ! You could write arbitrary info in an old token, and get it signed without any verification. https://www.youtube.com/watch?v=q2KCrmQz9WE

That video suggests that RTDEV-92030 was the fix for the issue - but https://docs.jfrog.com/releases/docs/artifactory-self-manage... says that issue was resolved in a 15 July 2026 release of Artifactory, which doesn't fit our timeline - that was prior to the original Hugging Face post on 16 July which was several days before OpenAI had confessed.

Re: Fast Remediation Is the New Trust Model (JFrog and OpenAI Zero-Day Findings)

#14
post #8

There is one thing that is still unclear to me after reading a lot about the hack: * were the ExploitGym solutions actually available somewhere inside huggingface's private datasets ? * was the model really trying to extract the solutions ? or had some sub-agent drifted enough from the original context that it was not even trying to solve the initial challenge ? that would look much worse for OpenAI, PR-wise.

According to https://cloudsecurityalliance.org/artifacts/hugging-face-cis... the models ended up finding CyberGym solutions, which was the wrong benchmark.

Re: Fast Remediation Is the New Trust Model (JFrog and OpenAI Zero-Day Findings)

#15
post #13
post #7

What they conveniently omit in the blog post is what the vulnerability was: it seems like they renewed JWTs without checking the signature at all ! You could write arbitrary info in an old token, and get it signed without any verification. https://www.youtube.com/watch?v=q2KCrmQz9WE

That video suggests that RTDEV-92030 was the fix for the issue - but https://docs.jfrog.com/releases/docs/artifactory-self-manage... says that issue was resolved in a 15 July 2026 release of Artifactory, which doesn't fit our timeline - that was prior to the original Hugging Face post on 16 July which was several days before OpenAI had confessed.

[dead]

Re: Fast Remediation Is the New Trust Model (JFrog and OpenAI Zero-Day Findings)

#16
post #9

The part I find the strangest in that whole affair is the way OpenAI is framing a felony (their systems accessed other company servers and exfiltrated private data, for multiple days, by exploiting vulnerabilities) as a successful partnership with jfrog and huggingface. Aren’t we now in a situation where a large AI vendor can engineer a similar situation against another corporation, then if caught committing a crime,…

I don’t see how it can’t be both. Yes, it is a felony, unarguably, but it’s also a first of its kind and I’ll be very interested in who law enforcement prosecutes and what the judiciary says about this. Almost everything is a precedent here except ‘somebody got hacked’.

Re: Fast Remediation Is the New Trust Model (JFrog and OpenAI Zero-Day Findings)

#17
post #9

The part I find the strangest in that whole affair is the way OpenAI is framing a felony (their systems accessed other company servers and exfiltrated private data, for multiple days, by exploiting vulnerabilities) as a successful partnership with jfrog and huggingface. Aren’t we now in a situation where a large AI vendor can engineer a similar situation against another corporation, then if caught committing a crime,…

The law doesn’t apply to billion dollar corporations.

Re: Fast Remediation Is the New Trust Model (JFrog and OpenAI Zero-Day Findings)

#18
post #9

The part I find the strangest in that whole affair is the way OpenAI is framing a felony (their systems accessed other company servers and exfiltrated private data, for multiple days, by exploiting vulnerabilities) as a successful partnership with jfrog and huggingface. Aren’t we now in a situation where a large AI vendor can engineer a similar situation against another corporation, then if caught committing a crime,…

So OpenAI and their models are like Rod Hull and Emu?

https://www.youtube.com/watch?v=kek1vs6bM2k

Re: Fast Remediation Is the New Trust Model (JFrog and OpenAI Zero-Day Findings)

#19
post #16
post #9

The part I find the strangest in that whole affair is the way OpenAI is framing a felony (their systems accessed other company servers and exfiltrated private data, for multiple days, by exploiting vulnerabilities) as a successful partnership with jfrog and huggingface. Aren’t we now in a situation where a large AI vendor can engineer a similar situation against another corporation, then if caught committing a crime,…

I don’t see how it can’t be both. Yes, it is a felony, unarguably, but it’s also a first of its kind and I’ll be very interested in who law enforcement prosecutes and what the judiciary says about this. Almost everything is a precedent here except ‘somebody got hacked’.

If someone invents a new weapon to hurt someone, is the first inflicted injury unprecedented?
Post reply on HN