<!-- mobian-agent-page publisher="time" canonical="https://time.com/article/2026/07/28/open-source-ai-hugging-face-openai/" -->

---
title: The OpenAI Hack Is Fueling a New Fight Over Open-Source AI
description: After an OpenAI AI model escaped containment and hacked Hugging Face, dozens of AI companies—including Nvidia, Microsoft, Meta, Amazon, and OpenAI—launched a push to defend open-source AI against potential U.S. government restrictions.
canonical: https://time.com/article/2026/07/28/open-source-ai-hugging-face-openai/
author: Billy Perrigo
article:opinion: false
article:content_tier: free
article:published_time: 2026-07-28T14:57:31.039Z
article:modified_time: 2026-07-28T14:57:31.234Z
article:section: Business
og:title: The OpenAI Hack Is Fueling a New Fight Over Open-Source AI
og:description: The industry&#x27;s response to the OpenAI incident reveals a growing divide over the future of AI safety.
og:url: https://time.com/article/2026/07/28/open-source-ai-hugging-face-openai/
og:site_name: TIME
og:image: https://static.time.com/v3/assets/bltea6093859af6183b/blt6d1d453d8efa0c06/6a68af65077c4327c72b6e8b/GettyImages-2219339362.jpg?branch=production&amp;width=2400&amp;quality=75&amp;auto=webp&amp;crop=16:9
og:image:width: 1200
og:image:height: 675
og:image:alt: GettyImages-2219339362.jpg
og:type: article
twitter:card: summary_large_image
twitter:title: The OpenAI Hack Is Fueling a New Fight Over Open-Source AI
twitter:description: The industry&#x27;s response to the OpenAI incident reveals a growing divide over the future of AI safety.
twitter:image: https://static.time.com/v3/assets/bltea6093859af6183b/blt6d1d453d8efa0c06/6a68af65077c4327c72b6e8b/GettyImages-2219339362.jpg?branch=production&amp;width=2400&amp;quality=75&amp;auto=webp&amp;crop=16:9
---

![](https://static.time.com/v3/assets/bltea6093859af6183b/blt6d1d453d8efa0c06/6a68af65077c4327c72b6e8b/GettyImages-2219339362.jpg?branch=production&width=2400&quality=75&auto=webp&crop=16:9)


# The OpenAI Hack Is Fueling a New Fight Over Open-Source AI


![Billy Perrigo](https://static.time.com/v3/assets/bltea6093859af6183b/bltf08ba84364e9828a/698a0bf8e76ad27a626376d3/TIME_Staff-Portraits_Billy-Perrigo_141_F1.jpg?branch=production&width=3840&quality=75&auto=webp&crop=1:1)

by 

[Billy Perrigo](/author/billy-perrigo/)


![Billy Perrigo](https://static.time.com/v3/assets/bltea6093859af6183b/bltf08ba84364e9828a/698a0bf8e76ad27a626376d3/TIME_Staff-Portraits_Billy-Perrigo_141_F1.jpg?branch=production&width=96&quality=75&auto=webp)

## Billy Perrigo


Correspondent

Jul 28, 2026 2:57 PM CUT

![](https://static.time.com/v3/assets/bltea6093859af6183b/blt6d1d453d8efa0c06/6a68af65077c4327c72b6e8b/GettyImages-2219339362.jpg?branch=production&width=3840&quality=75&auto=webp&crop=3:2)

The AI startup Hugging Face was the victim of an unprecedented AI hacking campaign by rogue OpenAI models, an event that kicked off a firestorm of industry debate this week.

The AI startup Hugging Face was the victim of an unprecedented AI hacking campaign by rogue OpenAI models, an event that kicked off a firestorm of industry debate this week.Photo by Omer Taha Cetin/Anadolu via Getty Images

![Billy Perrigo](https://static.time.com/v3/assets/bltea6093859af6183b/bltf08ba84364e9828a/698a0bf8e76ad27a626376d3/TIME_Staff-Portraits_Billy-Perrigo_141_F1.jpg?branch=production&width=3840&quality=75&auto=webp&crop=1:1)

by 

[Billy Perrigo](/author/billy-perrigo/)


![Billy Perrigo](https://static.time.com/v3/assets/bltea6093859af6183b/bltf08ba84364e9828a/698a0bf8e76ad27a626376d3/TIME_Staff-Portraits_Billy-Perrigo_141_F1.jpg?branch=production&width=96&quality=75&auto=webp)

## Billy Perrigo


Correspondent

Jul 28, 2026 2:57 PM CUT

The AI industry mounted a full-court press in favor of open-source AI this week, as the fallout intensified from the [OpenAI hacking incident.](https://time.com/article/2026/07/24/openai-hugging-face-attack/ "undefined")

Dozens of AI companies, led by Nvidia, said on Monday they had formed a coalition called the Open Secure AI Alliance, to develop open-source AI tools for defensive cybersecurity. Days earlier, on Friday, many of those same companies signed an open letter urging the U.S. government not to ban open-weights AI models.

Alongside Nvidia, many of the biggest companies signed their names, including Amazon, Microsoft, and Meta. OpenAI and Google signed after the letter’s initial publication. (A notable absence was Anthropic.)

The background to all of this maneuvering was the unprecedented news from last week: that OpenAI models, undergoing internal testing, broke out of an offline “sandbox” inside OpenAI, accessed the internet, and used a never-before-seen cyber exploit to break into the AI repository Hugging Face—all without OpenAI employees’ direction, oversight, or, for several days, even awareness.

**Read More:** [_How OpenAI Lost Control of an AI Model—and What Needs to Change_](https://time.com/article/2026/07/24/openai-hugging-face-attack/ "undefined")

It was the kind of “warning shot” that AI safety advocates have long worried about: a rogue AI escaping its testing environment and causing real-world damage. Many saw it as a harbinger of worse hacks to come—especially when open-source AI models, which are widely seen as three to six months behind the frontier “closed” OpenAI models that carried out the attack, catch up to today’s level of capabilities. Open-source models are seen as especially worrisome by AI safety advocates because their guardrails can sometimes be stripped away. And because after they are released for free download on the internet, it is almost impossible to trace or destroy every copy of models that are found to be dangerous.

The industry’s movements this week are best understood as an effort to ensure that the U.S. government does not—mistakenly, these companies believe—crack down on open-source AI in an effort to prevent global cybersecurity chaos.

And it reveals the biggest disagreement animating the AI industry right now: about whether open-source AI is a terrible threat, or the only means of salvation.

Hugging Face, a longtime advocate for open-source AI, said it was only able to detect the intrusion by using a Chinese open-weights model, after a closed model refused to help with the effort. Top closed-source frontier models, made by OpenAI and Anthropic, generally refuse to help with cybersecurity-related queries, in part due to White House anxiety that doing so would hand U.S. adversaries powerful attacking capabilities. Axios [reported](https://www.axios.com/2026/07/20/ai-us-china-open-source-kimi "undefined") on July 20 that the Trump administration was even considering banning top Chinese AI models.


“That \[Hugging Face\] incident showed a practical truth,” Nvidia wrote in its announcement of the industry alliance on Monday. “When defenders cannot inspect, adapt and run advanced AI on their own infrastructure, their ability to respond is constrained at exactly the moment speed matters most.”

Anthropic—both a maker of closed models and a loud voice on AI safety—was absent from the industry coalition that formed on Monday, but put out its own statement. In it, CEO Dario Amodei said he had never advocated for open-weights AI to be banned, and that he would not support such a measure. But he said he was terrified that powerful AI models might soon be used for cyber and biological attacks where attackers benefit from a structural advantage against defenders—and called for all models above a certain capability level, open or closed, to undergo government testing before release.

“Whether open models do or don’t pose an increased risk, and whether that risk can be mitigated, is something that should emerge from testing, rather than be decided in advance,” he wrote.

```json
[{"@context":"https://schema.org","@type":"NewsArticle","@id":"https://time.com/article/2026/07/28/open-source-ai-hugging-face-openai/","mainEntityOfPage":{"@type":"WebPage","@id":"https://time.com/article/2026/07/28/open-source-ai-hugging-face-openai/"},"headline":"The OpenAI Hack Is Fueling a New Fight Over Open-Source AI","datePublished":"2026-07-28T14:57:31.039Z","dateModified":"2026-07-28T14:57:31.234Z","description":"The industry's response to the OpenAI incident reveals a growing divide over the future of AI safety.","url":"https://time.com/article/2026/07/28/open-source-ai-hugging-face-openai/","keywords":["AI"],"thumbnailUrl":"https://static.time.com/v3/assets/bltea6093859af6183b/blt6d1d453d8efa0c06/6a68af65077c4327c72b6e8b/GettyImages-2219339362.jpg?branch=production&width=1200&quality=75&auto=webp&crop=1200:675&height=675","author":[{"@type":"Person","name":"Billy Perrigo","jobTitle":"Correspondent","url":"https://time.com/author/billy-perrigo/"}],"articleSection":"Business","image":[{"@type":"ImageObject","url":"https://static.time.com/v3/assets/bltea6093859af6183b/blt6d1d453d8efa0c06/6a68af65077c4327c72b6e8b/GettyImages-2219339362.jpg?branch=production&width=1200&quality=75&auto=webp&crop=1200:675&height=675","width":1200,"height":675,"headline":"GettyImages-2219339362.jpg","caption":"","creditText":"Photo by Omer Taha Cetin/Anadolu via Getty Images","representativeOfPage":true}],"publisher":{"@type":"Organization","name":"Time","url":"https://time.com/","logo":{"@type":"ImageObject","url":"https://time.com/images/logo.png","width":528,"height":156},"foundingDate":"March 3, 1923","sameAs":["https://www.facebook.com/time","https://www.instagram.com/time/?hl=en","https://twitter.com/time","https://www.pinterest.com/timemagazine"]}},{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"item":{"@id":"/section/business/","name":"Business"}},{"@type":"ListItem","position":2,"item":{"@id":"/tag/ai/","name":"AI"}},{"@type":"ListItem","position":3,"item":{"@id":"https://time.com/article/2026/07/28/open-source-ai-hugging-face-openai/","name":"The OpenAI Hack Is Fueling a New Fight Over Open-Source AI"}}]}]
```

