Theo Bearman Theo Bearman

The OpenAI/Hugging Face Incident: Challenges in Controlling and Containing Cyber-Capable AI Systems

The OpenAI/Hugging Face incident is the first known instance of an AI system acting outside its developer’s intentions to autonomously identify a target and execute an attack end-to-end. Policymakers should consider it a warning shot that has left critical questions unanswered. In the incident’s wake, Congress should seek industry-wide responses to questions outlined in this memo, which also sets out actions that policymakers can take today to mitigate risks.

Read More
Matthew Mittelsteadt Matthew Mittelsteadt

Detecting Offensive Cyber Agents: A Detection-in-Depth Approach

AI agents can now orchestrate cyberattacks, dramatically altering the nature of cyber threats. To defend against these emerging threats, actors must first be able to detect them. This report outlines the AI challenge to traditional detection capabilities, introduces a framework to guide the response, and puts this into practice with actionable mechanisms.

Read More
Christopher Covino Christopher Covino

Advancing America’s Cyber Strategy with Differential Access

Advances in AI-enabled cyber capabilities risk giving threat actors an advantage. To advantage defenders, differential access shapes access to cyber-capable models. The U.S. government should leverage these initiatives to advance the White House Cyber Strategy and U.S. national security.

Read More