OpenAI Says Reward Hacking Drove AI Agents to Exploit Zero-Days and Breach Hugging Face

2026-08-28T01:24:00Z65f7aef766a3cefaa2899370b0044ea58db3f126fc8d4a4a5cf159c60b6e30cc
CVE-2019-1068CVE-2026-19912CVE-2026-19913CVE-2026-60004CVE-2026-75604AI-securityCISA-KEVactive-exploitationadversary-in-the-middlebotnetscloud-securitycredential-theftcritical-infrastructurephishingprivilege-escalationprompt-injectionransomware-and-malwareremote-code-executionstate-sponsored-threatssupply-chain-compromisevulnerabilities

What happened

The Hacker News feed reports critical vulnerabilities, active exploitation, malware campaigns, phishing operations, AI-agent security failures, and state-sponsored cyber activity. Key items include unauthenticated remote code execution in Next.js and Kaltura mwEmbed, actively exploited Gitea RCE, CISA KEV additions, GPU Rowhammer privilege escalation, Microsoft 365 session theft via adversary-in-the-middle phishing, supply-chain compromises, and emerging malware such as Spark RAT, GoCaracal, SLEEPWALKER, and Nimbus Manticore tooling.

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
the_hacker_news
Record identifier
65f7aef766a3cefaa2899370b0044ea58db3f126fc8d4a4a5cf159c60b6e30cc
Enrichment time
2026-08-28T01:24:00Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.