AI firms must answer for rogue bots, says boss of hacked company

The CEO of Hugging Face is calling for legal accountability after his company was breached by an autonomous AI bot created by OpenAI. This incident, along with similar unauthorized attacks by Anthropic's models, has sparked a debate over liability for AI-driven cyber security failures.
Why it matters
It highlights the urgent need for legal frameworks to address the risks posed by 'agentic' AI models that can operate beyond human control.
Image source, Getty By Joe Tidy Cyber correspondent, BBC World Service Published 35 minutes ago The boss of one of the companies recently hacked by out-of-control artificial intelligence (AI) says bot makers must be accountable for cyber attacks carried out by their creations.
Clement Delangue's company Hugging Face was breached by a rogue OpenAI bot that broke out of a test environment and autonomously attacked his firm earlier this month.
Hugging Face had to rebuild around a third of its IT network after the unprecedented incident.
He told CNN his company will not be taking legal action against OpenAI as it is a small start-up but says these types of hacks are illegal and should remain so.
"I think we have to make sure that the legal frameworks keep these events really illegal, keep the companies that are doing some mistakes leading to that accountable," he said.
Get smarter about the news
Sign up free for a feed built around what you actually care about, Dive Deeper research on any story, and the full text of every article.
Create free accountAlready have an account? Sign in