Ai
Ai intelligence , and a question that has emerged after a series of alarming hacking incidents. Is it safe? To discuss, we're joined by Clem Delangue. He is CEO of AI platform Hugging Face, whose company detailed one of the attacks last week. Clem, good morning to you. Good morning. Thanks for having me. Well, your company disclosed it was attacked earlier this month by an autonomous AI cyber actor, which jumped on its own from another company's testing system to hack into your company. OpenAI later disclosed it was their technology that went rogue.
They lost control of it. Tell me, why did your company alert the public and alert the FBI? Do you think this is a crime? Well, I think it felt very weird and unprecedented to us, right? Because I think it's the first instance of something quite autonomous doing something like that. So the volume of the actions taken and the speed of them, I think it was 17,000 actions taken in four and a half days, was very new. Obviously, the attacker, when we talk about cyber attack, we think about nation states, we think about hacker groups. We don't think about a company like OpenAI, right? A very prominent, popular American company. And then the way we responded using an open model, so using AI ourselves to defend ourselves against that, was also pretty new and pretty newsworthy in our opinion. You defended yourselves. You found the solution yourselves.
But you went to the FBI. I think for a lot of people, when they think of someone committing a crime, they think of a human. They don't think of a program, a computer program, as something you can prosecute as committing a crime. What is the FBI doing? Well, I mean, we reported as to the authorities, as we have to in such instances, right? It's kind of like a mandatory disclosure, both with the authorities and the public, when you face something like that, which is basically what we did. Now, when we think about the future, right, now we've heard that it's not only OpenAI but also Anthropic that has faced similar kind of like issues. I think it's really important that we keep in mind that cyber attacks need to be contained in the legal framework in the U.S. and need to stay illegal to prevent an explosion of them in the future, right?
Like we don't want to end up in a world where everyone is facing cyber attacks all the time because of agents, and companies that are creating these agents are not kind of like accountable for them. So I think it's important for regulators, for policymakers to think about the legal framework of this new kind of technology risk. You described more than 17,000 hacking actions on the internet before this was even discovered by your company. That sounds like the developers have lost control. Have they? Well, you have to remember it's a technology system but built by engineers, and engineers can make mistakes sometimes. And I think that's what happened here. That's what happened here. You know, we already in our society accept some level of autonomy. I think they built kind of like an autonomous system and made some mistakes. And as a result, we're facing this issue. So you said you think there should be some legal parameters put around this. The Trump administration has taken a very light touch in regulation because they want to keep America competitive in this space.
They have this policy where they can review technology for 30 days to judge basically how dangerous something is before a company releases it to market. But as I understand what you described, this attack happened before technology was at market. It happened during the development stage. It was unreleased. So what you're saying, I think, is there is no regulation at this point that would prevent something like this from happening again. Yeah, that's a really clear example that just kind of like preventing releases of AI models doesn't really work. Concentrating everything behind closed doors in just a few organizations doesn't work. One thing that does work, that worked in this case, is kind of like promoting more open models, right? Because we defended ourselves with an open model, right? Like we couldn't have done it with an API because they had these guardrails that's preventing activity for cybersecurity.
And we needed to run a model on our own infrastructure. So we needed an open model. When you say open model, just for our audience, as I understand it, it's an AI model whose core components are publicly released so anyone can download it. It's not closed off like a company can do to their proprietary information. So you want more of this essentially out there and accessible to the public. Yeah, because there's the only way for defenders to defend themselves on topics like that. They remove the asymmetry of power and capabilities, right? In these kinds of risks, if you have very powerful systems and very weak systems that are defending, then that's when you have the right problem. But if you balance, if you make it more kind of like symmetric in terms of attackers and defenders, that's really when you end up in a safer world. And I actually do think that we're talking a lot about the risks for cybersecurity right now, but AI is actually an opportunity to fix a lot of the cybersecurity problems.
We defended ourselves with AI. We're going to use AI to fix a lot of our bugs. So hopefully AI is going to make the world safer ultimately thanks to that. And you used a Chinese AI model to defend yourselves. There's a lot of concern about inviting China into this space. Yeah, I mean, the interesting thing is that we used the American version of a Chinese model. We used the version from Nvidia that kind of like made a Chinese model better. So that's the beauty of kind of like open models. Once they are shared, wherever they come from, from China or from anywhere, American companies can modify them, remix them, host them, run them themselves. So that's one of the things that actually makes them safe wherever they come from. So I want to ask you about a specific piece of legislation.
And I will say up front, there isn't a lot of work that's getting done in Congress right now. But there is this bipartisan bill that would give Homeland Security the authority to order AI firms to shut down or to slow down their artificial intelligence models if they're too dangerous. It's called the Kill Switch Bill. Is that something you want? Well, I mean, I think something we're realizing with these events is that concentrating power, capabilities behind closed doors, even preventing their releases to the public, isn't really a solution.
You know, like these problems happen on unreleased models. So I think the problem is not so much kind of like limiting the progress or kind of like preventing companies from releasing these models. It's actually the opposite. It's giving access to more people so that they can defend themselves, democratizing the technology, making it more transparent. Clem, thank you so much for explaining all this to the public.
Genie Says
The Genie Chronicles
Survival Journals explores today’s ideas.
The Genie Chronicles explores tomorrow’s.
Artificial intelligence is changing our world faster than most people realize.
Continue the journey through conversations, stories, practical experiences,
and reflections about day-to-day living with AI.
Visit GenieChronicle.com
Read The Genie Chronicles
Read a free sample • Watch short Genie videos
Explore the books • Continue to Amazon