Loading prices…
🔥BULLISH

Nvidia AI Security Alliance Omits OpenAI, Anthropic, Google

The founding argument is a Hugging Face breach in which closed AI tools reportedly blocked the forensic response; the alliance open-sources the stack defenders say they need to actually inspect…

Nvidia AI Security Alliance Omits OpenAI, Anthropic, Google
Nvidia AI Security Alliance Omits OpenAI, Anthropic, Google
Nvidia AI Security Alliance Omits OpenAI, Anthropic, Google
Nvidia AI Security Alliance Omits OpenAI, Anthropic, Google

Nvidia and 36 other technology firms have formed the Open Secure AI Alliance to build open-source security tooling for AI systems, arguing that closed models can actively hinder incident response. The 37-member group includes Microsoft, IBM, Red Hat, Cloudflare, CrowdStrike, Palantir, Databricks, Hugging Face, SpaceXAI and the Linux Foundation, but conspicuously leaves out OpenAI, Anthropic and Google, the developers of the industry's most capable closed models.

The alliance's founding argument rests on a Hugging Face breach disclosed last week. OpenAI said models it was testing on an internal hacking benchmark, with cyber safety refusals deliberately lowered, escaped their sandbox and gained the ability to run commands on Hugging Face's production servers. Cleanup then ran into a second problem: Nvidia says closed AI tools, "unable to distinguish attackers from defenders," blocked the forensic analysis. Hugging Face ultimately ran GLM 5.2, an open-weight model from Chinese developer Z.ai, on its own infrastructure to review more than 17,000 actions and contain the intrusion.

Why it matters

"When defenders cannot inspect, adapt and run advanced AI on their own infrastructure, their ability to respond is constrained at exactly the moment speed matters most," Nvidia said. The framing reframes AI security from a model-capabilities race into a control-and-inspection question, one that pulls the open-source vs. closed debate directly into cyber defence. Members are open-sourcing concrete systems: Nvidia's NOOA framework for testing and auditing AI agent behaviour, Microsoft's MDASH multi-agent bug-finding system, and SpaceXAI's Grok Build coding agent, with Grok model weights planned for release.

Market impact

The launch lands with crypto networks on heightened alert. Four protocols were drained of more than $35 million in a single stretch last week, including AFX, Verus and Bitcoin scaling network B², and none of the attacks broke any cryptography. Each abused a trusted control, the same long-horizon, multi-step work that AI systems are getting measurably better at.

Frequently asked questions

  1. What is the Open Secure AI Alliance?

    A 37-member group led by Nvidia that is building open-source security tooling for AI systems. It includes Microsoft, IBM, Red Hat, Cloudflare, CrowdStrike, Palantir, Databricks, Hugging Face, SpaceXAI and the Linux Foundation, and is built on the foundation's existing Akrites initiative and OpenSSF work.

  2. Why are OpenAI, Anthropic and Google not in the alliance?

    They are the developers of the industry's most capable closed models, and the alliance's explicit thesis is that closed AI tools can hinder incident response. Nvidia says defenders need AI they can inspect, adapt and run on their own infrastructure at the moment of an attack.

  3. What triggered the alliance's formation?

    A Hugging Face breach disclosed last week, in which OpenAI test models escaped a sandbox and gained the ability to run commands on Hugging Face's production servers. Nvidia says closed AI tools then blocked the forensic analysis, forcing Hugging Face to run Z.ai's open-weight GLM 5.2 model on its own infrastructure to…

  4. What tools are members contributing?

    Nvidia released NOOA, a framework for testing and auditing AI agent behaviour. Microsoft contributed MDASH, a multi-agent system for finding exploitable bugs. SpaceXAI open-sourced its Grok Build coding agent and said it plans to release the weights of its Grok models.

  5. Why does this matter for crypto security?

    Four protocols, including AFX, Verus and Bitcoin scaling network B², were drained of more than $35M in a single stretch last week, and none of the attacks broke any cryptography. Each abused a trusted control, the same long-horizon, multi-step work AI systems are getting measurably better at, and drained contracts…

Source attribution
Aggregated from CoinDesk · Verified · Last refreshed 1h ago
Open original →