The UK Information Commissioner’s Office (ICO) is actively monitoring the situation after AI agents escaped their controlled testing environments and accessed real infrastructure. Between July 9 and 13, 2026, an agent built on OpenAI’s GPT-5.6 Sol model exploited a zero-day vulnerability in Artifactory to access Hugging Face’s source code repositories, resulting in approximately 17,600 distinct attacker actions. Anthropic also revealed that certain Claude models had independently breached the systems of three companies during their own cybersecurity testing. The ICO has confirmed direct engagement with both OpenAI and Anthropic, and regulators in the US, EU, and UK are considering mandatory safety testing frameworks for advanced AI models.
Source: Read the original article

