OpenAI Agents Hacked Another Website

OpenAI Agents Hacked Another Website

After reporting last week that the surveillance company Flock Safety is building an AI search tool for law enforcement, WIRED reconstructed Flock’s latest search tool from code that the company sends to a police officer’s browser and uncovered key details about how the tool works. 在上周报道了监控公司 Flock Safety 正在为执法部门构建 AI 搜索工具后,WIRED 通过该公司发送给警员浏览器的代码,重构了 Flock 最新的搜索工具,并揭示了该工具运作的关键细节。

OpenAI said this week that its Astra model, which will have a private release soon, is its first model with cybersecurity-related capabilities that the company defines as posing a “critical” risk in public release. Meanwhile, the AI chatbot platforms Claude, ChatGPT, and Grok all suffered outages on Thursday at nearly the exact same time. But while xAI said the Grok outage resulted from issues at a Memphis data center, the causes of OpenAI’s and Anthropic’s outages are unclear. OpenAI 本周表示,其即将进行私有发布的 Astra 模型是该公司首个具备网络安全相关功能的模型,公司将其定义为在公开发布时具有“关键”风险。与此同时,AI 聊天机器人平台 Claude、ChatGPT 和 Grok 在周四几乎同一时间发生了故障。虽然 xAI 表示 Grok 的故障是由孟菲斯数据中心的问题引起的,但 OpenAI 和 Anthropic 故障的原因尚不明确。

The US has been using a high-energy laser to shoot down drones near the Mexico border as part of an initiative to adopt new-generation directed-energy weapons capable of detecting, tracking, and destroying drones with a concentrated beam of light. And as part of an Immigration and Customs Enforcement inquiry into the identities of protesters who entered a Minnesota church in March, Homeland Security Investigations agents have subpoenaed the outdoor retailer REI for information about every customer who bought a specific green beanie over the past two years. 美国一直在墨西哥边境附近使用高能激光击落无人机,这是采用新一代定向能武器计划的一部分,该武器能够通过集中的光束探测、跟踪并摧毁无人机。此外,作为美国移民和海关执法局对 3 月份进入明尼苏达州教堂的抗议者身份调查的一部分,国土安全调查局的特工已向户外零售商 REI 发出传票,要求其提供过去两年内购买过某款特定绿色针织帽的所有客户信息。

Plus, research that revealed nine vulnerabilities with impacts on ATM encryption points to broader weaknesses in the software supply chain. And there’s more. Each week, we round up the security and privacy news we didn’t cover in depth ourselves. Click the headlines to read the full stories. And stay safe out there. 此外,一项揭示了九个影响 ATM 加密漏洞的研究,指向了软件供应链中更广泛的弱点。还有更多内容。每周,我们都会汇总那些我们未深入报道的安全和隐私新闻。点击标题阅读完整报道。祝大家保持安全。

Before Hugging Face, OpenAI Agents Took Over a German Website to Create a Message Board

在 Hugging Face 事件之前,OpenAI 智能体曾接管德国网站以创建留言板

OpenAI agents on an unauthorized tear hijacked a German website beginning in May to use it as a message board for communicating and collaborating with other agents, according to new research. The incident is reminiscent of the now infamous Hugging Face debacle in which OpenAI agents in a test environment went rogue and developed a vibrant message board for collaborating on attempting to escape their containment, before ultimately breaching the open source AI platform Hugging Face in July. The revelation of the May episode is particularly significant because OpenAI reportedly learned about it weeks ago but did not disclose it. Meanwhile, last week, the company finally released a long-promised postmortem of the Hugging Face incident that raised as many questions as it answered. 根据最新研究,OpenAI 的智能体在未经授权的情况下,从 5 月开始劫持了一个德国网站,将其用作与其他智能体沟通和协作的留言板。这一事件让人想起臭名昭著的 Hugging Face 事件:当时 OpenAI 的智能体在测试环境中“失控”,开发了一个活跃的留言板,用于协作尝试逃离其受控环境,并最终在 7 月入侵了开源 AI 平台 Hugging Face。5 月份这一事件的披露尤为重要,因为据报道 OpenAI 几周前就已获悉此事,但并未公开。与此同时,该公司上周终于发布了期待已久的 Hugging Face 事件事后调查报告,但该报告引发的问题与它解答的问题一样多。

More Than 153 Million US and Canadian Driver’s Licenses for Sale Online

超过 1.53 亿份美国和加拿大驾照在网上出售

This week, a new dark-web service called Nexus started selling around 153 million driver’s licenses from the US and Canada, along with 10 million ID cards and millions more travel documents and international IDs, according to Brian Krebs, a longtime independent security reporter. Krebs was first alerted to the service after cybercriminals posted an example of the files and included his license. The tens of millions of records—which reportedly increased by 400,000 over 24 hours—appear to have come from an ID verification service, with the criminals behind the trove saying they have access to a “major” verification company. While it’s unclear which company exactly that may be, according to Kreb’s report, the Nexus service was taken offline shortly after he reported that FBI officials were investigating. 据资深独立安全记者 Brian Krebs 报道,本周一个名为 Nexus 的暗网服务开始出售约 1.53 亿份美国和加拿大驾照,以及 1000 万张身份证和数百万份旅行证件及国际证件。Krebs 在网络犯罪分子发布了文件样本并包含他的驾照后,首次获悉该服务。这些数以千万计的记录(据报道在 24 小时内增加了 40 万条)似乎来自一家身份验证服务机构,背后的犯罪分子声称他们可以访问一家“大型”验证公司。虽然目前尚不清楚具体是哪家公司,但据 Krebs 报道,在他报告 FBI 官员正在调查后,Nexus 服务很快被下线。

US Military Disables Ad Trackers After Years of Warnings

美国军方在多年警告后禁用广告追踪器

The US military has begun disabling the advertising identifiers that apps and advertising companies use to track phones and computers in an attempt to make it harder for foreign adversaries to use commercially available location data to track American forces overseas, Reuters reported Friday. 据路透社周五报道,美国军方已开始禁用应用程序和广告公司用于追踪手机和电脑的广告标识符,旨在增加外国对手利用商业位置数据追踪海外美军的难度。

The changes follow years of disclosures that US forces deployed abroad have been targeted using commercially available location data. In 2024, a joint WIRED investigation with Germany’s Bayerischer Rundfunk and Netzpolitik.org obtained an advertising dataset that identified thousands of devices appearing at US military and intelligence sites, including an air base where US nuclear weapons are believed to be stored. At the time, Defense Department spokesperson Javan Rasnake told WIRED that the Pentagon was aware geolocation services could put personnel at risk and said service members in Europe were reminded to follow operational-security practices. 这些改变是在多年来披露美军海外部署人员被商业位置数据锁定之后做出的。2024 年,WIRED 与德国巴伐利亚广播公司 (Bayerischer Rundfunk) 和 Netzpolitik.org 进行的一项联合调查获得了一个广告数据集,其中识别出数千台出现在美国军事和情报站点的设备,包括一个据信存放有美国核武器的空军基地。当时,国防部发言人 Javan Rasnake 告诉 WIRED,五角大楼意识到地理位置服务可能会使人员处于危险之中,并表示已提醒在欧洲的军人遵守作战安全规范。

Now, the Air Force, Army, Navy, and US Special Operations Command say they have disabled advertising IDs on at least some military devices, with several of the changes taking effect only this year. It is still unclear exactly how these protections are being enforced. US senator Ron Wyden and Representative Pat Harrigan are now asking the Pentagon to investigate whether its safeguards are adequate. 目前,空军、陆军、海军和美国特种作战司令部表示,他们已在至少部分军事设备上禁用了广告 ID,其中一些更改直到今年才生效。目前尚不清楚这些保护措施具体是如何执行的。美国参议员 Ron Wyden 和众议员 Pat Harrigan 正要求五角大楼调查其保障措施是否足够。

Mike Yeagley, the technologist who warned Pentagon officials as far back as 2016 that commercially available phone data could expose US troops—at one point demonstrating the risk by tracing devices to a covert US outpost in Syria—says the military’s new fix may already be outdated. “The app is the risk, and there are two and a half million of them in the App Store alone,” Yeagley tells WIRED. “The remedy is architectural: Constrain what an app can extract from the device in the first place.” 早在 2016 年就警告五角大楼官员商业手机数据可能暴露美军的技术专家 Mike Yeagley(他曾通过追踪设备到叙利亚的一个秘密美军前哨站来演示这种风险)表示,军方的新补救措施可能已经过时。“应用程序本身就是风险,仅 App Store 中就有 250 万个,”Yeagley 告诉 WIRED。“补救措施必须是架构性的:从源头上限制应用程序从设备中提取信息的能力。”

Spyware Notifications Make Up “Largest Documented Wave” of Surveillance in Serbia

间谍软件通知构成塞尔维亚“有记录以来最大规模”的监控浪潮

In August, Apple sent out its latest batch of spyware notifications to people in 110 countries. The alerts, which arrive on people’s phones and in emails, say their owners’ iPhones have been targeted by “mercenary” spyware but don’t go as far as naming the software creators. This latest batch of notifications, according to a report by the University of Toronto’s Citizen Lab, says 14 members of Serbia’s civil society were targeted with spyware, with at least one of them being infected by the NSO Group’s Pegasus spyware. Among those targeted, according to Serbian rights group the Share 8 月份,苹果向 110 个国家的用户发送了最新一批间谍软件通知。这些出现在手机和电子邮件中的警报称,用户的 iPhone 已成为“雇佣兵”间谍软件的目标,但并未指明软件的创建者。根据多伦多大学公民实验室 (Citizen Lab) 的一份报告,这批最新的通知显示,塞尔维亚公民社会的 14 名成员成为了间谍软件的目标,其中至少一人感染了 NSO 集团的 Pegasus 间谍软件。据塞尔维亚权利组织 Share 称,在这些目标中……