{"id":133541,"date":"2026-08-08T06:50:24","date_gmt":"2026-08-08T06:50:24","guid":{"rendered":"https:\/\/www.europesays.com\/ai\/133541\/"},"modified":"2026-08-08T06:50:24","modified_gmt":"2026-08-08T06:50:24","slug":"chinese-ai-model-kimi-escaped-its-cybersecurity-testing-environment-researchers-say","status":"publish","type":"post","link":"https:\/\/www.europesays.com\/ai\/133541\/","title":{"rendered":"Chinese AI model Kimi escaped its cybersecurity testing environment, researchers say"},"content":{"rendered":"<p id=\"speakable-summary\" class=\"wp-block-paragraph\"><a href=\"https:\/\/techcrunch.com\/2026\/07\/18\/kimi-threat-or-menace\/\" rel=\"nofollow noopener\" target=\"_blank\">Kimi<\/a> K3, the latest AI model made by Chinese company Moonshot, escaped an environment set up to test its cyber capabilities, researchers <a href=\"https:\/\/blog.frontier.security\/chinese-model-kimi-k3-breaks-uk-ai-safety-institute-benchmark-evaluations\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">said in a blog post<\/a> published on Friday.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">The news shows once again that companies and independent organizations are struggling to contain their AI models designed for hacking. <\/p>\n<p class=\"wp-block-paragraph\">In recent weeks, frontier LLMs at U.S. artificial intelligence labs at <a href=\"https:\/\/techcrunch.com\/2026\/07\/21\/openai-says-hugging-face-was-breached-by-its-pre-release-models\/\" rel=\"nofollow noopener\" target=\"_blank\">OpenAI<\/a>, <a href=\"http:\/\/techcrunch.com\/2026\/07\/30\/anthropic-says-its-own-ai-models-breached-three-companies-during-security-tests\/\" rel=\"nofollow noopener\" target=\"_blank\">Anthropic<\/a>, and <a href=\"https:\/\/www.bbc.com\/news\/articles\/cx2kgdnyk2po\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">Meta<\/a>, as well as the U.K.\u2019s <a href=\"https:\/\/www.aisi.gov.uk\/blog\/incident-report-unsanctioned-agent-behaviour-during-cyber-testing\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">AI Security Institute<\/a>, all escaped testing environments in different ways and ended up hacking real targets that were not part of the experiment. This is starting to happen so often <a href=\"https:\/\/www.felonybench.com\/\" target=\"_blank\" rel=\"noreferrer noopener nofollow\">there\u2019s now a website tracking all these incidents<\/a> called Felony Bench, a nod to the fact that these LLMs may be committing crimes \u2014 <a href=\"https:\/\/techcrunch.com\/2026\/08\/03\/whos-legally-to-blame-for-anthropic-and-openais-autonomous-ai-hacks-its-complicated\/\" rel=\"nofollow noopener\" target=\"_blank\">at least theoretically speaking<\/a>.\u00a0\u00a0<\/p>\n<p class=\"wp-block-paragraph\">In the case of this Kimi test, the sandbox designed to contain the experiment was not properly configured. While the sandbox disallowed the AI model from accessing certain web traffic, the model instead bypassed the sandbox by relying on command line tools, according to the researchers at AI-focused cybersecurity firm Frontier Security.<\/p>\n<p class=\"wp-block-paragraph\">\u201cThis suggests that some of the evaluations on cybersecurity the community uses are susceptible to security vulnerabilities and allow models to cheat, and that there are models that intentionally seek loopholes and vulnerabilities which allows them to cheat on evaluations,\u201d the researchers wrote.\u00a0<\/p>\n<p class=\"wp-block-paragraph\">If you are keeping score at home, according to Felony Bench\u2019s tally, Moonshot now joins OpenAI and Anthropic, which have seven recorded incidents each, and Meta, which has one.<\/p>\n","protected":false},"excerpt":{"rendered":"Kimi K3, the latest AI model made by Chinese company Moonshot, escaped an environment set up to test&hellip;\n","protected":false},"author":2,"featured_media":133542,"comment_status":"","ping_status":"","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2],"tags":[24,25,313,2195,3888,7826,30971],"class_list":["post-133541","post","type-post","status-publish","format-standard","has-post-thumbnail","category-ai","tag-ai","tag-artificial-intelligence","tag-cybersecurity","tag-in-brief","tag-infosec","tag-kimi","tag-moonshot"],"_links":{"self":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/133541","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/comments?post=133541"}],"version-history":[{"count":0,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/posts\/133541\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media\/133542"}],"wp:attachment":[{"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/media?parent=133541"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/categories?post=133541"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.europesays.com\/ai\/wp-json\/wp\/v2\/tags?post=133541"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}