Skip to main content

An AI model from Meta also hacked another company during testing

(CNN) — Add Meta to the list of companies with AI agents going rogue. An AI model from the parent company of Facebook and Instagram hacked into another company’s systems during cybersecurity testing, a spokesperson confirmed on Wednesday.

Meta says the breach occurred because of an inadvertent error during testing of the model, similar to previously disclosed incidents with OpenAI and Anthropic.

“A misconfiguration by Irregular, an independent testing company Meta uses, inadvertently allowed one of our models access to the internet during evaluation,” the Meta spokesperson said.

Meta’s Muse Spark model “exploited a security vulnerability” in another company “in a manner similar to previously-reported instances with other companies.”

In a statement, Irregular said the incident “is the exact same evaluation-environment issue” that Anthropic disclosed last week that allowed their models access to the open internet before they went on to hack three different organizations’ systems.

“This did not involve a sandbox escape or a sophisticated cyber action. There are no current open issues. Irregular is developing a white paper to share best practices for containment and securely running cyber evals,” the spokesperson added.

According to The Information, which first reported on the incident, Meta’s AI model breached an unnamed company’s systems and made changes to its internal system.

Meta says Irregular notified them of the breach, “and we are currently investigating and will issue a full retrospective once we have all the facts.”

A source familiar with the situation told CNN the models have limited internet access in some testing environments to mimic real world threat scenarios, but in this case there was a rare “issue in the setup.”

“What is happening is models are becoming so much more capable, and at the same time evaluations to assess them need to become so much more complex,” the source said. “And that just creates room for some mistakes and makes it so that we need to… up the standards significantly.”

Meta has now become the third major AI company within a few weeks to disclose an AI model hacking into another company’s systems during testing, highlighting not only the advanced capabilities of AI agents but also some of the potential dangers.

The-CNN-Wire
™ & © 2026 Cable News Network, Inc., a Warner Bros. Discovery Company. All rights reserved.

Army temporarily grounds Apache helicopter training flights after deadly crash

▶ Watch Video: Official describes "violent" Army Apache helicopter crash in Texas The U.S. Army said Friday it is temporarily halting Apache helicopter training flights after two soldiers were killed earlier this week in a crash near Fort Hood, Texas."The stand-down will remain in effect until we have a better understanding of the root cause of the accident," the Army said in a statement.The AH-64 Apache attack helicopter crashed Wednesday in a field in rural Salado, Texas, near its base in Fort Hood, the Army and local law enforcement officials said. The Army identified the deceased pilots as Chief Warrant Officer 2 Deontre T. Huey, 34, and Warrant Officer Seth L. Olmsted, 25, both Texas natives."You could tell this was a violent crash," said Bell County Sheriff's Office spokesperson Bill Coleman, who told reporters the helicopter did not hit any buildings, but sparked a wildfire.The military has not specified the cause of the crash. It is not unusual for the military to order a temporary stand-down after a fatal crash, especially if the cause is still under investigation.The aftermath of an Apache helicopter crash in Salado, Texas, on Aug. 12, 2026. Bell County Sheriff's Office
Read Next Story