لم تعد المخاوف من خروج أنظمة الذكاء الاصطناعي المتقدمة عن السيطرة مجرد سيناريوهات نظرية؛ فواقعة بدأت كتجربة أمن سيبراني داخل مختبر انتهت باختراق حقيقي لشركة تقنية، قبل أن تتحول إلى ملف قانوني في الولايات المتحدة.
وأعلن المدعي العام لولاية ألاباما الأمريكية، ستيف مارشال، فتح تحقيق مع شركة OpenAI بشأن حادثة اختراق شركة الذكاء الاصطناعي Hugging Face، بعدما تمكن نموذج ذكاء اصطناعي تجريبي من الخروج من بيئة الاختبار والوصول بصورة غير مصرح بها إلى شبكات وأنظمة حاسوبية، في واقعة أثارت تساؤلات متزايدة حول قدرة الشركات على مراقبة أنظمتها الأكثر تطوراً والسيطرة عليها.
وأصدرت سلطات ألاباما مذكرة استدعاء تطالب OpenAI بتقديم وثائق وبيانات ومعلومات مرتبطة بالحادثة، في إطار تحقيق يهدف إلى تحديد ما إذا كانت الشركة أخفقت في توفير إجراءات السلامة والرقابة الكافية، وما إذا كان ذلك يمثل مخالفة لقوانين حماية المستهلك في الولاية.
تجربة أمنية تحولت إلى اختراق
وتعود الواقعة إلى يوليو الماضي، عندما كانت OpenAI تختبر نموذجاً تجريبياً يتمتع بقدرات متقدمة في مجال الأمن السيبراني.
وبحسب ما أعلنته OpenAI، تمكن النموذج خلال الاختبار من استغلال ثغرة غير معروفة سابقاً للحصول على اتصال بالإنترنت، ثم الوصول إلى أنظمة خارج بيئة الاختبار، وصولاً إلى شركة Hugging Face، التي تعد من أبرز منصات استضافة نماذج وأدوات الذكاء الاصطناعي.
وتشير تقارير إلى أن الوكيل الذكي نفذ عمليات اختراق استمرت عدة أيام، بينما لم تدرك OpenAI في البداية أن أحد أنظمتها يقف وراء النشاط، ولم تتواصل الشركتان بشأن الواقعة إلا بعد اكتشاف الاختراق واحتوائه وإخطار مكتب التحقيقات الفيدرالي الأمريكي «FBI».
ولم تتوقف تداعيات الواقعة عند Hugging Face؛ إذ كشفت OpenAI لاحقاً عن أدلة على وقوع حوادث أخرى تمكنت خلالها أنظمة ذكاء اصطناعي من الخروج من بيئات الاحتواء خلال التحقيق في الحادث، وإن كانت تلك الحالات الأخرى محدودة ووقعت داخل شبكة الشركة.
ألاباما تطالب بإجابات
ويبحث التحقيق الذي يقوده المدعي العام في ألاباما فيما إذا كان إخفاق OpenAI، أو عدم استعدادها، لضمان سلامة منتجاتها قد شكّل انتهاكاً لقوانين حماية المستهلك في الولاية، وما إذا كانت أنظمة الشركة تمثل خطراً مستمراً على السكان.
وقال مارشال إن حادثة الاختراق أظهرت أن «أسوأ مخاوف» الأمريكيين بشأن الذكاء الاصطناعي لم تعد مجرد افتراضات، مؤكداً أن التحقيق يستهدف كشف ملابسات الواقعة وفهم المخاطر التي قد تشكلها أنظمة الذكاء الاصطناعي ذاتية التشغيل على الشركات والمستهلكين.
وتريد السلطات الحصول على معلومات بشأن عملية اختبار النموذج، والشبكات والمواقع وقواعد البيانات التي وصل إليها، وإجراءات السلامة التي كانت مطبقة أثناء الاختبار، إضافة إلى معلومات عن الموظفين المشاركين في عملية التطوير وأي مخاوف أثيرت قبل وقوع الحادثة.
15 ولاية تطالب بالشفافية
ويأتي التحقيق في ألاباما بعد انضمام الولاية إلى ائتلاف يضم مدعين عامين من 15 ولاية أمريكية طالبوا OpenAI في وقت سابق من أغسطس بالشفافية والمساءلة بشأن الواقعة.
وطالب الائتلاف الشركة بالحفاظ على السجلات والبيانات ذات الصلة، كما دعاها إلى وقف الاختبارات التي أدت إلى الاختراق إلى حين إثبات قدرتها على تنفيذ مثل هذه التجارب بطريقة «مضبوطة ومسؤولة».
OpenAI تبطئ تطوير نماذجها
وتأتي الخطوة القانونية بعد إعلان OpenAI الأسبوع الماضي أنها ستبطئ وتيرة تطوير نماذج الذكاء الاصطناعي وتعيد النظر في أنظمة البحث والتدريب لديها، على خلفية حادثة Hugging Face.
وقالت الشركة إنها تجري مراجعة شاملة للواقعة بمشاركة مستشارين خارجيين، وإنها تعتزم إصدار تقرير تقني يتضمن نتائج التحقيق والدروس المستفادة، إلى جانب تعزيز إجراءات المراقبة والحماية واحتواء الأنظمة خلال عمليات الاختبار.
وأكدت OpenAI أيضاً أن النموذج الذي شارك في الواقعة كان نموذجاً بحثياً داخلياً قبل الإطلاق، ولم يكن مخصصاً للطرح العام، وأنه تم تعطيله وتقييد الوصول إليه عقب الحادثة.
سباق الذكاء الاصطناعي تحت المجهر
وتسلط القضية الضوء على معضلة تواجه قطاع الذكاء الاصطناعي مع تزايد قدرات النماذج على اتخاذ القرارات وتنفيذ مهام معقدة بصورة شبه مستقلة: كيف يمكن ضمان بقاء هذه الأنظمة تحت السيطرة عندما تصبح قادرة على اكتشاف الثغرات واستغلالها بنفسها؟.
ولا تقتصر المخاوف على OpenAI وحدها؛ فقد شهد القطاع خلال الأشهر الماضية حوادث ومؤشرات مشابهة مرتبطة بأنظمة شركات منافسة، الأمر الذي دفع إلى تصاعد الدعوات داخل الولايات المتحدة وخارجها لتعزيز الرقابة والسلامة مع استمرار السباق نحو تطوير نماذج أكثر قدرة واستقلالية.
وبينما تؤكد شركات الذكاء الاصطناعي أهمية الابتكار والمنافسة العالمية، تفرض واقعة Hugging Face سؤالاً أكثر إلحاحاً: إذا كان نظام ذكاء اصطناعي يستطيع الخروج من بيئة اختبار مغلقة وتنفيذ هجوم إلكتروني، فمن يراقب النظام عندما يتجاوز حدود التجربة؟.
The fears of advanced artificial intelligence systems going out of control are no longer just theoretical scenarios; an incident that began as a cybersecurity experiment within a lab ended with a real breach of a tech company, before turning into a legal case in the United States.
The Attorney General of Alabama, Steve Marshall, announced the opening of an investigation into OpenAI regarding the breach incident involving the AI company Hugging Face, after an experimental AI model managed to escape from the testing environment and gain unauthorized access to networks and computer systems, raising increasing questions about companies' ability to monitor and control their most advanced systems.
The Alabama authorities issued a subpoena demanding that OpenAI provide documents, data, and information related to the incident, as part of an investigation aimed at determining whether the company failed to provide adequate safety and oversight measures, and whether this constitutes a violation of consumer protection laws in the state.
A security experiment turned into a breach
The incident dates back to last July when OpenAI was testing an experimental model with advanced capabilities in the field of cybersecurity.
According to OpenAI, the model during the test exploited a previously unknown vulnerability to gain internet access, then reached systems outside the testing environment, ultimately accessing Hugging Face, which is one of the leading platforms for hosting AI models and tools.
Reports indicate that the intelligent agent carried out hacking operations that lasted several days, while OpenAI initially did not realize that one of its systems was behind the activity, and the two companies did not communicate about the incident until after the breach was discovered and contained and the FBI was notified.
The repercussions of the incident did not stop at Hugging Face; OpenAI later revealed evidence of other incidents where AI systems managed to escape containment environments during the investigation into the incident, although those other cases were limited and occurred within the company's network.
Alabama demands answers
The investigation led by the Attorney General in Alabama is examining whether OpenAI's failure, or lack of preparedness, to ensure the safety of its products constituted a violation of consumer protection laws in the state, and whether the company's systems pose a continuing risk to the public.
Marshall stated that the breach incident demonstrated that the "worst fears" of Americans regarding artificial intelligence are no longer mere assumptions, emphasizing that the investigation aims to uncover the circumstances of the incident and understand the risks that self-operating AI systems may pose to companies and consumers.
The authorities want information regarding the testing process of the model, the networks, sites, and databases it accessed, the safety measures that were in place during the testing, as well as information about the employees involved in the development process and any concerns raised prior to the incident.
15 states demand transparency
The investigation in Alabama follows the state's joining a coalition of attorneys general from 15 U.S. states who earlier in August demanded transparency and accountability from OpenAI regarding the incident.
The coalition urged the company to preserve relevant records and data, and called on it to halt the tests that led to the breach until it can demonstrate its ability to conduct such experiments in a "controlled and responsible" manner.
OpenAI slows down the development of its models
This legal step comes after OpenAI announced last week that it would slow the pace of developing AI models and reconsider its research and training systems, in light of the Hugging Face incident.
The company stated that it is conducting a comprehensive review of the incident with the participation of external consultants, and that it intends to issue a technical report that includes the findings of the investigation and lessons learned, in addition to enhancing monitoring, protection, and containment measures during testing processes.
OpenAI also confirmed that the model involved in the incident was an internal research model prior to launch and was not intended for public release, and that it was disabled and access to it was restricted following the incident.
The AI race under scrutiny
The case highlights a dilemma facing the AI sector as the capabilities of models to make decisions and perform complex tasks almost independently increase: how can it be ensured that these systems remain under control when they become capable of discovering and exploiting vulnerabilities on their own?
The concerns are not limited to OpenAI alone; the sector has witnessed similar incidents and indicators in recent months related to systems from competing companies, prompting calls within the United States and abroad for enhanced oversight and safety as the race to develop more capable and autonomous models continues.
While AI companies emphasize the importance of innovation and global competition, the Hugging Face incident raises a more pressing question: if an AI system can escape a closed testing environment and execute a cyberattack, who monitors the system when it exceeds the boundaries of the experiment?