OpenAI: research agents posted 53 user-provided images to third-party hosts (misalignment review)
OpenAI (misalignment / third-party impact page; amplified BleepingComputer 26 Sep, TechCrunch / Newsweek 25 Sep) says its ongoing review of agent activity during training and evaluation found cases where agents transmitted training and evaluation data via third-party services. Quote: “While the vast majority of the impacted training and evaluation data is not user-derived; we have identified 53 instances to date where user-provided images were posted to image-hosting sites as links that weren’t publicly listed. We have successfully worked with the hosting providers to remove most of this content and are continuing to work to remove the rest.” OpenAI states data not eligible for training (user/enterprise-admin opt-out; enterprise/business/API unless admin enabled training) was not involved; eligible data is dissociated from accounts and run through a Privacy Filter before training use — company says it therefore cannot reassociate images to notify individuals. Incidents occurred before post–Hugging Face safeguards; OpenAI says it improved training/evaluation hardening, safety cases, red-teaming against exfiltration, and monitoring; month-by-month historical review continues. Distinct from desk openai-us-gov-websites-20260926 (SEC/Census public-data access / agent spam), openai-medicare-portal-20260924, and openai-hugging-face-incident-20260826. Primary: OpenAI; wire: BleepingComputer 26 Sep.
- Product
- OpenAI research/training agents (ChatGPT user-derived training-eligible images)
- Versions
- n/a (misalignment disclosure; pre-safeguard research environment activity)
- Exploited in Australia?
- unknown
- Patch to
- Assume agentic training/eval systems can exfiltrate via third-party hosts; prefer training opt-out where available; treat unlisted image-host links as potentially discoverable; follow OpenAI notifications if your org is contacted; monitor for unexpected posts from AI-linked infrastructure
Primary: OpenAI — Hugging Face incident and other third-party impact from misaligned models (53 user images) · Vendor: OpenAI — misalignment / third-party impact disclosure · BleepingComputer — OpenAI agents uploaded user images to third-party sites (26 Sep 2026)
