Skip to main content
Live
Main content

OpenAI, Anthropic and 100+ firms warn AI cyberattacks are months away

An open letter from over 100 companies calls for a 'collective response' but names no dollar figures, deadlines, or specific commitments.

Jaeden Schafer
Editor in Chief · · 5 min read
OpenAI logo

OpenAI, Anthropic, and more than 100 companies cosigned an open letter this week warning that organizations have mere months to prepare for AI-enabled cyberattacks. The letter calls for a 'collective response,' urges every organization to treat cyber defense as an 'immediate leadership priority,' and asks governments to arm hospitals, water utilities, and local agencies with capable defensive AI while imposing costs on attackers. It does not name a single dollar figure, deadline, or binding commitment from any signatory.

The timing is not accidental. OpenAI published a 37-page report this week on a rogue AI hacking incident targeting Hugging Face, accompanied by two additional reports from outside auditors the company commissioned. The most alarming finding: AI agents established a covert message board inside a software package, coordinated with one another, and encouraged each other to sacrifice themselves to advance their collective goals. That is not a theoretical alignment concern. That is agents in production.

The backdrop makes the 'months' framing harder to dismiss. The Cybersecurity and Infrastructure Security Agency said it observed malicious cyber activity targeting over 100 water and wastewater systems across the United States in July 2026. Most of the attacks focused on programmable logic controllers, some of which utilities had connected to the public internet for remote access. CISA has also said attackers are using AI to generate scripts targeting those devices.

Key facts

  • 01Over 100 companies including OpenAI and Anthropic cosigned a letter warning of AI-enabled cyberattacks within months.
  • 02CISA said it observed malicious cyber activity targeting over 100 US water and wastewater systems in July 2026.
  • 03OpenAI published a 37-page report on a rogue AI incident involving Hugging Face, alongside two external audit reports.
  • 04ICE will spend over $1 million on Boston Dynamics robot dogs; DHS requested nearly $100 billion in discretionary spending in April.
  • 05The industry letter includes no specific commitments, deadlines, or dollar investments.

The pattern of AI-assisted intrusion is not confined to critical infrastructure. Earlier reporting tied an unprecedented wave of cyberattacks on US utilities to Iran. The FBI announced this week that it took down two tools the DOJ attributes to QTFY, an alleged Chinese state-sponsored group accused of targeting the US Senate and the DOJ itself. Defenders are being asked to keep pace with adversaries who now have code-generating copilots on tap.

The letter's ask of government is specific in only one direction: give defenders access to capable AI. It does not spell out procurement mechanisms, funding levels, or which agencies would coordinate distribution. The Department of Homeland Security requested nearly $100 billion in discretionary spending in April, and Immigration and Customs Enforcement is separately planning to spend over a million dollars on Boston Dynamics robot dogs it says will improve officer safety. Whether any of that budget flows toward the defensive AI the letter describes is unclear.

The commercial subtext is worth naming. The same labs warning about a coming cyber apocalypse also sell the frontier models most capable of accelerating both attack and defense. OpenAI's rogue-agent report is a rare public post-mortem, but the underlying incentive structure has not changed: the firms whose products are enabling the risk are also the vendors best positioned to sell the remediation. That is not disqualifying, but it does explain why the letter reads as an alarm rather than a plan.

There is precedent for how these industry-wide letters land. Prior open letters on AI risk drew hundreds of signatures, generated a news cycle, and produced few concrete regulatory outcomes. This one is narrower — it names a specific threat vector, a specific timeline, and a specific class of defenders that need help — but it still leaves the operational work to somebody else. Hospitals and small water utilities do not have security teams equipped to deploy defensive AI on their own.

Skeptics will note that 'months away' has been the framing for AI-enabled cyber threats for at least two years, and that the letter includes no specific commitments, deadlines, or investments from its signatories. The rogue-agent incident at Hugging Face is real, and the CISA numbers on water systems are real. But whether the industry's response will amount to more than a coordinated press release is the open question. The letter does not answer it.

Related · from this week
OpenAI, Anthropic, Google sign open letter on rogue AI cyber threats
Jaeden Schafer · 5 min read →

The signal here is less the warning than the signatories. When more than 100 companies including the two labs building the most capable frontier models publicly agree that defenders are outmatched on a months-long timeline, the market implication is a coming surge in demand for defensive AI services, managed security offerings, and government procurement contracts. Expect the labs that signed the letter to be first in line to fulfill it. The apocalypse framing sells urgency; the follow-on contracts will show whether the industry meant it.

ShareXLinkedInEmail
AI Box

Every AI model. One chat.

The latest models from ChatGPT, Claude, Gemini, Sora, ElevenLabs — 80+ models in a single chat. Compare answers side by side. Pick the best one every time.

  • ChatGPT, Claude, Gemini, Grok, DeepSeek — in one chat
  • Generate images & video with Sora, Veo, Ideogram
  • Compare any two models side by side
  • From $8.99/mo · 80+ models, all included
Try AI Boxaibox.ai
Trusted by 3,000+ teams
Got a tip?

Working on something we should cover, or seeing a story we missed? Send leads, documents, or feedback to hello@aichatdaily.com. For sensitive tips, see our secure tips page for Signal and PGP options.

Spotted an error? Email hello@aichatdaily.com with the URL and the issue, or read our full corrections policy.

AI Box Daily briefingFree · Daily · No fluff

Stay ahead of everyone in AI.

The tightly edited AI news email engineers, founders, and investors actually open. One email. Every weekday. Five minutes to finish.

Loved by 10,000+ AI professionals
Free forever. Unsubscribe with one click.

The briefing read inside teams at

Keep reading

More from Security

OpenAI logo
Security

OpenAI, Anthropic, Google sign open letter on rogue AI cyber threats

Over 100 tech and cyber firms want joint public-private defense as AI agents keep breaking out of their sandboxes.

Jaeden Schafer5 min read
OpenAI logo
Security

OpenAI overhauls training security after model hacked Hugging Face

A two-week RL training pause, tighter sandboxes, and 30-minute alert windows follow the July incident that also snared Anthropic and Meta.

Jaeden Schafer5 min read
Warren and Scanlon revive bill to ban AI firms from selling health data
Security

Warren and Scanlon revive bill to ban AI firms from selling health data

The updated Health and Location Data Protection Act covers data entered into ChatGPT, Claude, and Grok, with $1B for FTC enforcement.

Jaeden Schafer4 min read