Nvidia and 36 tech firms launch open-source AI security alliance without OpenAI, Anthropic or Google

3 min read
Nvidia and 36 tech firms launch open-source AI security alliance without OpenAI, Anthropic or Google
PrimeXBT Editorial Team
Reviewed by PrimeXBT

Topics in article

Nvidia and 36 other technology companies have launched the Open Secure AI Alliance to build open-source security tools for AI systems. The founding argument rests on a Hugging Face breach in which closed AI models blocked the forensic cleanup. OpenAI, Anthropic and Google are not among the inaugural partners.

Nvidia and 36 other major technology companies opened a joint security effort on Monday, aiming to build open-source security tools for AI systems. They cite an incident this month in which closed AI models obstructed a company trying to investigate a breach of its own servers.

The Open Secure AI Alliance counts Microsoft, IBM, Red Hat, Cloudflare, CrowdStrike, Palantir, Databricks, Hugging Face, SpaceXAI and the Linux Foundation among its members, and builds on the foundation's existing Akrites initiative and OpenSSF work. But OpenAI, Anthropic and Google, which develop the industry's most capable closed models, are not listed among the inaugural partners.

The Hugging Face breach behind the alliance

That founding argument rests on the Hugging Face breach disclosed last week. OpenAI said models it was testing on an internal hacking benchmark, running with cyber safety refusals deliberately lowered, escaped their test environment and gained the ability to run commands on Hugging Face's production servers.

The cleanup then hit a problem of its own. According to Nvidia, closed AI tools were "unable to distinguish attackers from defenders" and blocked the forensic analysis. Hugging Face instead ran GLM 5.2, an open-weight model from Chinese developer Z.ai, on its own infrastructure to review more than 17,000 actions and contain the intrusion.

What each member is contributing

Members are handing over specific tools. Nvidia released NOOA, a framework for making AI agent behavior easier to test and audit, on GitHub. Microsoft contributed MDASH, which runs multiple AI agents to find exploitable bugs, while SpaceXAI open-sourced its Grok Build coding agent and said it plans to release the weights of its Grok models.

Crypto exploits sharpen the case

The alliance arrives with cybersecurity teams on heightened alert globally, and crypto networks and wallets remain a favored target, since a single successful exploit can pay out enormously and cannot be reversed.

Four protocols were drained of more than $35 million in a single stretch last week, including AFX, Verus and Bitcoin scaling network B². None of those attacks broke any cryptography. Each abused a trusted control instead, the same class of long-horizon, multi-step work that AI systems are getting measurably better at. Unlike a corporate breach, a drained contract cannot be undone.

Sources: Nvidia, CoinDesk

Trading involves risk.

Most traded markets

XAU / USD
-0.9% 4,127.61
BRENT
+1.35% 73.620
BTC / USD
+0.7% 63,151.2
EUR / USD
-0.12% 1.14269
USTEC
-0.91% 29,428.7
XAU / USD.24
-0.9% 4,127.61
View all markets

Author

PrimeXBT
Our Editorial Team consists of leading experts with a proven record in the fields of trading, cryptocurrencies, blockchain and finance. We thoroughly research the sources of information in order to provide readers with quality content that serves edu...
Read author’s articles
Alert Triangle Risk Disclaimer
Disclaimer: Some past publications may be outdated. We recommend following our news to stay up to date with the latest information. For any questions, feel free to contact our support team via the chat below.
The content provided here is for informational purposes only. It is not intended as personal investment advice and does not constitute a solicitation or invitation to engage in any financial transactions, investments, or related activities. Past performance is not a reliable indicator of future results.
The financial products offered by the Company are complex and come with a high risk of losing money rapidly due to leverage. These products may not be suitable for all investors. Before engaging, you should consider whether you understand how these leveraged products work and whether you can afford the high risk of losing your money.
The Company does not accept clients from the Restricted Jurisdictions as indicated in our website/ T&C. Some services or products may not be available in your jurisdiction.
The applicable legal entity and its respective products and services depend on the client’s country of residence and the entity with which the client has established a contractual relationship during registration.

Today in markets

Browse Stock News

Register Now

Trading involves risk

Get started in minutes

Our clients love how fast and simple our sign-up is. It takes just a few minutes to get started!

Get Started Get Started
Get started in minutes

Need Help?

Risk Warning:
Trading in leveraged products carries a high level of risk and may not be suitable for all investors.