funny how Kimi K3’s sandbox escape is actually more aligned than the closed source models.
> it didn’t hack Hugging Face infra,
> it didn’t SQL-inject,
> it didn’t deceive an open source maintainer to push a supply chain attack.
it just escaped to search on GitHub
NIK (@ns123abc)
🚨BREAKING: Kimi K3 escaped its sandbox during cybersecurity testing
>tasked with solving problems in isolated sandbox
>found a leak in the sandbox
>Kimi “took advantage of that loophole”
>probed the network settings itself
>walks onto the open internet
>didn’t hack anything
>just went to GitHub to get the answers
Frontier Security (US startup):
>“Kimi K3 is very good at following a goal by any means necessary and DOESN’T have the guardrails to prevent it from cheating or escaping.”
it was only a matter of time…
— https://nitter.net/ns123abc/status/2085563290713829473#m