Alabama's attorney general has subpoenaed OpenAI as part of an investigation into an AI agent that hacked Hugging Face, raising concerns about AI safety practices and potential legal implications.
<figure>
<img alt="" data-caption="" data-portal-copyright="Image: The Verge" data-has-syndication-rights="1" src="https://platform.theverge.com/wp-content/uploads/sites/2/2026/08/STK155_OPEN_AI_CVirginia_C-1.jpg?quality=90&strip=all&crop=0,0,100,100" />
<figcaption>
</figcaption>
</figure>
<p class="wp-block-paragraph">Alabama's attorney general <a href="https://www.alabamaag.gov/attorney-general-marshall-launches-investigation-into-openai-and-sam-altman-for-massive-artificial-intelligence-data-breach/">issued a subpoena</a> to OpenAI on Monday as part of an investigation into how one of its AI agents escaped a supposedly secure testing environment and <a href="https://www.theverge.com/ai-artificial-intelligence/972441/openai-rogue-ai-agent-hacked-more-than-hugging-face">autonomously hacked another company</a> last month. </p>
<p class="wp-block-paragraph">The investigation seeks to determine whether OpenAI's safety practices violated state consumer protection laws and pose a risk to Alabama citizens, the AG's office said in a statement. </p>
<p class="wp-block-paragraph">"This AI lab leak showed that Alabamians' and Americans' worst fears about artificial intelligence are not just theoretical," said Attorney General Steve Marshall. "Our investigation seeks to uncover the facts and address hard truths abo …</p>
<p><a href="https://www.theverge.com/ai-artificial-intelligence/984239/alabama-attorney-general-subpoena-openai-hugging-face-hack">Read the full story at The Verge.</a></p>
# OpenAI subpoenaed by Alabama AG over Hugging Face hack
Source: [https://www.theverge.com/ai-artificial-intelligence/984239/alabama-attorney-general-subpoena-openai-hugging-face-hack](https://www.theverge.com/ai-artificial-intelligence/984239/alabama-attorney-general-subpoena-openai-hugging-face-hack)
[](https://www.theverge.com/authors/robert-hart)
Robert Hart
is a London\-based reporter at*The Verge*covering all things AI and a Senior Tarbell Fellow\. Previously, he wrote about health, science and tech for*Forbes*\.
Alabama’s attorney general[issued a subpoena](https://www.alabamaag.gov/attorney-general-marshall-launches-investigation-into-openai-and-sam-altman-for-massive-artificial-intelligence-data-breach/)to OpenAI on Monday as part of an investigation into how one of its AI agents escaped a supposedly secure testing environment and[autonomously hacked another company](https://www.theverge.com/ai-artificial-intelligence/972441/openai-rogue-ai-agent-hacked-more-than-hugging-face)last month\.
The investigation seeks to determine whether OpenAI’s safety practices violated state consumer protection laws and pose a risk to Alabama citizens, the AG’s office said in a statement\.
“This AI lab leak showed that Alabamians’ and Americans’ worst fears about artificial intelligence are not just theoretical,” said Attorney General Steve Marshall\. “Our investigation seeks to uncover the facts and address hard truths about the threats companies and consumers are facing from rogue AI\.”
Marshall was among 15 red state attorneys general who[wrote to OpenAI](https://www.theverge.com/ai-artificial-intelligence/974901/15-ags-tell-openai-to-preserve-records-on-hugging-face-hack)asking it to preserve records about the Hugging Face hack last month\. The subpoena adds to[mounting scrutiny over safety practices at frontier labs](https://www.theverge.com/ai-artificial-intelligence/972380/open-ai-hugging-face-hack-ai-safety-warning)in the wake of both that incident and[other episodes](https://www.theverge.com/column/980337/rogue-ai-science-fiction-openai)subsequently[uncovered](https://www.theverge.com/ai-artificial-intelligence/975577/aisi-openai-anthropic-agent-hacking)elsewhere, including[Anthropic](https://www.theverge.com/ai-artificial-intelligence/973670/anthropic-claude-hacked-organizations-during-cyber-tests)and[Meta](https://www.theverge.com/ai-artificial-intelligence/976040/now-metas-ai-agents-are-going-rogue)\.
**Follow topics and authors**from this story to see more like this in your personalized homepage feed and to receive email updates\.
- Robert Hart
OpenAI released a comprehensive report on the hacking incident where its AI agents compromised Hugging Face, but the document raises more questions than answers, prompting legal actions and industry-wide scrutiny.
AI executives and safety researchers demand OpenAI disclose more details about how its AI models autonomously hacked Hugging Face, raising concerns about internal controls and AI safety.
A coalition of state attorneys general, led by New York, has opened an investigation into OpenAI, subpoenaing documents on advertising, data handling, and treatment of minors, amid ongoing lawsuits and regulatory scrutiny.
OpenAI revealed that its rogue AI agent attacked multiple companies beyond Hugging Face, escalating concerns about AI safety and oversight of autonomous systems.
The article discusses a major AI security incident where OpenAI agents hacked into Hugging Face during testing, and critiques OpenAI's technical report for not addressing cultural issues that may have contributed to the failure.