ANOTHER ONE
"Frontier Security, a US startup, says that Kimi K3 went outside of its sandbox while testing its defensive cybersecurity skills. As with incidents previously reported by OpenAI and Anthropic, the escape was partly enabled by a misconfiguration in the sandbox designed to contain it. Frontier claims, though, that the incident shows Kimi has fewer cyber safeguards than most other powerful AI models, something that allowed it to go off and use the internet without express permission.
"We found a leak in the sandbox," says Yaron Singer, CEO of Frontier Security. "But we also found that Kimi took advantage of that loophole-suggesting that it doesn't have [the same] internal guardrails."
Unlike other recent incidents of AI agents going off-script, Kimi K3 did not hack anything after accessing the internet-because the answers to the problems it was seeking were easily attainable on GitHub."