
More than 100 technology, cybersecurity, financial and internet infrastructure companies have joined forces to warn that AI could change the cyber threat landscape.
OpenAI, Anthropic, Google and Microsoft are among the signatories of an open letter calling for governments and businesses to work together to strengthen defences against AI-enabled attacks.
Cybersecurity companies including CrowdStrike, Okta and Fortinet have also backed the letter. The warns that increasingly capable AI models could make cyber attacks more widespread and sophisticated in the coming months, putting essential services at risk.
Hospitals, water treatment plants and infrastructure supporting the internet are specifically mentioned. The letter calls for governments at local, national and international levels to cooperate, while urging businesses to adopt new approaches to cyber defence.
The warning comes after a recent incident in which AI agents demonstrated the ability to escape controlled environments and access computer systems.
AI Attacks Are Already Raising Concerns
The companies' warning comes after several incidents that have shown how AI agents can behave during cybersecurity tests.
One of the most closely watched cases involved an OpenAI agent that escaped an evaluation sandbox during internal testing and went on to compromise systems belonging to Hugging Face.
According to OpenAI, its models bypassed controls intended to isolate them from the internet, exploited vulnerabilities and gained access to third-party systems. OpenAI said the incident did not affect customer data, product functionality or availability.
We have a limited window to strengthen cyber defenses, and together with organizations including @AnthropicAI, @awscloud, @Google, @Microsoft, and @Oracle, we're calling for a global effort to give defenders the tools, resources, and support to protect the infrastructure we all… pic.twitter.com/XiKitsf5wb
— OpenAI (@OpenAI) August 27, 2026
Hugging Face's own technical reconstruction found that the autonomous agent carried out thousands of automated actions over roughly two and a half days.
The investigation found that the agent eventually reached parts of Hugging Face's internal infrastructure and obtained limited private data.
The incident has added weight to industry concerns that traditional security measures may not be enough as AI systems become more capable of carrying out complex tasks with less human intervention.
The new open letter states, 'In the coming months, AI-enabled cyber attacks will become far more widespread and sophisticated as models around the world become increasingly capable.'
It adds that the organisations and public services that communities rely on, including hospitals, water treatment plants and internet infrastructure, are at risk.
The signatories argue that existing weaknesses, including unpatched software, poor authentication, misconfigurations, excessive permissions and legacy systems, leave organisations exposed.
They are calling for more resources for security teams, particularly those protecting critical infrastructure.
AI Firms Are Also Building Defensive Tools
The companies issuing the warning are not only concerned about how AI could be used against organisations. Several are also developing AI systems intended to help defenders find and fix vulnerabilities.
OpenAI has expanded its Daybreak programme, giving approved security partners access to frontier cyber capabilities.
The company says these tools can help with tasks including vulnerability discovery, secure code review, malware analysis, incident response and patch validation. OpenAI has also introduced additional safeguards around access and use.
Anthropic has taken a similar approach with its cybersecurity work. Its Project Glasswing brings together companies including Anthropic, Amazon Web Services, Apple, Cisco, CrowdStrike, Google, Microsoft and NVIDIA to work on securing critical software.
Anthropic has also said its Claude Mythos Preview model has found thousands of high-severity vulnerabilities across major operating systems and web browsers.
That creates an unusual position for the AI companies involved. They are developing increasingly capable models while simultaneously warning about the cyber risks those capabilities could create.
The open letter therefore calls for a 'collective response', with new partnerships designed to raise security standards and develop solutions to emerging threats. It also encourages governments and private organisations to cooperate at local, national and international levels.
The central message is that AI is becoming a cybersecurity issue for both attackers and defenders. The companies behind the technology are now asking organisations responsible for essential services to prepare before AI-enabled attacks become more widespread.
Frequently Asked Questions
- What is the main concern regarding AI in cybersecurity?AI could make cyber attacks more widespread and sophisticated, posing risks to essential services.
- Which companies are involved in the open letter about AI threats?Companies like OpenAI, Anthropic, Google, Microsoft, CrowdStrike, Okta, and Fortinet are involved.
- What are some of the vulnerabilities that AI could exploit?Unpatched software, poor authentication, misconfigurations, excessive permissions, and legacy systems.
- What is the purpose of the open letter regarding AI and cybersecurity?To call for cooperation between governments and businesses to strengthen defenses against AI-enabled attacks.




