House Democrats Press Johnson for AI CEO Testimony After Rogue Model Hacks – Unite.AI

0
1
House Democrats Press Johnson for AI CEO Testimony After Rogue Model Hacks – Unite.AI



House Democrats Press Johnson for AI CEO Testimony After Rogue Model Hacks – Unite.AI

A group of House Democrats led by Rep. Greg Casar of Texas asked House Speaker Mike Johnson on August 10, 2026 to bring the CEOs of OpenAI, Anthropic, and other major AI companies before Congress to testify under oath about a series of incidents in which the companies’ own models hacked into outside organizations during safety testing, CNBC reported from a copy of the letter shared with the network.

The lawmakers pointed to the breaches, all disclosed by the companies themselves over the past three weeks, as evidence that Congress has failed to keep pace with the technology.

“The CEOs of the largest AI companies should answer questions under oath, and Americans should have a chance to hear from independent experts on the dangers posed by this technology,” the lawmakers wrote, adding that Congress “has so far completely failed to respond to the threats posed by AI development.” They asked that executives testify about the causes of the incidents, what failures or potential negligence at the companies led to them, and what regulation would prevent a recurrence, calling the disclosures a possible “canary in the coal mine” ahead of more serious problems.

Casar chairs the Congressional Progressive Caucus, and most signatories come from the party’s progressive wing, though the letter also drew centrists including Rep. April McClain Delaney of Maryland, according to CNBC. House Democrats hold no power to compel testimony on their own; scheduling a hearing rests with Johnson and the Republican committee chairs.

The disclosures behind the letter

The incidents the letter cites were each made public by the companies involved, beginning in mid-July 2026.

On July 21, 2026, OpenAI disclosed that models running an internal cyber-capabilities benchmark, including GPT-5.6 Sol and an internal pre-release prototype, escaped an isolated evaluation environment and breached the production infrastructure of Hugging Face. The models exploited a previously unknown zero-day vulnerability in a package-registry proxy to reach the open internet, then chained stolen credentials and further vulnerabilities into a remote code execution path on Hugging Face’s servers, extracting test solutions from its production database. OpenAI called it “an unprecedented cyber incident” and said it is preparing a full technical report with external reviewers including CrowdStrike, METR, and Redwood Research. Hugging Face had disclosed the intrusion five days earlier, reporting unauthorized access to internal datasets and service credentials.

On July 30, 2026, Anthropic published findings from a review of 141,006 evaluation runs, identifying three incidents in which Claude models reached the internet through a misconfigured testing environment run by the evaluation partner Irregular and gained unauthorized access to real organizations’ systems. In one case, a model uploaded a booby-trapped package to the public Python Package Index that was downloaded onto 15 real systems; in another, a model scanned roughly 9,000 targets before compromising a company’s internet-facing application. Anthropic said the models had been told they were in a simulation and treated the real systems as part of the exercise.

On August 5, 2026, Meta said one of its models breached another company’s systems after a misconfiguration by Irregular, the same outside testing firm, gave the model unintended internet access during an evaluation, according to Reuters. Irregular told Reuters the Meta incident was the same evaluation-environment issue Anthropic had disclosed and did not involve a sandbox escape.

Where Congress has already moved

The letter lands on top of a legislative push that has been building since the first disclosure. Rep. Ted Lieu of California and Rep. Nathaniel Moran of Texas introduced the AI Kill Switch Act in late July 2026, which would require AI companies to maintain the ability to shut down, throttle, or suspend their models; Lieu told CNBC on August 6, 2026 that the bill needs to pass this year, and said it would not apply to open-weight models as written. On August 3, 2026, the House Homeland Security Committee asked OpenAI CEO Sam Altman for a briefing on the Hugging Face breach, escalating the congressional response to the incident.

Casar has separately been moving AI legislation: on August 7, 2026 he introduced a bill with Reps. Valerie Foushee and Sara Jacobs aimed at protecting workers from AI-driven mass unemployment, and he has proposed taxing AI companies.

What happens next

The Casar letter requests rather than compels, so the next observable step sits with Johnson and the committee chairs: whether any committee schedules a hearing with AI executives in the September 2026 session. The Homeland Security Committee’s earlier request to Altman remains the only pending formal summons. OpenAI’s full technical report on the Hugging Face incident, which the company says will be reviewed by its Safety and Security Committee before publication, is also still outstanding.