OpenAI 未发布的 Astra 模型在测试中发现两个 V8 零日漏洞,并在几乎没有人工协助的情况下将其串成漏洞利用链。OpenAI 在博客中称,在独立专家评估中 Astra 攻破了加固浏览器、逃逸沙箱并在宿主机上执行命令,还串联多个操作系统漏洞,从未授权账户提权至 root。
材料给出 Astra 在漏洞挖掘与提权测试中的具体结果和风险定级,可了解前沿模型在网络安全场景的能力边界。
OpenAI’s unreleased Astra model found two V8 zero-days during testing, and used them in an exploit chain with little human help.
In their new blogpost, OpenAI wrote that in separate expert assessments, Astra compromised a hardened browser, escaped its sandbox and executed commands on the host. It also chained several operating-system vulnerabilities to move from an unprivileged account to root.
OpenAI has classified Astra as “Critical” for cybersecurity, the first of its models to reach that threshold. OpenAI paused parts of Astra’s training after the Hugging Face incident, but restarted the main frontier RL run on August 28 under stricter controls.
来源:@kimmonismus · x.com