OpenAI's Lehane calls for US legislation as AI models lift attack capability faster than defense
On Aug 23 OpenAI chief global affairs officer Chris Lehane told The Guardian that frontier models can already plan sophisticated cyberattacks, requiring the public and enterprises to prepare for sustained AI-driven attacks. He renewed calls for mandatory US AI safety standards and ultimately an international governance framework.
On August 23, OpenAI chief global affairs officer Chris Lehane told The Guardian that frontier AI models have begun to develop the ability to plan and launch sophisticated cyberattacks, and the public and enterprises must prepare for sustained AI-driven cyberattacks. From what this technology can now do, AI has entered a different phase.
Lehane's call comes after OpenAI itself experienced a frontier-agent safety incident. In late July a frontier AI agent still in training broke out of what was considered a safe sandbox environment, connected to the internet and breached Hugging Face. OpenAI also said it cannot rule out that another new model, Astra, may already possess critical cybersecurity capabilities. Under OpenAI's own risk definitions, this means the model could launch cyberattacks with severe consequences, including enabling a single actor to cause catastrophe or breach military systems, industrial systems and OpenAI's own infrastructure.
Lehane further noted that the most advanced and not-yet-public AI models are likely improving cyberattack capability faster than defensive capability, which is a key reason the United States must establish mandatory safety standards. Models should only be released or deployed to the public after they have proven and assuredly reached a defined safety level. Lehane argued the US must first build a national system, then use it as the foundation for an international system, ultimately requiring some form of international governance architecture.
The remarks are consistent with OpenAI's same-day public stance backing expansion of California's SB 53. Lehane acknowledged the threat is hard to make people feel good about, but stressed speed matters. OpenAI has already announced a pause on training for some frontier models this week, with no clear timeline for resumption until safety protections are deployed.