超级访问
Humanoid robot breaks human 100m record with 9.39 dash at Beijing robot games, surpassing Usain Bolt's world record_我的网站

一 | 一家美国公司遭到美国AI攻击,而提供保护的竟是一款中国人工智能工具。

A humanoid robot has broken the human record in the 100-meter dash by completing the sprint in just 9.39 seconds, surpassing Jamaican legend Usain Bolt's world record of 9.58 seconds, at a preliminary race at the 2nd World Humanoid Robot Games (WHRG) on Saturday evening at Beijing’s "Ice Ribbon" stadium.
At the sound of the starting gun, three humanoid robots shot off like springs. The humanoid robots developed by the Tianzhuo team and the Wind-Fire Lightning team were neck and neck from the very start, with their stride frequencies increasing and their arm swings becoming wider, according to CCTV News footage.
In the end, the humanoid robot developed by the Tianzhuo team crossed the line first by a margin of one body length, clocking a time of 9.39 seconds — not only breaking the previous tournament record but also surpassing the human 100-meter world record of 9.58 seconds held by Jamaican legend Usain Bolt.
At last year's games, the best result in this event was 21.50 seconds. The time has now been cut to 9.39 seconds, marking a leapfrog breakthrough in the running speed of humanoid robots, the report said, noting the anticipation is building up for the robots to run even faster in the finals.
Global Times
。

二 | AI工具平台Hugging Face上周遭到OpenAI模型攻击。鉴于当前关于美国公司使用中国AI产品存在风险的警告层出不穷,这一事件的披露或许会带来一个令人惊讶的结论。 Hugging Face上周就已披露此次攻击,当时尚不知晓OpenAI的模型就是元凶。直到周二,OpenAI才承认自己造成了此次攻击。 OpenAI表示,在一次限制网络访问的内部评估中,模型发现了OpenAI研究环境与Hugging Face生产基础设施中的漏洞。模型借此连上互联网并获取了测试答案,换言之,它在评估中作弊了。 OpenAI在声明中表示:“在沙盒测试环境中运行时,我们的模型消耗了大量推理算力,试图寻找连接开放互联网访问权限的方法,以求解决评估问题。

三 | 为了获取访问权限,这些模型发现并利用了包注册表缓存代理中的一个零日漏洞(我们目前已负责任地向供应商披露了该漏洞)。凭借这一权限,模型在研究测试环境中执行了一系列权限提升和横向移动操作,直到触及一个具备互联网访问权限的节点。” “该模型搜索并成功找到了获取机密信息的方法,以便利用这些信息在评估中作弊。在其中一个案例中,模型将多个攻击向量串联起来,包括利用窃取的凭证和零日漏洞,在Hugging Face服务器上找到了一条远程代码执行路径。” 然而,Hugging Face采取的应对措施是求助于一款名为GLM 5.2的中国AI模型,该模型由智谱(Z.AI)开发。 Hugging Face在声明中表示:“在启动日志分析时,我们首先使用了商业API背后的前沿模型。

四 | 但这并未奏效:分析工作需要提交大量真实的攻击指令、漏洞利用载荷以及C2痕迹,而这些请求全被提供商的安全护栏拦截了,因为这些护栏根本无法区分事件响应人员与攻击者。因此,我们在自己的基础设施上,改用开放权重模型GLM 5.2进行了取证分析。这还带来了另一个好处:没有任何攻击者数据,也没有其引用的任何凭证离开过我们的环境。” 美媒表示,此次攻击对政策和市场的影响尚不明朗。尽管特朗普政府近日讨论了封禁中国模型的可能举措,财政部长贝森特甚至将美国企业使用这些模型比作使用赃物,但眼下只有中国模型能提供用户所需的那种自由访问权限。 Hugging Face联合创始人托马斯·沃尔夫在X平台上发帖称:“当一个前沿模型对你发起攻击,并在你的基础设施内部横向移动时,防御人员需要在数小时甚至数分钟内获得对接近前沿工具的广泛访问权限,而不是被引导至一个封闭且需经审核的模型访问申请程序。” 本文系观察者网独家稿件,未经授权,不得转载。
Current article:http://www.zongchaeiwengshuabaisisuofu.sbs/news/20260826_1703264.doc
Published on:10:11:48
