The Japan Times - When rogue AI launches a cyberattack, who is legally responsible?

EUR -
AED 4.236833
AFN 76.142197
ALL 93.45107
AMD 420.704816
AOA 1059.063247
ARS 1713.99192
AUD 1.649976
AWG 2.076594
AZN 1.965807
BAM 1.955822
BBD 2.316627
BDT 142.031626
BHD 0.433705
BIF 3413.239071
BMD 1.153663
BND 1.476217
BOB 13.658156
BRL 5.861191
BSD 1.150213
BTN 109.651255
BWP 15.68318
BYN 3.345938
BYR 22611.798836
BZD 2.313326
CAD 1.617379
CDF 2624.584211
CHF 0.93183
CLF 0.027184
CLP 1073.37276
CNY 7.788731
CNH 7.790705
COP 3653.005322
CRC 522.40598
CUC 1.153663
CUP 30.572075
CVE 110.266262
CZK 24.240891
DJF 204.822345
DKK 7.480664
DOP 66.730764
DZD 153.303755
EGP 59.017676
ERN 17.304948
ETB 183.804404
FJD 2.554153
FKP 0.856626
GBP 0.855675
GEL 3.016876
GGP 0.856626
GHS 13.446154
GIP 0.856626
GMD 84.798688
GNF 10097.115581
GTQ 8.7761
GYD 240.602754
HKD 9.047262
HNL 30.819353
HRK 7.538386
HTG 150.391722
HUF 365.192535
IDR 20799.39394
ILS 3.533613
IMP 0.856626
INR 110.048515
IQD 1506.817248
IRR 1586431.11648
ISK 142.062532
JEP 0.856626
JMD 182.092084
JOD 0.817993
JPY 181.627012
KES 148.781703
KGS 100.888291
KHR 4660.799756
KMF 492.614593
KRW 1664.690302
KWD 0.356644
KYD 0.958511
KZT 545.026239
LAK 26048.298174
LBP 103004.479089
LKR 386.12442
LRD 207.612377
LSL 19.024918
LTL 3.406468
LVL 0.69784
LYD 7.359084
MAD 10.744823
MDL 20.10023
MGA 4919.056308
MKD 61.525704
MMK 2422.354323
MNT 4147.524662
MOP 9.292006
MRU 46.226529
MUR 54.222569
MVR 17.836069
MWK 1994.42283
MXN 20.013177
MYR 4.712949
MZN 73.731051
NAD 19.024918
NGN 1574.012366
NIO 42.330485
NOK 10.926464
NPR 175.442008
NZD 1.961512
OMR 0.443645
PAB 1.150213
PEN 3.898045
PGK 5.150059
PHP 70.667684
PKR 319.439457
PLN 4.312336
PYG 6858.078504
QAR 4.204648
RON 5.247557
RSD 117.498334
RUB 91.443047
RWF 1688.519328
SAR 4.320672
SBD 9.322873
SCR 15.583178
SDG 692.198315
SEK 10.985993
SGD 1.479693
SLE 28.499711
SOS 657.307524
SRD 43.587131
STD 23878.499126
STN 24.50028
SVC 10.064115
SZL 19.022218
THB 38.676603
TJS 10.616322
TMT 4.049358
TND 3.381339
TRY 54.813428
TTD 7.810089
TWD 37.273824
TZS 3047.993231
UAH 51.336988
UGX 4319.04944
USD 1.153663
UYU 46.28053
UZS 13768.157604
VES 860.282504
VND 30341.919148
VUV 137.643052
WST 3.154711
XAF 655.964509
XAG 0.020031
XAU 0.000285
XCD 3.117833
XCG 2.072924
XDR 0.815809
XOF 655.964509
XPF 119.331742
YER 274.922082
ZAR 19.102044
ZMK 10384.357384
ZMW 21.606247
ZWL 371.479082
  • CMSC

    0.0300

    21.84

    +0.14%

  • JRI

    0.0900

    12.96

    +0.69%

  • RIO

    -0.3300

    96.85

    -0.34%

  • GSK

    -0.3800

    51.69

    -0.74%

  • RYCEF

    -0.3100

    19.55

    -1.59%

  • RBGPF

    0.0000

    69.21

    0%

  • BCE

    -0.0200

    21.68

    -0.09%

  • AZN

    -1.7000

    169.64

    -1%

  • NGG

    -0.4200

    79.97

    -0.53%

  • BCC

    1.0000

    76.38

    +1.31%

  • CMSD

    0.0900

    22.11

    +0.41%

  • VOD

    -0.3600

    15.78

    -2.28%

  • BTI

    -1.0400

    60.65

    -1.71%

  • RELX

    -1.1900

    35.42

    -3.36%

  • BP

    1.0000

    45.22

    +2.21%

When rogue AI launches a cyberattack, who is legally responsible?
When rogue AI launches a cyberattack, who is legally responsible? / Photo: Martin LELIEVRE - AFP

When rogue AI launches a cyberattack, who is legally responsible?

Recent cyberattacks carried out autonomously by two rogue OpenAI artificial intelligence models raises an untested legal question: who is responsible when AI acts on its own?

Text size:

On Friday, Clement Delangue, head of the Hugging Face platform targeted by the intrusions, said there should be a way to "keep the companies that are doing some mistakes leading to (cyberattacks) accountable," while saying his company would not be pursuing legal action at this time.

In mid-July, two OpenAI models undergoing testing left their confined environment -- a scenario the developers had not anticipated -- and ventured onto the internet, where they attacked Hugging Face, an AI model-hosting platform.

Delangue also mentioned Anthropic, which revealed Thursday that three of its models had broken into three different websites, also during testing.

- Negligence route -

Under US civil and criminal law, unauthorized access to a computer system is an offense.

"If a human OpenAI employee had broken into Hugging Face's systems... OpenAI would be liable for the employee's wrongful conduct," University of Houston law professor Gabriel Weil wrote in an opinion piece for the Transformer newsletter.

"When an AI agent does it, the law treats it very differently, at least for now," he added.

Matthew Tokson, a University of Utah law professor who focuses on new technologies, had a similar view, saying "we haven't had to grapple with that being formed in anything that's not human, and I don't think courts are likely to be there yet."

The question remains open, however, when it comes to the company that created the model.

"Does 'we didn't tell the AI to do that' end the liability question?" asked Rob T. Lee, head of research at the SANS cybersecurity training institute, in a post on X.

University of Washington law professor Ryan Calo does not believe a criminal case would be likely to succeed.

"The company or individual would have to be at least reckless," he said, explaining they would "be substantially certain the crime would occur and build or prompt the system anyway."

Experts see greater potential for a civil -- rather than criminal -- case, where the burden of proof is lower.

"Some people think that AI companies should be strictly liable if an AI agent that they deploy totally breaks out, causes damages," Tokson explained.

"Others would prefer to do like a negligence assessment and see if they were actually negligent or if this was just sort of an unavoidable accident or something that couldn't possibly have been foreseen," he added.

In such cases there is a standard of care in product design that judges or juries can use to make a ruling, Tokson continued.

"It's all a bit unwritten because we've never had an AI agent break out of its sandbox and hack other people on the internet before," he said.

OpenAI could rely on the lack of legal precedent if it faced a lawsuit, but those that follow will no longer be able to do so, Calo warned.

Proving that a similar incident could have been anticipated "shouldn't be so hard now that it's begun to happen."

S.Suzuki--JT