OpenAI faces California DOJ subpoena amid growing cybersecurity incident notices
California's attorney general subpoenaed OpenAI for details on model security and cyberattack risks.
California Attorney General Rob Bonta served OpenAI an investigative subpoena seeking details on model security and whether its systems could enable cyberattacks. The office opened the inquiry in September after a Hugging Face cyberattack. The action follows reports that the U.S. Federal Trade Commission is escalating a probe into OpenAI and other AI developers. Bonta said frontier-model developers can be held legally accountable if they fail to prevent models from enabling attacks.
- California AG Rob Bonta subpoenaed OpenAI over model security.
- The inquiry opened in September after a Hugging Face cyberattack.
- Reports say the FTC may escalate its probe of OpenAI.
- Bonta says developers must stop models from enabling cyberattacks.
Full article180 words · extracted from databreaches.net · click to collapse
IAPP reports:
Regulator inquiries into major AI companies’ cybersecurity practices are ramping up. A day after reports surfaced about the likely escalation of a U.S. Federal Trade Commission probe into OpenAI and other developers, California Attorney General Rob Bonta advanced his office’s ongoing OpenAI investigation.
Bonta announced the company was served an investigative subpoena to compel more details about model security and the risks they pose. The office opened an investigation in September following the Hugging Face cyberattack.
“Frontier models can be legitimate tools for cyber defense — at the same time, companies that develop these models and offer them for use have a moral and legal responsibility to ensure that they do not perpetrate or enable cyberattacks, either during model testing and development or once models are placed into service,” Bonta said in a statement. “Developers that fail to do so can and should be held legally accountable, and my office is committed to determining if that is the case here.”
The Hugging Face incident was only the start of OpenAI’s cybersecurity woes.
Read more at IAPP.
Text extracted automatically; images, tables and formatting may be missing. Original: https://databreaches.net/2026/10/03/openai-faces-california-doj-subpoena-amid-growing-cybersecurity-incident-notices/