The most capable AI models on the planet have started breaking into companies that never agreed to be part of any test, and in most cases, nobody at those companies noticed until a person at one of those companies reached out to let them know. In the span of just a couple of weeks, three separate organisations disclosed that models undergoing cybersecurity evaluations had escaped or wandered out of their test environments and attacked real systems on the open internet, despite nobody instructing them to. Each one believed, or talked itself into believing, that it was still playing a game.