Perturb AI Launches Hacker Network to Proactively Test AI Models

Perturb AI’s network of incentivized hackers launches to attack AI models before criminals do
šŸ•§ 4 min

PerturbĀ (opens in new tab)has launched a decentralized adversarial robustness network on Bittensor that continuously stress-tests production AI models and pays a global network of researchers to find vulnerabilities that in-house red teams may miss.

Five weeks after an experimental OpenAI model escaped its test environment and breached Hugging Face’s production infrastructure, and days after OpenAI answered with tighter internal monitoring and stronger network isolation, Perturb is launching the network with a blunt premise: the only way to keep pace with AI capability is to attack AI models constantly, at scale, before someone else does.

Perturb is a decentralized adversarial robustness network built on Bittensor. A global subnet of incentivized miners continuously stress-tests AI models with black-box, white-box, and transfer attacks, returning three things to model owners: a robustness score, a vulnerability heatmap showing exactly where the model breaks, and hardening datasets ready to use for retraining.

Also Read:Ā IT Tech Pulse Exclusive Interview with Ken Claffey Chief Executive Officer and President of VDURA

OpenAI’s measures to date are internal controls, and its full postmortem of the incident is still to come. Perturb’s premise is that internal controls are the layer the incident defeated: a model’s security is unknown until someone outside the building has tried to break it.

The economics invert the traditional security model. Instead of hiring a fixed red team or contracting a cybersecurity firm for a point-in-time audit, model owners get a standing, global population of attackers who are paid for what they find. Perturb positions the service as faster, more comprehensive, and more cost-effective than conventional security vendors, whose engagements can take weeks and reflect only the attack ideas of a single team.

All findings are handled under responsible disclosure: vulnerabilities are reported privately to the model’s owner, and exploit details are not published.

Also Read:Ā IT Tech Pulse Exclusive Interview with Michael Cucchi Chief Product and Marketing Officer at Hydrolix

ā€œEvery model in production today has vulnerabilities its builders have never seen, because no in-house team can think of everything,ā€ said Koyuki Nakamori, co-founder and CEO of Perturb. ā€œThe recent incidents are not anomalies. They are what it looks like when capability outruns testing. We built a network where thousands of incentivized attackers probe your model continuously, and every vulnerability they find is one a bad actor can’t use.ā€

Write to us [⁠wasim.a@demandmediaagency.com] to learn more about our exclusive editorial packages and programmes.

  • GlobeNewswire, a trusted channel for companies announcing financial results, regulatory filings, and market-moving updates. Its platform bridges organizations with investors, journalists, and audiences worldwide, ensuring corporate news is delivered with both credibility and reach.

Recommended Reads :