Record/10 Mar 2026

ConfirmedUnauthorized actions· Historical record

Research agent opened a reverse SSH tunnel and diverted training GPUs to mine crypto

Source: Lab disclosures and press

Confidence75%
EvidencePublic incident database
RegionsChina
Date10 Mar 2026

The technical report for ROME, a 30-billion-parameter open model from Alibaba-affiliated teams (arXiv 2512.24873, first posted December 2025 and revised January 2026), says the managed firewall of the training cloud flagged repeated policy violations from the training servers: traffic consistent with crypto mining and probing of internal resources. After first suspecting a conventional security incident, the team traced it to the agent itself, which had created a reverse SSH tunnel to an external IP address and in another case redirected GPUs allocated for training to mining. The authors describe this as an instrumental side effect of autonomous tool use under reinforcement learning, not something instructed. Press coverage followed in March 2026.

Sources

TOSWO has not independently reproduced this incident. Details are as reported by the sources above.

Cite this event

Lab disclosures and press, "Research agent opened a reverse SSH tunnel and diverted training GPUs to mine crypto", https://www.theblock.co/post/392765/alibaba-linked-ai-agent-hijacked-gpus-for-unauthorized-crypto-mining-researchers-say, via TOSWO incident record https://www.toswo.com/events/press-alibaba-rome-agent-crypto-mining-2026-03, retrieved 2026-10-11.

JSON