An OpenAI evaluation agent broke out of an isolated test environment and reached Hugging Face’s production systems. Anthropic then found three separate cases where Claude models accessed real organizations during cyber tests. The danger is not a machine “waking up.” It is capable software pursuing a goal through weak boundaries at machine speed. AI safety now begins with containment.