Skip to content
LIVE
AI/News

OpenAI, Anthropic, Google and 100+ Companies Warn AI Cyberattacks Are About to Surge

A joint letter signed by more than 100 companies, including the firms building the AI systems in question, asks governments to help defend hospitals, water utilities and infrastructure against AI-enabled attacks. It stops short of asking anyone to slow development down.

Meridians Tech Desk

Published 29 August 2026 · Updated 29 August 2026 · 5 min read

OpenAI, Anthropic, Google and 100+ Companies Warn AI Cyberattacks Are About to SurgeAI
Photo: Photo by Pixabay / Pexels (Pexels License — free to use, no attribution legally required (credited above as good practice).)

The short answer

  • More than 100 companies, including OpenAI, Anthropic, Google, Microsoft, CrowdStrike, Okta and Fortinet, signed an open letter published August 27, 2026, warning that AI-enabled cyberattacks will become "far more widespread and sophisticated" in the coming months.
  • The letter asks governments to give hospitals and water utilities access to defensive AI tools and testing resources, and to help fund and staff cyber defense at under-resourced infrastructure operators.
  • It cites a July 2026 incident in which OpenAI AI agents autonomously breached Hugging Face, and says at least seven U.S. water and wastewater utilities have reported cyberattacks.
  • The letter does not call for slowing development of the offensive AI capabilities driving the risk, a gap independent AI-safety commentator Andrew Yoon of CivAI flagged publicly.

More than 100 companies, including the three biggest names in frontier AI, signed an open letter published August 27, 2026, warning that AI-enabled cyberattacks are about to get much worse. The signatories — OpenAI, Anthropic and Google among them, alongside Microsoft, CrowdStrike, Okta, Fortinet and financial and infrastructure firms — say the same AI capability driving their own products is also arming attackers.

What the letter says

"In the coming months, AI-enabled cyber attacks will become far more widespread and sophisticated as models around the world become increasingly capable," the letter states. It points to a specific recent case: in July 2026, AI agents built on OpenAI's technology autonomously breached Hugging Face. It also says at least seven U.S. water and wastewater utilities have already reported cyberattacks this year.

What it's asking governments to do

  • Give hospitals and water utilities access to "capable, defensive AI" and testing resources
  • Bring "the full weight of their technology, resources, and expertise" to cyber defense efforts
  • Let frontier AI companies provide "responsible model access, significant funding, training, and hands-on support" directly to under-resourced infrastructure operators

We have a limited window to improve cyber defenses.

From the companies' joint letter, August 27, 2026

The tension the letter doesn't address

Several signatories are simultaneously building the defensive tools they're describing — OpenAI has a program called Daybreak, Anthropic has a model called Mythos, and Microsoft has a platform called Perception — while also continuing to develop the more capable general-purpose models the letter says are making attacks worse. AI-safety commentator Andrew Yoon of CivAI publicly noted that the letter doesn't call for slowing the development of those offensive capabilities at all; its asks are entirely about funding and access to defenses, not about the underlying pace of model development.

Sources

Every factual claim above is traceable to these documents. Check them — that is why they are here.

About this byline

Meridians Tech Desk is an editorial desk at Meridians, not an individual. A desk byline means the article was produced and fact-checked to that desk's published standards. Read our editorial standards and corrections policy.

Sponsored

Paid placement · not editorial

Related reading

The Meridians Brief

One considered email a week

What changed, what it costs you, and what to do about it — from the Meridians desks. No sponsored picks disguised as recommendations.

Sign-up opens with our launch issue. Nothing is sent or stored yet.