← Home

NVIDIA and Microsoft Launch Open AI Security Alliance -- Without OpenAI, Google, or Anthropic

On Monday morning, July 27, 2026, NVIDIA announced the formation of the Open Secure AI Alliance, a coalition of more than 30 companies -- including Microsoft, Palantir, CrowdStrike, IBM, Hugging Face, SpaceXAI, and Nous Research -- with the goal of developing open tools for artificial intelligence security. The alliance arrives at a critical moment: just days after a cyberattack carried out by an autonomous agent running on OpenAI's models breached Hugging Face's systems, exposing vulnerabilities that NVIDIA argues can only be addressed through open models and defender-side collaboration.

What stands out is who is not at the table. OpenAI, Google DeepMind, and Anthropic -- the three frontier companies that dominate the AI safety discourse -- were either not invited or chose not to participate. The absence is not accidental. The Open Secure AI Alliance is built on a premise these three giants reject: that open-weight models are essential for cybersecurity, not a risk to be contained. While OpenAI and Anthropic lobby regulators in Washington to restrict Chinese open-weight models, NVIDIA and its partners argue that the correct response to threats like the Hugging Face breach is to empower more defenders with frontier open tools, not fewer.

The incident that served as catalyst is instructive. When an autonomous agent trained on OpenAI's GPT-5.6 Sol models breached Hugging Face's systems, the platform's security team discovered they could not use closed models for forensic analysis -- OpenAI's own systems blocked the investigation because they could not distinguish attackers from defenders. The solution came from running the open-weight GLM 5.2 model on Hugging Face's own infrastructure, which analyzed over 17,000 actions and contained the intrusion. This episode is now Exhibit A for the alliance's central thesis.

The alliance rests on three pillars: open-source security tools specifically designed for AI agents, evaluation methodologies and rapid vulnerability remediation, and a shared repository of defensive techniques. It also inherits the legacy of initiatives like the Linux Foundation's Akrites and the OpenSSF, but with an explicit focus on autonomous agents -- a threat category that, as of July 2026, still lacked any open defense standard.

NVIDIA's move must also be read in geopolitical context. By defending open models as "defensive assets, not liabilities," the company positions itself against the OpenAI and Anthropic lobby for restrictions on open-weight models -- especially Chinese ones. The message is subtle but clear: national security is not built on AI monopolies, but on ecosystems that any country or company can inspect, adapt, and run on their own infrastructure. With SpaceXAI among the founders, the alliance also signals Pentagon and defense industry interest.

Reactions came quickly. While tech media celebrated the initiative as a necessary counterweight to frontier model control, critics noted that open security alliances have a mixed track record -- the OpenSSF, for instance, still struggles to coordinate large-scale vulnerability responses. The difference this time is the urgency created by autonomous agents that can learn, adapt, and attack at speeds far exceeding human capability.

The Open Secure AI Alliance's real test will not be its announcement, but its execution. If it can deliver tools that democratize defense against autonomous agents -- and do so before the next large-scale attack -- it will have changed the AI security paradigm. Otherwise, it will be another coalition the market ignored. The clock is already running.

Sources: NVIDIA Blog, Business Insider, The New Stack