MALAYSIA, 5 AUGUST 2026 – Open source software has long been a critical pillar of the global economy, underpinning cloud computing, financial services, manufacturing, telecommunications, government and internet services by making technology accessible and observable to communities of experts. Now, cybersecurity leaders are betting that the same principle can secure the age of AI.
The Open Secure AI Alliance, building on the leadership of the Linux Foundation’s Akrites initiative and OpenSSF community work, aims to remediate and disclose vulnerabilities using open technologies. The initiative frames a central choice facing the United States and its partners in AI security: whether the defenses protecting critical infrastructure will sit inside a few opaque systems, or be built on open models, harnesses and tools that any defender can study, adapt and deploy.
Proponents argue the world needs both closed and open models, but that for cybersecurity specifically, open models and open harnesses are essential because they democratize defensive capabilities, increase transparency for defenders, and complement frontier closed models with customizable, localized controls. Open source, they contend, enables massively distributed, community-driven defense with no single point of failure — though open models, like any powerful technology, can be misused, including through attempts to weaken safeguards or repurpose capabilities for cyberattacks.
A recent security incident at Hugging Face illustrated the stakes. When closed AI tools were unable to distinguish attackers from defenders and blocked essential forensic analysis, Hugging Face ran the open-weight GLM 5.2 model on its own infrastructure to analyze more than 17,000 actions and contain the intrusion. The episode underscored that when defenders cannot inspect, adapt and run advanced AI on their own infrastructure, their ability to respond is constrained precisely when speed matters most.
More than 100 organizations across cloud computing, cybersecurity, enterprise software, open source foundations and AI research have signed on as inaugural partners, including NVIDIA, Adobe, Amazon, Cisco, Cloudflare, CrowdStrike, Dell Technologies, Docker, GitHub, Hugging Face, IBM, Intel, Microsoft, Okta, Palo Alto Networks, Red Hat, Salesforce, SAP, Snowflake, Visa and Zscaler, among many others.
The Alliance acknowledges that some critics argue open models are inherently less safe because they can be misused for cyberattacks or modified to remove guardrails. However, it contends those risks do not disappear in closed systems, and that keeping model weights closed does not prevent determined attackers from seeking or exploiting powerful AI. The group’s position is that openness should be paired with strong safeguards, clear rules against malicious misuse, rigorous evaluation and rapid remediation.
Beyond individual models, the Alliance emphasizes that real AI safety depends on the full agent stack — identity, permissions, harnesses, guardrails, logs and evaluation. NVIDIA is contributing open models, model weights, data and new agent harness research, including its newly released NVIDIA Labs Object-Oriented Agent (NOOA) project on GitHub, designed to make agent behavior easier to test, trace, audit and govern.
Other contributions from Alliance members include HPE’s work on the SPIFFE/SPIRE zero-trust identity framework, Hugging Face’s Safetensors format for securely storing AI model weights now offered to the PyTorch Foundation, IBM and Red Hat’s Lightwell supply chain security tool, Microsoft’s MDASH multi-model agentic scanning harness, and SpaceXAI’s open-sourced Grok Build coding agent, with plans to open source the Grok model line’s weights.
The Alliance is also calling on policymakers and regulators to recognize open models, harnesses and security tooling as defensive assets rather than liabilities in AI and cybersecurity policy, warning that blanket restrictions on open frontier AI systems could weaken defensive capacity and concentrate power and vulnerability among a few closed providers. It is urging companies and governments to invest in shared open infrastructure for AI defense, including datasets, evaluation frameworks, attack simulators and red-teaming tools.
