DOUBT. Sandboxing is a mature software field and if they were doing anything close to proper sandboxing, the developers of docker or qemu or vmware, or whatever they are using, would be freaking the fuck out. OpenAI wouldn't be reaching out to huggingface to apologize, they would immediately, and (hopefully) secretly and responsibly report the bug(s) upstream.
OpenAI and Anthropic shouldn't be allowed to hack other companies illegally, and it's clear to me that's exactly what's happening here: intentional malpractice designed to scare investors.
Modern autonomous agents differ substantially from traditional language models. Rather than simply generating text, they can plan multi-stage tasks, execute shell commands, browse websites, write and execute code, invoke APIs, maintain persistent memory, and make independent decisions based on previous observations.
You know who else can do all that? ME! On a $5 vps from digitalocean. The fact that I can't hack digital ocean or aws, and that nobody can except in the worst zero day cases, is proof that this shit is simple, and has existed for more than a decade.