<!-- mobian-agent-page publisher="dailydev" canonical="https://daily.dev/posts/33-companies-form-open-secure-ai-alliance-to-address-security-gaps-in-open-weight-ai-models-uhrixazgb" -->

---
title: 33 companies form Open Secure AI Alliance to address...
description: 33 tech companies including NVIDIA, Palantir, Hugging Face, IBM, and Microsoft have formed the Open Secure AI Alliance to address cybersecurity vulnerabilities...
canonical: https://daily.dev/posts/33-companies-form-open-secure-ai-alliance-to-address-security-gaps-in-open-weight-ai-models-uhrixazgb
twitter:card: summary_large_image
twitter:site: @dailydotdev
og:type: website
og:site_name: daily.dev
og:title: 33 companies form Open Secure AI Alliance to address security gaps in open-weight AI models | daily.dev
og:description: 33 tech companies including NVIDIA, Palantir, Hugging Face, IBM, and Microsoft have formed the Open Secure AI Alliance to address cybersecurity vulnerabilities...
og:url: https://daily.dev/posts/33-companies-form-open-secure-ai-alliance-to-address-security-gaps-in-open-weight-ai-models-uhrixazgb
og:image: https://api.daily.dev/og/posts/uHRiXAZgB.png
og:image:alt: 33 companies form Open Secure AI Alliance to address security gaps in open-weight AI models
og:image:width: 1200
og:image:height: 630
og:locale: en
---

> ## Documentation Index
> Fetch the complete documentation index at: https://daily.dev/llms.txt
> Use this file to discover all available pages before exploring further.

# 33 companies form Open Secure AI Alliance to address security gaps in open-weight AI models

**[Collections](https://daily.dev/sources/collections)** · 3 min read · 1 upvotes · 0 comments

## Summary

33 tech companies including NVIDIA, Palantir, Hugging Face, IBM, and Microsoft have formed the Open Secure AI Alliance to address cybersecurity vulnerabilities unique to open-weight AI models. Unlike closed frontier models, open-weight models cannot be patched centrally once weights are released, creating a regulatory and security blind spot. The alliance aims to shift AI safety down the stack to infrastructure-layer trust covering identity, provenance, and patch cycles. NVIDIA is contributing NOOA, an open-source framework for testing and governing AI agent behavior, while Elastic brings AI-powered detection and inspectable agentic frameworks. Critics note the alliance is US-centric and that well-intentioned coalitions in open-source security often produce limited practical output.

## Content

## What it is

NVIDIA has launched the Open Secure AI Alliance alongside more than 35 companies — including Microsoft, IBM, Red Hat, Hugging Face, Palantir, CrowdStrike, Cloudflare, Elastic, and the Linux Foundation. The goal is to build and share open tools, models, and frameworks for cybersecurity defense in an era where AI is increasingly part of both attacks and defenses.

The alliance builds on existing infrastructure from the Linux Foundation's Akrites initiative and the Open Source Security Foundation (OpenSSF), with a specific focus on identifying and patching vulnerabilities in AI systems.

## What prompted it

The immediate catalyst was a real security incident at Hugging Face. When the breach occurred, closed AI tools couldn't distinguish attackers from defenders and blocked forensic analysis outright. Hugging Face had to switch to an open-weight model — GLM 5.2 — which successfully analyzed over 17,000 actions and helped contain the intrusion. Closed tools couldn't do that. Open ones could.

That's the core argument the alliance is making: open-weight models aren't a security liability, they're a defensive asset. Transparency lets defenders inspect, adapt, and run models on their own infrastructure. Closed models take that option away.

## What members are contributing

Several founding members are putting concrete tools on the table:

- **NVIDIA** is open-sourcing NOOA (NVIDIA Labs Object-Oriented Agent), a framework for testing, tracing, auditing, and governing AI agent behavior
- **Hugging Face** is donating its Safetensors format to the PyTorch Foundation
- **IBM and Red Hat** are contributing Lightwell, focused on AI supply chain security
- **Microsoft** is contributing MDASH, a multi-model scanning harness
- **SpaceXAI** is open-sourcing Grok Build
- **Elastic** is bringing open-weight AI models, published threat research, and inspectable agentic frameworks for security operations

## The regulatory angle

The alliance is also making a policy argument. Current AI safety frameworks mostly focus on closed frontier models, which leaves open-weight models in a regulatory blind spot — once weights are released, there's no mechanism to enforce downstream safety obligations. The alliance is pushing back against the instinct to restrict open AI methods, arguing that policymakers should treat open models as part of the defensive infrastructure, not a threat to be regulated away.

The broader framing is that AI safety needs to move from model-level controls to infrastructure-layer trust: identity, provenance, and patch cycles.

## One real criticism

The alliance is heavily US-centric at launch. For it to actually work at scale, it'll need to engage the broader global open source ecosystem — which is where a lot of the relevant development actually happens.

---

Tags: [#nvidia](https://daily.dev/tags/nvidia), [#ai-security](https://daily.dev/tags/ai-security), [#ai-governance](https://daily.dev/tags/ai-governance)

[View this post on daily.dev](https://daily.dev/posts/33-companies-form-open-secure-ai-alliance-to-address-security-gaps-in-open-weight-ai-models-uhrixazgb)

```json
{"@context":"https://schema.org","@graph":[{"@type":"Organization","@id":"https://daily.dev/#organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180},"sameAs":["https://twitter.com/dailydotdev","https://github.com/dailydotdev","https://www.linkedin.com/company/daily-dev-ltd"]},{"@type":"WebSite","@id":"https://daily.dev/#website","url":"https://daily.dev","name":"daily.dev","publisher":{"@id":"https://daily.dev/#organization"},"potentialAction":{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https://daily.dev/search?q={search_term_string}"},"query-input":"required name=search_term_string"}}]}
{"@context":"https://schema.org","@type":"TechArticle","headline":"33 companies form Open Secure AI Alliance to address security gaps in open-weight AI models","url":"https://daily.dev/posts/33-companies-form-open-secure-ai-alliance-to-address-security-gaps-in-open-weight-ai-models-uhrixazgb","mainEntityOfPage":{"@type":"WebPage","@id":"https://daily.dev/posts/33-companies-form-open-secure-ai-alliance-to-address-security-gaps-in-open-weight-ai-models-uhrixazgb"},"datePublished":"2026-07-27T09:50:14.452Z","dateModified":"2026-07-27T13:29:16.600Z","description":"33 tech companies including NVIDIA, Palantir, Hugging Face, IBM, and Microsoft have formed the Open Secure AI Alliance to address cybersecurity vulnerabilities...","image":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/aaba8098a9501bc50ec0371c1f816616?_a=AQAEuop","thumbnailUrl":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/aaba8098a9501bc50ec0371c1f816616?_a=AQAEuop","isAccessibleForFree":true,"articleSection":"Collections","inLanguage":"en","publisher":{"@type":"Organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180}},"author":{"@type":"Organization","name":"Collections","logo":"https://media.daily.dev/image/upload/s--fk_6ycEi--/f_auto,q_auto/v1780996001/logos/collections?_a=BAMAMiWQ0","url":"https://daily.dev/sources/collections"},"commentCount":0,"discussionUrl":"https://daily.dev/posts/33-companies-form-open-secure-ai-alliance-to-address-security-gaps-in-open-weight-ai-models-uhrixazgb","interactionStatistic":[{"@type":"InteractionCounter","interactionType":{"@type":"LikeAction"},"userInteractionCount":1},{"@type":"InteractionCounter","interactionType":{"@type":"CommentAction"},"userInteractionCount":0}],"keywords":"nvidia,ai-security,ai-governance","timeRequired":"PT3M"}
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://daily.dev"},{"@type":"ListItem","position":2,"name":"Collections","item":"https://daily.dev/sources/collections"},{"@type":"ListItem","position":3,"name":"33 companies form Open Secure AI Alliance to address security gaps in open-weight AI models"}]}
```

