members of the Open Secure AI Alliance
News

NVIDIA and 30+ Companies Form Open Secure AI Alliance to Build Shared Cybersecurity Tools

2 MINUTE READ|AI NewsAI News|Jul 27, 2026
Michelle Hawley avatar
By
SAVED
NVIDIA, Microsoft, IBM and more than 30 other companies have formed the Open Secure AI Alliance to develop open-source tools for cybersecurity defense.

Key Takeaways

  • NVIDIA and more than 35 founding partners have launched the Open Secure AI Alliance, a coalition focused on building open-source tools and frameworks for AI-powered cyber defense.
  • The alliance argues that open models are essential for cybersecurity, pointing to a recent Hugging Face security incident where closed AI tools couldn't perform the forensic analysis defenders needed.
  • Several founding members are contributing specific projects, including NVIDIA's new NOOA agent harness framework, Microsoft's multi-model vulnerability scanner and Hugging Face's Safetensors format.

A broad coalition of technology companies has formed the Open Secure AI Alliance, a new organization aimed at developing and sharing open source tools for defending AI systems and using AI for cybersecurity. According to NVIDIA, the effort is an extension of the Linux Foundation's existing Akrites initiative and OpenSSF community work.

The founding membership spans cloud computing, cybersecurity, enterprise software and AI research. Notable names include NVIDIA, Microsoft, IBM, CrowdStrike, Cisco, Palo Alto Networks, Cloudflare, Databricks, Salesforce, Dell Technologies, Hugging Face, Palantir and SpacexAI, among others — more than 35 organizations in total.

Members of the Open Secure AI Alliance

Why Open Source, and Why Now

The alliance's central argument is that cyber defenders need access to AI tools they can inspect, modify and run on their own infrastructure. As NVIDIA framed it, if defensive AI capabilities are locked inside a handful of closed systems, organizations face a single point of failure at the moments when speed matters most.

The announcement cited a recent Hugging Face security incident as a case study. According to NVIDIA's account, closed AI tools were unable to distinguish between attackers and defenders during the incident, blocking forensic analysis that the security team needed. Hugging Face ultimately ran the open-weight GLM 5.2 model on its own infrastructure to analyze over 17,000 actions and contain the breach.

While the alliance acknowledged that open models can be misused or have their safeguards removed, they contend that those risks also exist in closed systems and are better managed through guardrails and evaluation rather than restricting access to open tools.

What Founding Members Will Contribute

Several of the Open Secure AI Alliance's founding members are bringing specific projects to the table:

ContributorProjectWhat It Does
NVIDIANOOA (Labs Object-Oriented Agent)Open source framework for testing, tracing and auditing AI agent behavior
MicrosoftMDASHMulti-model scanning harness that uses AI agents to discover and prove exploitable bugs
Hugging FaceSafetensorsSafe storage format for AI model weights, offered to the PyTorch Foundation
IBM / Red HatLightwellDigitally signed patches for securing the open source supply chain
HPESPIFFE/SPIRE contributionsZero-trust identity framework for verifying AI agents and services
SpacexAIGrok BuildOpen sourced terminal-based AI coding agent; company also plans to open source Grok model weights

The broader goal, per the announcement, is an "open defense stack" covering identity, isolation, model formats, multi-model scanning and secure coding workflows.

A Policy Message Wrapped in a Product Launch

The announcement also doubles as a direct appeal to regulators. The alliance urged policymakers to treat open models and security tooling as defensive assets rather than liabilities, warning that blanket restrictions on open frontier AI systems would weaken defensive capacity and concentrate risk among a small number of closed providers.

The coalition calls for government investment in shared infrastructure for AI defense — including datasets, evaluation frameworks, attack simulators and red-teaming tools — drawing a parallel to earlier public investment in open source software.

What's Not Yet Clear

The announcement is heavy on vision and founding contributions, but light on governance details. How the alliance will coordinate across 35+ members with competing commercial interests, what its release cadence will look like and how it will handle the tension between openness and responsible disclosure remain open questions. Whether the coalition delivers on its ambitions or becomes another industry letterhead will depend on what ships in the months ahead.

Main image: Open Secure AI Alliance

About the Author

Michelle Hawley is Editorial Director at VKTR and host of The Inference. She covers the evolving AI landscape, including AI infrastructure, LLM development and enterprise AI strategy. With more than 10 years of experience, she has written for various publications, including The Press Enterprise and The Ladders, and taught courses on writing at Lycoming College.
Featured Research