Ptechhub
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs
No Result
View All Result
PtechHub
No Result
View All Result

World’s Largest AI Model Repository Hugging Face Breached by Autonomous AI Agent

The Hacker News by The Hacker News
July 20, 2026
Home Cybersecurity
Share on FacebookShare on Twitter


Ravie LakshmananJul 20, 2026AI Security / Vulnerability

In an ironic twist, open-source artificial intelligence (AI) platform Hugging Face revealed that it was the victim of a hack perpetrated by an autonomous AI agent system.

The company said it detected and responded to the incident targeting its production infrastructure earlier last week.

“We identified unauthorized access to a limited set of internal datasets and to several credentials used by our services,” the company said in a statement.

While an investigation into the intrusion remains ongoing, Hugging Face said it has found no evidence that the AI agent tampered with public, user-facing models, datasets, or Spaces, and its own software supply chain.

The starting point of the attack was the data processing pipeline itself, with a malicious dataset abusing two code execution paths, viz., in its remote code dataset loader and a template injection in a dataset configuration, to run code on a processing worker.

With that access, the threat actor is said to have escalated to node-level access, collected cloud and cluster credentials, and moved laterally into several internal clusters over a weekend.

The exact large language model (LLM) used to pull off the attack is unclear, but the campaign was executed by an autonomous agent framework performing “many thousands of individual actions across a swarm of short-lived sandboxes, with self-migrating command-and-control staged on public services.”

Hugging Face said it has since addressed the root cause of the issue, precisely the code execution pathways used for initial access. It also carried out the following remediation steps –

  • Removed the attacker’s foothold across the affected clusters and rebuilt the compromised nodes
  • Revoked and rotated the affected credentials and tokens, and a broader rotation of secrets was undertaken as a precautionary measure.
  • Deployed additional guardrails and stricter admission controls on its clusters
  • Improved detection and alerting to ensure responders are notified within minutes, 24×7

As a further safeguard, Hugging Face is urging customers to rotate any access tokens and review recent activity on their accounts.

The company also said it turned to Z.ai’s GLM 5.2, a Chinese open-weight model, to conduct the forensic analysis after Western frontier models refused requests containing real attack commands, exploit payloads, and command-and-control (C2) artifacts because their safety guardrails were triggered and their inability to differentiate between an attacker and a legitimate incident response effort.

“This experience points to a gap worth planning for,” the New York-headquartered company said. “We do not know which model powered the attacker’s agents, whether a jailbroken hosted model or an unrestricted open-weight one; either way, the attacker was bound by no usage policy, while our own forensic work was blocked by the guardrails of the hosted models we first tried.”

“The practical lesson for defenders: have a capable model you can run on your own infrastructure vetted and ready before an incident, both to avoid guardrail lockout and to keep attacker data and credentials from leaving your environment.”



Source link

The Hacker News

The Hacker News

Next Post
Share buybacks in Ericsson during the period July 13 – July 17, 2026

Share buybacks in Ericsson during the period July 13 - July 17, 2026

Recommended.

Apple Will Pay 0 Million to Settle Lawsuit Over Siri’s AI Features

Apple Will Pay $250 Million to Settle Lawsuit Over Siri’s AI Features

May 6, 2026
Info-Tech Research Group Launches LEVEL-UP Series: New Regional Training Events to Accelerate IT Skills in AI, Cybersecurity, and Leadership

Info-Tech Research Group Launches LEVEL-UP Series: New Regional Training Events to Accelerate IT Skills in AI, Cybersecurity, and Leadership

October 6, 2025

Trending.

Cloud Market Share Q1 2026: AWS, Microsoft, Google Battling In AI Era

Cloud Market Share Q1 2026: AWS, Microsoft, Google Battling In AI Era

May 4, 2026
Anaconda Extends AI-Native Application Development With Acquisition

Anaconda Extends AI-Native Application Development With Acquisition

May 1, 2026
AWS Vs. Google Cloud Vs. Microsoft Azure Q1 Earnings Face-Off

AWS Vs. Google Cloud Vs. Microsoft Azure Q1 Earnings Face-Off

May 1, 2026
This Scammer Used an AI-Generated MAGA Girl to Grift ‘Super Dumb’ Men

This Scammer Used an AI-Generated MAGA Girl to Grift ‘Super Dumb’ Men

April 21, 2026
AT&T Vs. Verizon: How The Country’s Biggest Carriers Fared In Q4 2025

AT&T Vs. Verizon: How The Country’s Biggest Carriers Fared In Q4 2025

January 30, 2026

PTechHub

A tech news platform delivering fresh perspectives, critical insights, and in-depth reporting — beyond the buzz. We cover innovation, policy, and digital culture with clarity, independence, and a sharp editorial edge.

Follow Us

Industries

  • AI & ML
  • Cybersecurity
  • Enterprise IT
  • Finance
  • Telco

Navigation

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Subscribe to Our Newsletter

  • About
  • Advertise
  • Privacy & Policy
  • Contact

Copyright © 2025 | Powered By Porpholio

No Result
View All Result
  • News
  • Industries
    • Enterprise IT
    • AI & ML
    • Cybersecurity
    • Finance
    • Telco
  • Brand Hub
    • Lifesight
  • Blogs

Copyright © 2025 | Powered By Porpholio