BREAKING
Hugging Face confirms AI-driven breach
How the agentic attack unfolded
1
Malicious datasets
↓
2
Code on workers
↓
3
Node access
↓
4
Harvest credentials
↓
5
Lateral movement
0
+
events logged
0
weekend
0
exploited paths
Defender guardrails vs open-weight AI
Frontier models
blocked
●
Refused the task
●
Safety guardrails stalled response
GLM 5.2
self-hosted
●
Analyzed 17,000+ events
●
Ran on own infrastructure
What Hugging Face fixed
1
Patch vuln paths
↓
2
Rebuild nodes
↓
3
Rotate credentials
↓
4
Add admission controls
↓
5
Faster detection
Users urged to rotate their keys
AI NEWS BLITZ
Hugging Face says an autonomous AI agent breached part of its production infrastructure.