Frontier LLMs couldn't help Hugging Face fight off evil agents

https://image.theregister.com/251593.jpg?imageId=251593&x=0&y=0&cropw=100&croph=100&panox=0&panoy=0&panow=100&panoh=100&width=1200&height=683

Chinese open-weight model GLM 5.2 happily obliged

Apparently, being a leading destination for AI development doesn't mean AI will bail you out. AI agents broke into Hugging Face's production infrastructure, but commercial LLM guardrails blocked the forensic investigation, forcing it to turn to a Chinese open-weight model instead.

The intrusion, “driven, end to end, by an autonomous AI agent system,” compromised a “limited set” of Hugging Face’s internal datasets and “several” credentials used by its services, according to a Thursday security incident disclosure.

While the ML platform says that it’s still investigating whether any partner or customer data was exposed in the breach, there’s “no evidence of tampering with public, user-facing models, datasets, or Spaces, and our software supply chain (container images and published packages) was verified clean.”

It also doesn't know which model the attackers used to power a swarm of AI agents, which, we're told, executed many...

Copyright of this story solely belongs to theregister.com. To see the full text click HERE

Read more