Hugging Face said it was hacked through an autonomous AI agent that abused a malicious dataset to gain access to its production infrastructure and internal credentials. The company contained the incident, rotated secrets, strengthened cluster defenses, and used Z.ai’s GLM 5.2 for forensics after other models blocked analysis of the attack artifacts. #HuggingFace #GLM52
Keypoints
- Hugging Face detected unauthorized access to internal datasets and service credentials.
- The attack began through code execution flaws in a dataset loader and template injection.
- The intruder escalated to node-level access and moved across internal clusters.
- Hugging Face rebuilt compromised nodes and rotated affected credentials and tokens.
- Western frontier models blocked forensic analysis, so GLM 5.2 was used instead.
Read More: https://thehackernews.com/2026/07/worlds-largest-ai-model-repository.html