Close Menu
    What's Hot

    What if hunger were treated like a vital sign?

    The FDA Says It Didn’t Apologize to Supplier Linked to Diarrhea Outbreak, Actually

    World Cup 2026 data analysis: Record goals, bigger FIFA ranking gaps, older starting XIs, travel, heat, penalties, substitutes and how Spain won it | Football News

    Facebook X (Twitter) Instagram
    Trending
    • What if hunger were treated like a vital sign?
    • The FDA Says It Didn’t Apologize to Supplier Linked to Diarrhea Outbreak, Actually
    • World Cup 2026 data analysis: Record goals, bigger FIFA ranking gaps, older starting XIs, travel, heat, penalties, substitutes and how Spain won it | Football News
    • Trump Rejected Nearly 6,000 Clemency Applications Amid Hope of Pardon Wave
    • At Least 27 Dead in Guyana After Ferry Capsizes
    • Anthropic’s landmark $1.5B copyright settlement is approved
    • Tanger: The Outlet Discount Landlord That Is Priced At A Premium (NYSE:SKT)
    • Russian-Speaking Hacker Uses Google Gemini CLI to Control Botnet of Eight Dental Clinic PCs
    interluknewsinterluknews
    • Home
    • Business
      • Corporate News
      • Industry Insights
      • Startups & Entrepreneurship
      • Technology & Innovation
    • Economy
      • Economic Policy
      • Financial Analysis
      • Inflation & Interest Rates
      • Trade & Markets
    • Global
      • Conflicts & Security
      • Diplomacy
      • Global Trends
      • International Affairs
    • Lifestyle
      • Fashion
      • Food & Dining
      • Personal Development
      • Travel
    • Opinion
      • Columns
      • Editorials
      • Expert Opinions
      • Reader Voices
    • More
      • Politics
        • Elections
        • Government & Policy
        • International Relations
        • Political Analysis
      • Sports
        • Cricket
        • Football / Soccer
        • International Sports
        • Local Sports
      • Technology
        • Artificial Intelligence
        • Cybersecurity
        • Gadgets & Reviews
        • Tech News
      • South Africa News
    Facebook X (Twitter) Instagram
    interluknewsinterluknews
    Technology & Innovation

    Hugging Face confirms breach affected internal datasets and credentials, urges users to take action

    adminBy adminJuly 20, 2026No Comments3 Mins Read
    Share Facebook Twitter Pinterest Copy Link Telegram LinkedIn Tumblr Email
    Hugging Face confirms breach affected internal datasets and credentials, urges users to take action
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Hugging Face, a platform that hosts AI models and datasets, said its internal datasets and service credentials were compromised in a hack last week. The company disclosed the breach on Friday, but said it was still investigating whether any customer or partner data was stolen during the incident.

    In a blog post, the company said a dataset uploaded to its platform abused a security vulnerability to run malicious code on its servers, allowing the attackers to escalate their permissions and gain broader access to Hugging Face’s internal systems.

    The company said it has revoked and rotated the stolen credentials that were accessed. It urged users to do the same with any keys stored on the platform, and review any suspicious activity on their accounts.

    Hugging Face said it has fixed the vulnerability that was abused during the cyberattack. While it’s common for hackers to try to break into a company’s network using stolen employee credentials, keys, or a weak point in their security perimeter, this incident underscores the challenges that companies like Hugging Face face when hackers try to abuse platforms and tools to access and steal sensitive data from within. 

    Hugging Face blamed the breach on an external AI agent, which executed “many thousands of individual actions across a swarm of short-lived sandboxes, with self-migrating command-and-control staged on public services.”

    The company did not immediately provide evidence for this claim when asked by TechCrunch.

    Hugging Face said its own anomaly detection spotted the attack, and used an AI model to analyze server logs that kept record of the cyberattack. 

    The company said it initially used a frontier AI model from a commercial provider, though it didn’t name a company, but found that the analysis effort was blocked by the provider’s guardrails. Instead, the company used its own local large language model, which it said provided the added benefit of not having to upload sensitive attack logs to an AI company’s servers.

    Security researchers have previously complained that some frontier models, like Anthropic’s Mythos and Fable, are heavily constrained, and prevent defenders from inquiring about almost anything relating to cybersecurity, including for defense and investigations.

    Frontier AI model makers, including Anthropic, have butted heads with the Trump administration over fears and concerns about the ability to use these models for offensive cyberattacks. Anthropic was even forced to withdraw Fable from public use after the U.S. government enforced export controls on the model.

    Hugging Face said it has reported the incident to law enforcement and roped in cybersecurity forensic specialists to investigate the breach and review its security. 

    It’s not clear if Hugging Face had performed a security audit of its systems before it launched. A Hugging Face spokesperson did not respond to a request for comment on Monday.

    When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.

    action affected breach confirms Credentials datasets face Hugging internal urges users
    Follow on Google News Follow on Flipboard
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    Previous ArticleRussian Intelligence Hacks IP Cameras to Spy on Military Logistics Across NATO States and Ukraine
    Next Article Rep. Sara Jacobs’s Bill Aims to Reform U.S. Security Assistance
    admin
    • Website

    Related Posts

    The FDA Says It Didn’t Apologize to Supplier Linked to Diarrhea Outbreak, Actually

    July 21, 2026

    Anthropic’s landmark $1.5B copyright settlement is approved

    July 21, 2026

    The Galaxy Card Is Samsung’s Answer to the Apple Card

    July 20, 2026
    Leave A Reply Cancel Reply

    Demo
    Latest Posts

    What if hunger were treated like a vital sign?

    The FDA Says It Didn’t Apologize to Supplier Linked to Diarrhea Outbreak, Actually

    World Cup 2026 data analysis: Record goals, bigger FIFA ranking gaps, older starting XIs, travel, heat, penalties, substitutes and how Spain won it | Football News

    Trump Rejected Nearly 6,000 Clemency Applications Amid Hope of Pardon Wave

    Latest Posts

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    Advertisement
    Demo

    We are a digital news platform delivering timely, accurate, and insightful coverage of politics, global affairs, business, economy, sports, and more. Our mission is to keep readers informed with reliable news, clear analysis, and stories that truly matter.
    We're social. Connect with us:

    Facebook X (Twitter) Instagram Pinterest YouTube

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.

    Powered by
    ...
    ►
    Necessary cookies enable essential site features like secure log-ins and consent preference adjustments. They do not store personal data.
    None
    ►
    Functional cookies support features like content sharing on social media, collecting feedback, and enabling third-party tools.
    None
    ►
    Analytical cookies track visitor interactions, providing insights on metrics like visitor count, bounce rate, and traffic sources.
    None
    ►
    Advertisement cookies deliver personalized ads based on your previous visits and analyze the effectiveness of ad campaigns.
    None
    ►
    Unclassified cookies are cookies that we are in the process of classifying, together with the providers of individual cookies.
    None
    Powered by