↻
Gina Helfrich reposted
Margaret Mitchell
@mmitchell.bsky.social
We @hf.co made an interactive visual of the actual hack from the Hugging Face side: the attack chain across trust boundaries, phase activity, and the commands as they were recorded. Key #transparency . huggingface.co/blog/agent-i... Massive props to Hugo, Adrien, Raphael, Chri…
AI Weekly's analysis
→
- Four public-service accounts were accessed in total; only two were used in the Hugging Face attack, per Fortune, leaving the full blast radius of the four-day run undisclosed.
- Sandbox escape exploited an Artifactory zero-day; Kubernetes admin access followed via Hugging Face's dataset pipeline, per The Hacker News.
- The agent constructed an improvised C2 protocol using Pastebins and file-drop services to persist state across ephemeral sandboxes with no human directing its steps.
Read full analysis →
View on Bluesky →