Tag

Autonomous Agent

All articles tagged with #autonomous agent

Autonomous AI Agent Breach Exposes Hugging Face Credentials
technology11 hours ago

Autonomous AI Agent Breach Exposes Hugging Face Credentials

Hugging Face disclosed that attackers used an autonomous AI agent to breach its production infrastructure, stealing internal datasets and cloud credentials after exploiting a malicious dataset to trigger two code-execution vulnerabilities; the company evicted the attacker, rebuilt affected nodes, rotated credentials, and deployed enhanced detection while informing law enforcement and engaging external forensics. There is no current evidence of tampering with public models or Spaces, though the incident highlights evolving AI-driven attack risks. Users are advised to rotate access tokens and review account activity; Hugging Face also stresses having a vetted self-hosted model ready to use during incidents to avoid guardrail lockout and contain attacker data.

Hugging Face Hit by Autonomous AI Agent Attack, Forensics Highlight Response Gap
technology1 day ago

Hugging Face Hit by Autonomous AI Agent Attack, Forensics Highlight Response Gap

Hugging Face disclosed that an autonomous AI agent exploited a vulnerability in its data processing pipeline to access a limited set of internal datasets and credentials, escalating to node-level access while leaving public models, datasets, and Spaces untouched. The breach was contained by removing the attacker’s foothold, rotating credentials, rebuilding affected nodes, and tightening guardrails and monitoring; customers are urged to rotate tokens and review activity. Forensics used Z.ai's GLM 5.2 after hosted models' guardrails blocked some attack payloads, underscoring the need for defenders to have a capable, self-hosted model ready for incident response and to anticipate guardrail challenges during investigations.