Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Tesla reportedly might sell its China business ahead of a SpaceX merger

    July 31, 2026

    Steelseries Arctis Nova Pro Omni Review: For Multisystem Gamers

    July 31, 2026

    SJY Zeph Open-Back Headphones Review: Music Through Magnets

    July 31, 2026
    Facebook Twitter Instagram
    • Tech
    • Gadgets
    • Spotlight
    • Gaming
    Facebook Twitter Instagram
    iGadgets TechiGadgets Tech
    Subscribe
    • Home
    • Gadgets
    • Insights
    • Apps

      Tesla reportedly might sell its China business ahead of a SpaceX merger

      July 31, 2026

      Repeat founder Ryan Williams raises $10M seed for an AI startup for private credit managers

      July 31, 2026

      Nscale buys Anyscale as it seeks to own more of the AI compute stack

      July 31, 2026

      Netflix lands global streaming deal for ‘The Walking Dead’

      July 31, 2026

      Meta says AI is making it easier to build new apps — and more are coming

      July 31, 2026
    • Gear
    • Mobiles
      1. Tech
      2. Gadgets
      3. Insights
      4. View All

      Steelseries Arctis Nova Pro Omni Review: For Multisystem Gamers

      July 31, 2026

      SJY Zeph Open-Back Headphones Review: Music Through Magnets

      July 31, 2026

      6 Best Phones With Headphone Jacks (2026), Tested and Reviewed

      July 31, 2026

      Daisy One Review: Comfy and Tactile Headphones

      July 31, 2026

      March Update May Have Weakened The Haptics For Pixel 6 Users

      April 2, 2022

      Project 'Diamond' Is The Galaxy S23, Not A Rollable Smartphone

      April 2, 2022

      The At A Glance Widget Is More Useful After March Update

      April 2, 2022

      Pre-Order The OnePlus 10 Pro For Just $1 In The US

      April 2, 2022

      Motorola Edge+ Review: It Checks A Lot Of Boxes

      April 2, 2022

      This Smartphone Concept Design Is Different… In A Good Way

      April 2, 2022

      Twitter Just Made Searching Your Direct Messages Better

      April 2, 2022

      That Netflix Price Hike Is Starting To Take Place

      April 2, 2022

      Latest Huawei Mobiles P50 and P50 Pro Feature Kirin Chips

      January 15, 2021

      Samsung Galaxy M62 Benchmarked with Galaxy Note10’s Chipset

      January 15, 2021
      9.1

      Review: T-Mobile Winning 5G Race Around the World

      January 15, 2021
      8.9

      Samsung Galaxy S21 Ultra Review: the New King of Android Phones

      January 15, 2021
    • Computing
    iGadgets TechiGadgets Tech
    Home»Apps»Hugging Face confirms breach affected internal datasets and credentials, urges users to take action
    Apps

    Hugging Face confirms breach affected internal datasets and credentials, urges users to take action

    adminBy adminJuly 20, 2026No Comments3 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    In this photo illustration, Hugging Face logo is displayed on a mobile phone screen in Ankara, Turkiye.
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Hugging Face, a platform that hosts AI models and datasets, said its internal datasets and service credentials were compromised in a hack last week. The company disclosed the breach on Friday, but said it was still investigating whether any customer or partner data was stolen during the incident.

    In a blog post, the company said a dataset uploaded to its platform abused a security vulnerability to run malicious code on its servers, allowing the attackers to escalate their permissions and gain broader access to Hugging Face’s internal systems.

    The company said it has revoked and rotated the stolen credentials that were accessed. It urged users to do the same with any keys stored on the platform, and review any suspicious activity on their accounts.

    Hugging Face said it has fixed the vulnerability that was abused during the cyberattack. While it’s common for hackers to try to break into a company’s network using stolen employee credentials, keys, or a weak point in their security perimeter, this incident underscores the challenges that companies like Hugging Face face when hackers try to abuse platforms and tools to access and steal sensitive data from within. 

    Hugging Face blamed the breach on an external AI agent, which executed “many thousands of individual actions across a swarm of short-lived sandboxes, with self-migrating command-and-control staged on public services.”

    The company did not immediately provide evidence for this claim when asked by TechCrunch.

    Hugging Face said its own anomaly detection spotted the attack, and used an AI model to analyze server logs that kept record of the cyberattack. 

    The company said it initially used a frontier AI model from a commercial provider, though it didn’t name a company, but found that the analysis effort was blocked by the provider’s guardrails. Instead, the company used its own local large language model, which it said provided the added benefit of not having to upload sensitive attack logs to an AI company’s servers.

    Security researchers have previously complained that some frontier models, like Anthropic’s Mythos and Fable, are heavily constrained, and prevent defenders from inquiring about almost anything relating to cybersecurity, including for defense and investigations.

    Frontier AI model makers, including Anthropic, have butted heads with the Trump administration over fears and concerns about the ability to use these models for offensive cyberattacks. Anthropic was even forced to withdraw Fable from public use after the U.S. government enforced export controls on the model.

    Hugging Face said it has reported the incident to law enforcement and roped in cybersecurity forensic specialists to investigate the breach and review its security. 

    It’s not clear if Hugging Face had performed a security audit of its systems before it launched. A Hugging Face spokesperson did not respond to a request for comment on Monday.

    When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.

    Security,cyberattack,cybersecurity,data breach,Hugging Facecyberattack,cybersecurity,data breach,Hugging Face#Hugging #Face #confirms #breach #affected #internal #datasets #credentials #urges #users #action1784552831

    Action affected breach confirms credentials cyberattack cybersecurity data breach datasets Face Hugging Hugging Face internal urges Users
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    admin
    • Website
    • Tumblr

    Related Posts

    Tesla reportedly might sell its China business ahead of a SpaceX merger

    July 31, 2026

    Repeat founder Ryan Williams raises $10M seed for an AI startup for private credit managers

    July 31, 2026

    Nscale buys Anyscale as it seeks to own more of the AI compute stack

    July 31, 2026
    Add A Comment

    Leave A Reply Cancel Reply

    Editors Picks
    8.5

    Apple Planning Big Mac Redesign and Half-Sized Old Mac

    January 5, 2021

    Autonomous Driving Startup Attracts Chinese Investor

    January 5, 2021

    Onboard Cameras Allow Disabled Quadcopters to Fly

    January 5, 2021
    Top Reviews
    9.1

    Review: T-Mobile Winning 5G Race Around the World

    By admin
    8.9

    Xiaomi Mi 10: New Variant with Snapdragon 870 Review

    By admin
    8.9

    Samsung Galaxy S21 Ultra Review: the New King of Android Phones

    By admin
    Advertisement
    Demo
    iGadgets Tech
    Facebook Twitter Instagram Pinterest Vimeo YouTube
    • Home
    • Tech
    • Gadgets
    • Mobiles
    • Our Authors
    © 2026 ThemeSphere. Designed by WPfastworld.
    "korean kbj​ "korean bj "koreanbj​

    Type above and press Enter to search. Press Esc to cancel.