Close Menu
New York Examiner News

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Lollapalooza 2026: Hulu Livestream Schedule & Details

    July 30, 2026

    Ultra-rich are buying up $49 million mansions in London, with ‘Trump unease’ fueling the influx

    July 30, 2026

    The Crashing And Burning Of Todd Blanche Could Be Trump’s Ultimate Humiliation

    July 30, 2026
    Facebook X (Twitter) Instagram
    New York Examiner News
    • Home
    • US News
    • Politics
    • Business
    • Science
    • Technology
    • Lifestyle
    • Music
    • Television
    • Film
    • Books
    • Contact
      • About
      • Amazon Disclaimer
      • DMCA / Copyrights Disclaimer
      • Terms and Conditions
      • Privacy Policy
    New York Examiner News
    Home»Technology»In the Hugging Face breach, OpenAI’s hacker was noisy and fast — but not unstoppable
    Technology

    In the Hugging Face breach, OpenAI’s hacker was noisy and fast — but not unstoppable

    By AdminJuly 30, 2026
    Facebook Twitter Pinterest LinkedIn WhatsApp Email Reddit Telegram
    In the Hugging Face breach, OpenAI’s hacker was noisy and fast — but not unstoppable


    Earlier this month, AI dataset platform Hugging Face shocked the world when it revealed that it had fallen victim to a fully autonomous AI-powered cyberattack. Days later, the story took another dramatic twist when OpenAI admitted that the hacker behind the breach was one of its AI models, which broke out of a testing environment and into protected Hugging Face systems in an effort to circumvent a benchmark.

    It’s an alarming incident for anyone even slightly concerned about rogue AI models — and the days since the event have been full of predictions about a new cybersecurity paradigm in which AI models launch attacks so strong that only other AI models can defend against them. 

    But despite the justified alarm, the paradigm may not have shifted quite as much as it seems. Experts who spoke to TechCrunch stressed that OpenAI’s agent largely operated like a human — with some caveats — and that better implemented traditional defensive techniques could have helped stop the attack. In short, we may already have the tools to defend against this kind of attack; we just aren’t using them properly.

    Hugging Face made a version of this point in its incident report, stating that the weaknesses exploited in the attack “were familiar,” and “a capable human attacker could have found and exploited the same flaws.”

    Kyle Ryan, the Head of R&D at Pensar, a startup that develops continuous hacking AI agents, and Vlad Ionescu, the co-founder and CTO of RunSybil, a startup that builds AI-powered bug hunters, both agreed and told TechCrunch that the techniques used in the attack would be the same ones employed by a human or a group of human red teamers. That is, hackers tasked with attacking a system to help the company that owns it improve defenses.

    What was very non-human-like was the speed, scale, and relentlessness of the attack. As Hugging Face explained, OpenAI’s agent performed 17,600 actions over four and a half days: it broke in, did reconnaissance, stole passwords and code, and moved around the company’s infrastructure. 

    “What’s impressive is the autonomy and endurance,” Ryan said. “That kind of sustained, adaptive operation is what stands out most to me.” 

    Contact Us

    Do you any more information about OpenAI’s hack against Hugging Face? Or other AI-powered cyberattacks? We’d love to hear from you. From a non-work device and network, you can contact Lorenzo Franceschi-Bicchierai securely on Signal at +1 917 257 1382, or via Telegram and Keybase @lorenzofb, or email.

    On the flip side, given the sheer number of actions over the span of several days, OpenAI’s agent was “insanely noisy,” as Ryan put it. Unlike a human, who could have been stealthier, the agent made a lot of noise, which should have tripped up Hugging Face’s defenses sooner, ideally leading to a human intervening and stopping the attack. 

    “I’d call it more of a defensive failure than exceptionally good offense. Hugging Face’s tooling actually correlated the activity into an attack signal, but failed to raise the criticality and page the on-call team, which cost them time,” Ryan explained. “From there, humans still had to recognize the severity and respond.” 

    Jamieson O’Reilly, the founder of cybersecurity firm Dvuln, arrived at the same conclusion in a post on X analyzing Hugging Face’s report. 

    “That is the exact gap between seeing and stopping,” O’Reilly wrote. “The system observed the attack and even understood it, and nothing turned that understanding into an intervention quickly enough.”

    Ryan explained that properly implemented techniques such as defense-in-depth — a strategy that leverages several layers of cybersecurity measures — should have given Hugging Face multiple chances to catch the attack. 

    “A strong modern security program should still be able to break an attack like this at multiple points through defense in depth, least privilege, segmentation, good detection, reliable escalation, and continuous offensive testing to find the gaps,” Ryan explained.  

    As O’Reilly put it, “none of that is exotic, and none of it depends on the attacker being an AI,” given that the techniques used in the attack were “old.” 

    What depended on the attacker being AI, in a way, was that OpenAI’s agent had not been instructed to be stealthy. “The agent was not being sloppy. It simply had no reason to be quiet. Nobody asked it to be. The objective was to do well at the task,” said Nico Waisman, the chief information security officer at XBOW, a startup that makes AI bug hunters. 

    Waisman also pointed out that Hugging Face’s biggest mistake was that one single stolen credential gave OpenAI’s agent high privileges on several of its systems. 

    All that being said, as the old adage goes, attackers only have to win once, and defending against hackers of any kind is not easy. 

    “Hugging Face could’ve done more detections but to be fair not all [organizations] are doing that well,” said Vincent Yiu, managing director at SYON Security. “It’s not easy to host infrastructure and survive as a business in 2026. There’s hackers everywhere.”

    According to Vlad from RunSybil, who said they have done incident responses at Mandiant and Meta in the past, Hugging Face appeared to take “reasonable measures given their understanding of what models are capable of.” 

    “It is really hard to classify what is a malicious action you should alert on, versus what is someone just doing their job,” Vlad said. “The volume alone is not necessarily a red flag.”

    Dan Guido, the CEO of cybersecurity research firm Trail of Bits, told TechCrunch that OpenAI deserves some blame for not having realized the attack was ongoing for days, while HuggingFace deserves credit for eventually detecting the attack on their own.

    “The hard part used to be recognizing a sophisticated attack, but now the hard part may be pulling the real attack out of the noise that the attacker throws along the way,” said Guido. “Nobody is going to read 17,000 reconstructed actions by hand to work out what happened, so Hugging Face had to build tooling just to reconstruct the timeline.”

    And to do that, the company needed its own AI. Hugging Face said it had to use the open source model GLM 5.2 from Chinese company Z.AI after it was blocked from using frontier models because of their safeguards, which, as the company put it, “cannot distinguish an incident responder from an attacker.”

    At that point, Hugging Face combined AI and humans to investigate OpenAI’s LLM-powered hacker. That’s a relatively novel situation. But beyond that, the incident shows that old-fashioned concepts and methods of defensive cybersecurity can still go a long way to protect and fight against AI hackers.

    When you purchase through links in our articles, we may earn a small commission. This doesn’t affect our editorial independence.



    Original Source Link

    Share. Facebook Twitter Pinterest LinkedIn WhatsApp Email Reddit Telegram
    Previous ArticleTropical Diseases Like Dengue Fever and Chikungunya Are on the Rise in Europe
    Next Article Sonny Gray leads Red Sox run line pick over the struggling Athletics

    RELATED POSTS

    It Looks Like Nothing Can Dent MAGA’s Support for ICE

    July 30, 2026

    Encore AI raises $30M to build AI agents that learn from customer calls

    July 29, 2026

    OpenAI’s Rogue AI Agent Hacked More Than Just Hugging Face

    July 29, 2026

    Fish Audio raises $50M seed to build AI voice models for creators and enterprises

    July 28, 2026

    France Records Its First-Ever Pyrocumulonimbus Cloud Amid Record-Smashing Fires

    July 28, 2026

    Enigma raises $70M to make controlling a robot as easy as adjusting the volume

    July 27, 2026
    latest posts

    Lollapalooza 2026: Hulu Livestream Schedule & Details

    Lollapalooza returns for its 2026 edition today (July 30) at Chicago’s Grant Park. The festival…

    Ultra-rich are buying up $49 million mansions in London, with ‘Trump unease’ fueling the influx

    July 30, 2026

    The Crashing And Burning Of Todd Blanche Could Be Trump’s Ultimate Humiliation

    July 30, 2026

    Sonny Gray leads Red Sox run line pick over the struggling Athletics

    July 30, 2026

    In the Hugging Face breach, OpenAI’s hacker was noisy and fast — but not unstoppable

    July 30, 2026

    Tropical Diseases Like Dengue Fever and Chikungunya Are on the Rise in Europe

    July 30, 2026

    Spider-Man: Brand New Day review – slavish fan…

    July 30, 2026
    Categories
    • Books (1,397)
    • Business (6,301)
    • Events (64)
    • Film (6,237)
    • Lifestyle (4,312)
    • Music (6,360)
    • Politics (6,282)
    • Science (5,654)
    • Technology (6,233)
    • Television (5,927)
    • Uncategorized (8)
    • US News (6,289)
    popular posts

    Bird flu has been found in beef for the first time, but USDA says it didn’t enter the food supply

    Bird flu has been detected in beef for the first time, the U.S. Department of…

    CBS New Series Orders 2022: ‘Fire Country’ Starring Max Thieriot, More

    May 12, 2022

    China Is Racing to Electrify Its Future

    July 4, 2022

    China threatens to downgrade ties with Israel after newspaper publishes Taiwan interview

    May 31, 2022
    Archives
    Browse By Category
    • Books (1,397)
    • Business (6,301)
    • Events (64)
    • Film (6,237)
    • Lifestyle (4,312)
    • Music (6,360)
    • Politics (6,282)
    • Science (5,654)
    • Technology (6,233)
    • Television (5,927)
    • Uncategorized (8)
    • US News (6,289)
    About Us

    We are a creativity led international team with a digital soul. Our work is a custom built by the storytellers and strategists with a flair for exploiting the latest advancements in media and technology.

    Most of all, we stand behind our ideas and believe in creativity as the most powerful force in business.

    What makes us Different

    We care. We collaborate. We do great work. And we do it with a smile, because we’re pretty damn excited to do what we do. If you would like details on what else we can do visit out Contact page.

    Our Picks

    Tropical Diseases Like Dengue Fever and Chikungunya Are on the Rise in Europe

    July 30, 2026

    Spider-Man: Brand New Day review – slavish fan…

    July 30, 2026

    Trace Adkins Doesn’t Blame Wife For Shooting Him In The Heart

    July 30, 2026
    © 2026 New York Examiner News. All rights reserved. All articles, images, product names, logos, and brands are property of their respective owners. All company, product and service names used in this website are for identification purposes only. Use of these names, logos, and brands does not imply endorsement unless specified. By using this site, you agree to the Terms & Conditions and Privacy Policy.

    Type above and press Enter to search. Press Esc to cancel.

    We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept All”, you consent to the use of ALL the cookies. However, you may visit "Cookie Settings" to provide a controlled consent.
    Cookie SettingsAccept All
    Manage consent

    Privacy Overview

    This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
    Necessary
    Always Enabled
    Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
    CookieDurationDescription
    cookielawinfo-checkbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
    cookielawinfo-checkbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
    cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
    cookielawinfo-checkbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
    cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
    viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
    Functional
    Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
    Performance
    Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
    Analytics
    Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
    Advertisement
    Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
    Others
    Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
    SAVE & ACCEPT