Skip to main content
Technology

Malicious Hugging Face Model Incident

A malicious repository on Hugging Face, disguised as an OpenAI release, distributed infostealer malware to Windows systems, accumulating approximately 244,000 downloads before its removal. This alarming incident highlights significant software supply chain risks and the growing threat of cyberattacks leveraging popular artificial intelligence platforms.

Malicious Hugging Face Model Incident
  • www.csoonline.com reports: According to CSOonline.com, "A malicious repository on Hugging Face, disguised as an OpenAI release, was found to be distributing infostealer malware to Windows systems."
  • This malicious repository accumulated approximately 244,000 downloads before its removal, as reported by CSOonline.com.
  • The incident has raised significant concerns regarding software supply chain risks within public AI model registries.
  • CSOonline.com emphasized that this event highlights the growing threat of cyberattacks leveraging popular artificial intelligence platforms.
  • The infostealer malware specifically targeted Windows systems, indicating a focused attack vector against that operating system.
Reporting Sources 1

HackyChat

Live
Live discussion about this article

Loading live chat…

Hang tight while the room is prepared.

Comments

Comments are disabled for this article.
Back to articles

Accessibility Options

Font Size

100%

High Contrast

Reading Preferences

Data & Privacy