Hugging Face Breached by Autonomous AI Agent in First-of-Its-Kind Attack
Hugging Face, the world's largest open-source AI model repository, disclosed a security breach perpetrated by an autonomous AI agent system. The attack…
Hugging Face, the world's largest open-source AI model repository, disclosed a security breach perpetrated by an autonomous AI agent system. The attack…
Hugging Face, the leading open-source AI model repository, suffered a breach where an autonomous AI agent exploited code execution paths in its…
A new Go-based botnet named NadMesh has been discovered actively hunting exposed AI services to steal cloud credentials and Kubernetes tokens. First…
NadMesh is a Go-based botnet discovered in July 2026 that targets exposed AI services to steal cloud credentials and Kubernetes tokens. It…
A new class of attack called Agent Data Injection (ADI) has been disclosed by researchers from Seoul National University, the University of…
OpenAI has disclosed details of GPT-Red, an internal automated red-teaming model that scales prompt injection vulnerability discovery to fix issues before tools…
OpenAI used GPT-Red to attack an AI-based vending machine built by Andon Labs, successfully lowering prices and canceling orders in a real-world…
GPT-Red is an internal automated red-teaming model that scales prompt injection vulnerability discovery by iteratively sending prompts and monitoring responses to achieve…
GPT-5.4 mini was used as the base model for a Codex command-line agent that was attacked by GPT-Red in a case study…
For years, routing traffic through cloud proxies was sufficient for enterprise security. However, the shift to browser-based work, SaaS applications, and generative…