Hugging Face - Tool

Threat entity extracted from intelligence sources

Frequency
111
occurrences
First Seen
November 5, 2025
Last Seen
July 27, 2026

Hugging Face is a tool tracked across 32 threat clusters and 111 intelligence report mentions on ThreatCluster. First observed November 5, 2025; most recent activity July 27, 2026.

Related Threat Clusters

  • Critical RCE Vulnerability in Hugging Face LeRobot Exposes Systems to Attack

    A critical remote code execution (RCE) vulnerability, tracked as CVE-2026-25874, has been identified in Hugging Face's LeRobot, an open-source robotics machine learning framework. This flaw, which has a CVSS severity…

    3 articles · Updated April 28, 2026
  • Microsoft Alerts on npm Malware Targeting Cryptocurrency Wallets

    Microsoft's Threat Intelligence unit has issued a warning about a cyber campaign targeting cryptocurrency investors and software developers through compromised npm packages. The malware, embedded in two specific…

    3 articles · Updated June 3, 2026
  • Critical RCE Vulnerability Discovered in LLaMA-Factory WebUI

    A critical remote code execution vulnerability, CVE-2026-58116, has been identified in LLaMA-Factory versions up to 0.9.5. The flaw allows attackers to execute arbitrary Python code by supplying a malicious model path…

    3 articles · Updated July 1, 2026
  • Critical RCE Vulnerability in Hugging Face Transformers Library Disclosed

    A critical remote code execution (RCE) vulnerability has been identified in the Hugging Face Transformers library, tracked as CVE-2026-4372. This flaw allows attackers to execute arbitrary code during model loading by…

    6 articles · Updated June 4, 2026
  • Malware Discovered in Typosquatted Hugging Face Repository Impersonating OpenAI

    On May 7, 2026, researchers identified malware in the Hugging Face repository Open-OSS/privacy-filter, which had impersonated OpenAI's legitimate Privacy Filter project. The malicious repository reached #1 on the…

    15 articles · Updated May 9, 2026
  • AI Supply Chain Attacks and Model Poisoning Threats

    In July 2026, researchers demonstrated that open-weight AI models can be easily poisoned, allowing attackers to implant backdoors for under $100. Katie Paxton-Fear successfully manipulated a model to execute remote code…

    8 articles · Updated July 17, 2026
  • FedRAMP Chief Warns Tech Firms After Hugging Face Breach

    Pete Waterman, director of FedRAMP, stated that technology companies unable to promptly fix critical vulnerabilities should not sell to federal agencies. This warning follows a significant breach involving OpenAI and…

    5 articles · Updated July 24, 2026
  • Mini Shai-Hulud Supply Chain Attack Targets SAP npm Packages

    A new supply chain attack, dubbed 'Mini Shai-Hulud', has compromised multiple npm packages related to SAP's Cloud Application Programming Model (CAP). This attack involves injecting malicious preinstall scripts into…

    697 articles · Updated April 29, 2026
  • Critical ChromaDB Vulnerability Enables Remote Code Execution

    A critical vulnerability, CVE-2026-45829, in ChromaDB allows unauthenticated attackers to execute arbitrary code on exposed servers. This flaw affects the FastAPI server of the open-source vector database, which is…

    4 articles · Updated May 20, 2026
  • AI-Enhanced Credential Harvesting Operation Exposed

    A threat actor has integrated Anthropic's Claude Code AI into a large-scale credential harvesting operation named Bissa scanner. This operation has successfully exploited over 900 targets since September 2025, utilizing…

    3 articles · Updated April 23, 2026

Recent Intelligence Reports

  • Hugging Face CEO calls for 'complete transparency' following OpenAI's AI hacking incident. — Gigazine · July 27, 2026
  • Hugging Face CEO makes two demands after OpenAI's rogue AI hacked its systems — Firstpost · July 27, 2026
  • Uncontrolled US AI Poses Risks to Humans: Domestic Open — Eu.36Kr · July 27, 2026
  • Hugging Face Ceo Urges Openai To Release Rogue Ai Logs Commit 100 Million In Compute After Breach — www.benzinga.com · July 27, 2026
  • For some, so-called 'Skynet Day' came too close to sci — Abc7Ny · July 26, 2026
  • OpenAI didn't realize its agent was responsible for hack for a week: report — Fox5Atlanta · July 26, 2026
  • OpenAI didn't realize its agent was responsible for hack for a week: report — Fox35Orlando · July 26, 2026
  • Hugging Face CEO Demands Traces, $100M After OpenAI Agent Hack — Aiweekly.Co · July 26, 2026

CVSS v3.1 Breakdown