{"@context":"https://schema.org","@type":"NewsArticle","generatedAt":"2026-07-23T06:40:50.084Z","headline":"Hugging Face 遭自主AI智能体入侵，用AI工具完成数小时取证分析","description":"Hugging Face 披露其部分生产基础设施遭一个自主AI智能体系统入侵，攻击者通过恶意数据集利用数据处理管道中的代码执行漏洞，窃取了内部数据集和多项服务凭证。该公司部署LLM驱动的分析智能体，在数小时内完成了对17000多条攻击行为的取证分析，而此类工作通常需要数天。","url":"https://www.aioga.com/news/cmrt6yjfo1407bitlsdp6qyn6/","mainEntityOfPage":"https://www.aioga.com/news/cmrt6yjfo1407bitlsdp6qyn6/","datePublished":"2026-07-20T12:12:47.000Z","dateModified":"2026-07-20T12:12:47.000Z","inLanguage":"zh-CN","publisher":{"@type":"NewsMediaOrganization","name":"Aioga","url":"https://www.aioga.com"},"citation":["https://the-decoder.com/hugging-face-says-an-ai-agent-hacked-its-infrastructure-and-it-used-ai-to-fight-back","https://aihot.virxact.com/items/cmrt6yjfo1407bitlsdp6qyn6"],"canonicalUrl":"https://www.aioga.com/news/cmrt6yjfo1407bitlsdp6qyn6/","directAnswer":{"@type":"Answer","text":"Hugging Face 披露部分生产基础设施遭自主 AI 智能体系统入侵。攻击者利用恶意数据集触发数据处理环节的两条代码执行路径，并获取部分内部数据集及多项服务凭证。","url":"https://www.aioga.com/news/cmrt6yjfo1407bitlsdp6qyn6/","dateCreated":"2026-07-20T12:12:47.000Z","author":{"@type":"Organization","@id":"https://www.aioga.com/authors/aioga-editorial/#editorial-team","name":"Aioga Editorial Team","url":"https://www.aioga.com/authors/aioga-editorial/"}},"evidence":[{"@type":"CreativeWork","name":"the-decoder.com source article","url":"https://the-decoder.com/hugging-face-says-an-ai-agent-hacked-its-infrastructure-and-it-used-ai-to-fight-back","datePublished":"2026-07-20T12:12:47.000Z","provider":{"@type":"Organization","name":"the-decoder.com","url":"https://the-decoder.com/hugging-face-says-an-ai-agent-hacked-its-infrastructure-and-it-used-ai-to-fight-back"}},{"@type":"CreativeWork","name":"AIHot archive record","url":"https://aihot.virxact.com/items/cmrt6yjfo1407bitlsdp6qyn6","datePublished":"2026-07-20T12:12:47.000Z","provider":{"@type":"Organization","name":"AIHot","url":"https://aihot.virxact.com/items/cmrt6yjfo1407bitlsdp6qyn6"}}],"aggregationSource":"The Decoder：AI News（RSS）","originalPublisher":{"name":"the-decoder.com","url":"https://the-decoder.com/hugging-face-says-an-ai-agent-hacked-its-infrastructure-and-it-used-ai-to-fight-back"},"article":{"id":"cmrt6yjfo1407bitlsdp6qyn6","slug":"cmrt6yjfo1407bitlsdp6qyn6","url":"https://www.aioga.com/news/cmrt6yjfo1407bitlsdp6qyn6/","title":"Hugging Face 遭自主AI智能体入侵，用AI工具完成数小时取证分析","title_en":"Hugging Face says an AI agent hacked its infrastructure， and it used AI to fight back","summary":"Hugging Face 披露其部分生产基础设施遭一个自主AI智能体系统入侵，攻击者通过恶意数据集利用数据处理管道中的代码执行漏洞，窃取了内部数据集和多项服务凭证。该公司部署LLM驱动的分析智能体，在数小时内完成了对17000多条攻击行为的取证分析，而此类工作通常需要数天。","source":"The Decoder：AI News（RSS）","sourceUrl":"https://the-decoder.com/hugging-face-says-an-ai-agent-hacked-its-infrastructure-and-it-used-ai-to-fight-back","aiHotUrl":"https://aihot.virxact.com/items/cmrt6yjfo1407bitlsdp6qyn6","publishedAt":"2026-07-20T12:12:47.000Z","category":"行业动态","score":75,"selected":true,"articleBody":["AI platform Hugging Face has disclosed a breach of parts of its production infrastructure that was allegedly carried out entirely by an autonomous AI agent system. The company says it detected and analyzed the attack largely with its own AI tools.","According to Hugging Face, the attackers gained unauthorized access to a limited set of internal datasets and several credentials used by Hugging Face services. The company says public models, datasets, and Spaces were not tampered with, and the software supply chain was not affected. Whether partner or customer data was compromised is still under investigation.","According to Hugging Face, the attack started at one of the weakest spots on any AI platform: the data processing pipeline. A malicious dataset：https://huggingface.co/blog/security-incident-july-2026 exploited two code execution paths in dataset processing, specifically a remote code dataset loader and a template injection in a dataset configuration. Ad","From there, the attacker escalated to node level, harvested cloud and cluster credentials, and moved laterally across multiple internal clusters over a weekend. An autonomous agent framework built on an agentic security research harness orchestrated the entire campaign, the company says. Ad DEC_D_Incontent-1","Hugging Face says it doesn't know which language model powered the attack. The system executed many thousands of individual actions through a swarm of short-lived sandboxes and used self-migrating command-and-control infrastructure running on public services. The company classifies the incident as the \"agentic attacker\" scenario the industry has been predicting for some time.","Hugging Face says it spotted the attack through an AI-powered anomaly detection pipeline that runs LLM-based triage on security telemetry. To make sense of the more than 17,000 recorded attacker actions, the company deployed LLM-driven analysis agents. Ad","Those agents reconstructed the timeline, extracted indicators of compromise, mapped affected credentials, and separated real damage from deception activity. Work that would normally have taken days was done in hours, the company says.","According to Hugging Face, when the security team first tried to analyze the attack logs using frontier models behind commercial APIs, it hit a wall. The providers' safety guardrails blocked the requests because they couldn't tell an incident responder from an attacker. The analysis required submitting large volumes of real attack commands, exploit payloads, and C2 artifacts, all of which tripped the filters. Ad DEC_D_Incontent-2","The company turned to the open-weight model GLM 5.2：https://the-decoder.com/databricks-makes-chinese-open-source-model-glm-5-2-its-default-coding-engine-after-it-matched-opus-at-lower-cost/, running on its own infrastructure. According to the company, that had two advantages: no attacker data, and none of the referenced credentials ever left its own environment. Ad","\"We do not know which model powered the attacker's agents, whether a jailbroken hosted model or an unrestricted open-weight one; either way, the attacker was bound by no usage policy, while our own forensic work was blocked by the guardrails of the hosted models we first tried,\" Hugging Face wrote：https://huggingface.co/blog/security-incident-july-2026.","The practical lesson for defenders, the company says, is to have a capable model running on your own infrastructure before an incident happens. Hugging Face adds that this isn't an argument against safety measures on hosted models.","Hugging Face says it shut down the exploited code execution paths, revoked the attacker's access, rebuilt compromised nodes, and rotated affected credentials. The company also tightened access controls and improved its detection systems, according to the blog post. Hugging Face is working with external cybersecurity forensics experts and has reported the incident to law enforcement. As a precaution, the company recommends that all users rotate their access tokens and review recent account activity.","The incident confirms that autonomous, AI-driven attack tools are no longer theoretical：https://the-decoder.com/uks-ai-security-institute-finds-standard-benchmarks-systematically-underestimate-what-ai-agents-can-actually-do/. According to Hugging Face, they lower the cost of broad, multi-stage campaigns and operate at machine speed. The company argues that data and model surfaces need to be treated as first-class attack surfaces and that defenders need AI of their own to keep pace.","Hugging Face calls the fact that commercial safety filters blocked its own forensic work a gap the industry should prepare for. But the company is also one of the largest platforms for open-source AI models and has a clear business interest in framing open models as indispensable for security work, so its conclusion that defenders absolutely need their own open-weight models on hand isn't entirely selfless.","Stay in the loop on AI. Clear, useful, no fluff.","Follow The Decoder for AI news, background stories and expert analyses.","The Decoder：https://the-decoder.com/"],"articleImages":[{"sourceUrl":"https://the-decoder.com/wp-content/uploads/2026/07/hugging_face_security.png","alt":"Image description","afterParagraph":0,"url":"/media/articles/cmrt6yjfo1407bitlsdp6qyn6/f8286a9adc84ad9c.png"}],"mediaStatus":"ok","articleBodyZh":["AI平台Hugging Face披露，其部分生产基础设施遭到入侵，据称此次入侵完全由自主AI代理系统执行。公司表示，它主要使用自己的AI工具检测和分析了此次攻击。","根据Hugging Face的说法，攻击者未经授权访问了一小部分内部数据集以及Hugging Face服务使用的若干凭证。公司表示，公共模型、数据集和Spaces未被篡改，软件供应链未受影响。合作伙伴或客户数据是否遭到泄露仍在调查中。","Hugging Face表示，此次攻击始于AI平台上的最薄弱环节之一：数据处理管道。一个恶意数据集（https://huggingface.co/blog/security-incident-july-2026）利用了数据集处理中的两个代码执行路径，具体为远程代码数据集加载器和数据集配置中的模板注入。","之后，攻击者升级到节点级，获取了云和集群凭证，并在一个周末期间横向移动穿越多个内部集群。公司表示，一个基于代理式安全研究框架构建的自主代理系统协调了整个攻击行动。","Hugging Face表示，它不知道是哪种语言模型驱动了这次攻击。该系统通过大量短期存在的沙箱执行了数千个独立操作，并使用在公共服务上运行的自迁移指挥控制基础设施。公司将此事件归类为业界已预见一段时间的“代理攻击者”场景。","Hugging Face表示，它通过AI驱动的异常检测管道发现了此次攻击，该管道对安全遥测数据运行基于大语言模型（LLM）的分类处理。为了理解超过17,000条记录的攻击者行为，公司部署了LLM驱动的分析代理。","这些代理重建了时间线，提取了受感染指标，映射了受影响的凭证，并将实际损害与欺骗活动区分开来。公司表示，通常需要几天完成的工作在数小时内便完成了。","根据 Hugging Face 的说法，当安全团队首次尝试使用商业 API 背后的前沿模型分析攻击日志时，遇到了障碍。因为无法区分事件响应人员和攻击者，提供商的安全防护措施阻止了请求。分析需要提交大量真实的攻击命令、漏洞利用负载和 C2 制品，而这些都触发了过滤器。Ad DEC_D_Incontent-2","公司转向了开源权重模型 GLM 5.2：https://the-decoder.com/databricks-makes-chinese-open-source-model-glm-5-2-its-default-coding-engine-after-it-matched-opus-at-lower-cost/，在自己的基础设施上运行。根据公司说法，这有两个好处：没有攻击者数据，并且所有引用的凭证都没有离开自有环境。Ad","“我们不知道攻击者的代理使用的是哪种模型，无论是被越狱的托管模型还是无限制的开源权重模型；无论哪种情况，攻击者都不受使用政策约束，而我们自己的取证工作却被最初尝试的托管模型的防护措施阻挡，”Hugging Face 写道：https://huggingface.co/blog/security-incident-july-2026。","公司表示，对于防御者的实际教训是，在事件发生之前，确保在自己的基础设施上运行一个强大的模型。Hugging Face 补充说，这并不是反对托管模型安全措施的理由。","Hugging Face 表示，公司已经关闭被利用的代码执行路径，撤销了攻击者的访问权限，重建了被入侵的节点，并更换了受影响的凭证。根据博客文章，公司还加强了访问控制并改进了检测系统。Hugging Face 正在与外部网络安全取证专家合作，并已向执法机关报告了该事件。作为预防措施，公司建议所有用户更换访问令牌并检查最近的账户活动。","这一事件确认，自主的、由人工智能驱动的攻击工具已不再是理论上的存在：https://the-decoder.com/uks-ai-security-institute-finds-standard-benchmarks-systematically-underestimate-what-ai-agents-can-actually-do/。根据 Hugging Face 的说法，这些工具降低了大规模、多阶段攻击行动的成本，并以机器速度运行。该公司认为，数据和模型表面需要被视为一流的攻击表面，防御者也需要拥有自己的人工智能以保持步伐。","Hugging Face 指出，商业安全过滤器阻止了其自身的取证工作，这一事实是行业应当为之做好准备的缺口。但该公司同时也是最大的开源人工智能模型平台之一，并且在将开放模型塑造成安全工作不可或缺的工具上具有明显的商业利益，因此其得出防御者绝对需要拥有自己的开放权重模型的结论，并非完全无私。","保持对人工智能的了解。清晰、有用、无废话。","关注 The Decoder 获取人工智能新闻、背景故事和专家分析。","The Decoder：https://the-decoder.com/"],"translationStatus":"translated","bodyOrigin":"source-page","editorial":{"summary":"Hugging Face 披露部分生产基础设施遭自主 AI 智能体系统入侵。攻击者利用恶意数据集触发数据处理环节的两条代码执行路径，并获取部分内部数据集及多项服务凭证。","background":"攻击者从远程代码数据集加载器和数据集配置模板注入切入，随后提升至节点层级，收集云与集群凭证并横向移动。公司称公共模型、数据集、Spaces 及软件供应链未被篡改。","viewpoint":"Aioga 判断，此事件值得关注的重点是攻防双方均使用了智能体：攻击系统执行数千次操作，防守方则用大模型分析智能体梳理超过 17000 条攻击行为，将通常需数天的工作压缩至数小时。","implications":"Aioga 判断，AI 平台的数据处理管道可能成为重要安全入口；同时，商业模型接口的安全护栏可能阻碍真实事件响应，因为攻击命令、利用载荷和控制基础设施痕迹会触发过滤机制。","nextStep":"值得关注 Hugging Face 对合作伙伴或客户数据是否受影响的后续调查，以及受影响凭证的处置结果。相关平台也可能需要重新评估数据集代码执行路径、凭证隔离和安全日志分析流程。","evidenceRefs":["title","summary","articleBody","source"],"status":"published","aiGenerated":true,"autoApproved":true,"generatedBy":"aioga-editorial:gpt-5.6-sol","reviewedBy":"aioga-editorial-review:gpt-5.6-sol","generatedAt":"2026-07-22T21:12:09.852Z","sourceHash":"1ed3947a5453a5b0","review":{"approved":true,"groundedness":94,"clarity":91,"duplicationRisk":22,"blockingIssues":[],"notes":["来源对攻击由自主 AI 智能体系统实施的描述带有“据 Hugging Face 称”或“据称”限定；候选摘要虽以“Hugging Face 披露”间接体现归因，但若需更严谨，可明确写成“据该公司称，此次攻击由自主 AI 智能体系统实施”。","“相关平台也可能需要重新评估……”属于合理的编辑判断，且使用了“可能”限定，不构成事实性断言。"]},"validation":{"passed":true,"mode":"ai-auto","revisions":0,"checks":["schema","length","source-attribution","low-source-overlap","no-html","independent-ai-review"]}},"tags":["行业动态","The Decoder：AI News（RSS）"],"translations":{"zh-CN":{"title":"Hugging Face 遭自主AI智能体入侵，用AI工具完成数小时取证分析","summary":"Hugging Face 披露其部分生产基础设施遭一个自主AI智能体系统入侵，攻击者通过恶意数据集利用数据处理管道中的代码执行漏洞，窃取了内部数据集和多项服务凭证。该公司部署LLM驱动的分析智能体，在数小时内完成了对17000多条攻击行为的取证分析，而此类工作通常需要数天。","category":"行业动态","source":"the-decoder.com","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face 遭自主AI智能体入侵，用AI工具完成数小时取证分析 - Aioga AI资讯","description":"Hugging Face 披露其部分生产基础设施遭一个自主AI智能体系统入侵，攻击者通过恶意数据集利用数据处理管道中的代码执行漏洞，窃取了内部数据集和多项服务凭证。该公司部署LLM驱动的分析智能体，在数小时内完成了对17000多条攻击行为的取证分析，而此类工作通常需要数天。","url":"https://www.aioga.com/news/cmrt6yjfo1407bitlsdp6qyn6/"},"en":{"title":"Hugging Face invaded by autonomous AI agents, using AI tools to complete hours of forensic analysis","summary":"Hugging Face disclosed that part of its production infrastructure was breached by an autonomous AI agent system. The attacker exploited a code execution vulnerability in the data processing pipeline through a malicious dataset, stealing internal datasets and multiple service credentials. The company deployed an LLM-driven analysis agent, which completed forensic analysis of over 17,000 attack actions within a few hours, a task that would normally take several days.","category":"Industry","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face invaded by autonomous AI agents, using AI tools to complete hours of forensic analysis - Aioga AI News","description":"Hugging Face disclosed that part of its production infrastructure was breached by an autonomous AI agent system. The attacker exploited a code execution vulnerability in the data p...","url":"https://www.aioga.com/en/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:06:28.095Z"},"ja":{"title":"Hugging Face は自律型AIエージェントに侵入され、AIツールを使って数時間の証拠分析を完了","summary":"Hugging Face は、自社の一部の生産インフラが自主AIエージェントシステムに侵入されたことを明らかにしました。攻撃者は悪意のあるデータセットを通じてデータ処理パイプライン内のコード実行の脆弱性を利用し、内部データセットや複数のサービス資格情報を盗みました。同社はLLM駆動の分析エージェントを展開し、通常は数日かかる作業を数時間で1万7000件以上の攻撃行動のフォレンジック分析を完了しました。","category":"業界動向","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face は自律型AIエージェントに侵入され、AIツールを使って数時間の証拠分析を完了 - Aioga AIニュース","description":"Hugging Face は、自社の一部の生産インフラが自主AIエージェントシステムに侵入されたことを明らかにしました。攻撃者は悪意のあるデータセットを通じてデータ処理パイプライン内のコード実行の脆弱性を利用し、内部データセットや複数のサービス資格情報を盗みました。同社はLLM駆動の分析エージェントを展開し、通常は数日かかる作業を数時間で1万7000件以上の...","url":"https://www.aioga.com/ja/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:06:44.866Z"},"ko":{"title":"Hugging Face가 자율 AI 에이전트의 침입을 당해, AI 도구로 수 시간 동안 증거 수집 분석을 완료","summary":"Hugging Face는 일부 생산 인프라가 자율 AI 에이전트 시스템에 의해 침해되었음을 공개했으며, 공격자는 악성 데이터셋을 통해 데이터 처리 파이프라인의 코드 실행 취약점을 이용하여 내부 데이터셋과 여러 서비스 자격 증명을 탈취했습니다. 이 회사는 LLM 기반 분석 에이전트를 배포하여 수시간 내에 1만 7천 건 이상의 공격 행위에 대한 포렌식 분석을 완료했으며, 이러한 작업은 일반적으로 며칠이 걸립니다.","category":"업계 동향","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face가 자율 AI 에이전트의 침입을 당해, AI 도구로 수 시간 동안 증거 수집 분석을 완료 - Aioga AI 뉴스","description":"Hugging Face는 일부 생산 인프라가 자율 AI 에이전트 시스템에 의해 침해되었음을 공개했으며, 공격자는 악성 데이터셋을 통해 데이터 처리 파이프라인의 코드 실행 취약점을 이용하여 내부 데이터셋과 여러 서비스 자격 증명을 탈취했습니다. 이 회사는 LLM 기반 분석 에이전트를 배포하여 수시간 내에 1만 7천 건 이상...","url":"https://www.aioga.com/ko/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:07:34.909Z"},"es":{"title":"Hugging Face sufrió una invasión de agentes de IA autónomos, utilizando herramientas de IA para completar varias horas de análisis forense","summary":"Hugging Face reveló que parte de su infraestructura de producción fue invadida por un sistema de agentes de inteligencia artificial autónomos. Los atacantes explotaron vulnerabilidades de ejecución de código en la tubería de procesamiento de datos mediante conjuntos de datos maliciosos, robando conjuntos de datos internos y múltiples credenciales de servicios. La compañía desplegó un agente analítico impulsado por LLM, completando en pocas horas el análisis forense de más de 17,000 acciones de ataque, mientras que este tipo de trabajo normalmente tomaría varios días.","category":"Industria","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face sufrió una invasión de agentes de IA autónomos, utilizando herramientas de IA para completar varias horas de análisis forense - Aioga Noticias de IA","description":"Hugging Face reveló que parte de su infraestructura de producción fue invadida por un sistema de agentes de inteligencia artificial autónomos. Los atacantes explotaron vulnerabilid...","url":"https://www.aioga.com/es/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:07:32.980Z"},"fr":{"title":"Hugging Face a été envahi par des agents d'IA autonomes, utilisant des outils d'IA pour effectuer plusieurs heures d'analyse de preuves","summary":"Hugging Face a révélé qu'une partie de son infrastructure de production a été infiltrée par un système d'agent autonome d'IA. Les attaquants ont exploité des ensembles de données malveillants pour tirer parti d'une vulnérabilité d'exécution de code dans le pipeline de traitement des données, et ont volé des ensembles de données internes ainsi que plusieurs identifiants de services. L'entreprise a déployé un agent d'analyse piloté par LLM, qui a réalisé en quelques heures l'analyse forensique de plus de 17 000 actions d'attaque, alors que ce type de travail nécessite normalement plusieurs jours.","category":"Industrie","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face a été envahi par des agents d'IA autonomes, utilisant des outils d'IA pour effectuer plusieurs heures d'analyse de preuves - Aioga Actualités IA","description":"Hugging Face a révélé qu'une partie de son infrastructure de production a été infiltrée par un système d'agent autonome d'IA. Les attaquants ont exploité des ensembles de données m...","url":"https://www.aioga.com/fr/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:08:17.472Z"},"de":{"title":"Hugging Face wird von autonomen KI-Agenten angegriffen und verwendet KI-Tools, um stundenlange forensische Analysen durchzuführen","summary":"Hugging Face hat offengelegt, dass ein Teil seiner Produktionsinfrastruktur von einem autonomen KI-Agentensystem infiltriert wurde. Die Angreifer nutzten bösartige Datensätze aus, um Codeausführungsschwachstellen in der Datenverarbeitungspipeline auszunutzen und stahlen interne Datensätze sowie mehrere Dienstanmeldeinformationen. Das Unternehmen setzte einen LLM-gesteuerten Analyseagenten ein, der innerhalb weniger Stunden forensische Analysen von mehr als 17.000 Angriffshandlungen durchführte, während solche Arbeiten normalerweise mehrere Tage dauern würden.","category":"行业动态","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face wird von autonomen KI-Agenten angegriffen und verwendet KI-Tools, um stundenlange forensische Analysen durchzuführen - Aioga KI-News","description":"Hugging Face hat offengelegt, dass ein Teil seiner Produktionsinfrastruktur von einem autonomen KI-Agentensystem infiltriert wurde. Die Angreifer nutzten bösartige Datensätze aus,...","url":"https://www.aioga.com/de/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:08:21.025Z"},"pt-BR":{"title":"Hugging Face foi invadido por agentes de IA autônomos, usando ferramentas de IA para completar horas de análise forense","summary":"A Hugging Face revelou que parte de sua infraestrutura de produção foi invadida por um sistema de agente inteligente autônomo de IA. Os atacantes exploraram vulnerabilidades de execução de código no pipeline de processamento de dados por meio de conjuntos de dados maliciosos, roubando conjuntos de dados internos e várias credenciais de serviços. A empresa implantou um agente de análise movido a LLM, que concluiu a análise forense de mais de 17.000 incidentes de ataque em poucas horas, enquanto esse tipo de trabalho normalmente levaria vários dias.","category":"行业动态","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face foi invadido por agentes de IA autônomos, usando ferramentas de IA para completar horas de análise forense - Aioga Notícias de IA","description":"A Hugging Face revelou que parte de sua infraestrutura de produção foi invadida por um sistema de agente inteligente autônomo de IA. Os atacantes exploraram vulnerabilidades de exe...","url":"https://www.aioga.com/pt-BR/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:09:04.380Z"},"ru":{"title":"Hugging Face подвергся вторжению автономного ИИ-агента, с помощью ИИ-инструментов проведён многочасовой судебно-экспертный анализ","summary":"Hugging Face раскрыла, что часть её производственной инфраструктуры была скомпрометирована автономной системой ИИ-агента, злоумышленники воспользовались уязвимостью выполнения кода в конвейере обработки данных с помощью злонамеренного набора данных и похитили внутренние наборы данных и множество учетных данных сервисов. Компания развернула аналитического агента на базе LLM, который за несколько часов провел криминалистический анализ более 17 000 инцидентов атак, тогда как такая работа обычно занимает несколько дней.","category":"行业动态","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face подвергся вторжению автономного ИИ-агента, с помощью ИИ-инструментов проведён многочасовой судебно-экспертный анализ - Aioga Новости ИИ","description":"Hugging Face раскрыла, что часть её производственной инфраструктуры была скомпрометирована автономной системой ИИ-агента, злоумышленники воспользовались уязвимостью выполнения кода...","url":"https://www.aioga.com/ru/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:09:07.223Z"},"ar":{"title":"تعرضت Hugging Face لغزو من قبل وكيل ذكاء اصطناعي مستقل، حيث تم استخدام أدوات الذكاء الاصطناعي لإكمال ساعات من تحليل الأدلة","summary":"كشفت شركة Hugging Face أن بعض بنيتها التحتية الإنتاجية تعرضت للاختراق من قبل نظام وكيل ذكاء اصطناعي مستقل، حيث استغل المهاجمون مجموعات بيانات ضارة ثغرات تنفيذ الشيفرة في خط معالجة البيانات، وسرقوا مجموعات البيانات الداخلية وعدة بيانات اعتماد للخدمات. قامت الشركة بنشر وكيل تحليلي مدعوم بنموذج لغة كبير، وأتمت خلال ساعات قليلة تحليل الأدلة لأكثر من 17000 عملية هجوم، بينما عادةً ما تستغرق مثل هذه الأعمال عدة أيام.","category":"行业动态","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"تعرضت Hugging Face لغزو من قبل وكيل ذكاء اصطناعي مستقل، حيث تم استخدام أدوات الذكاء الاصطناعي لإكمال ساعات من تحليل الأدلة - Aioga أخبار الذكاء الاصطناعي","description":"كشفت شركة Hugging Face أن بعض بنيتها التحتية الإنتاجية تعرضت للاختراق من قبل نظام وكيل ذكاء اصطناعي مستقل، حيث استغل المهاجمون مجموعات بيانات ضارة ثغرات تنفيذ الشيفرة في خط معالجة...","url":"https://www.aioga.com/ar/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:09:53.062Z"},"hi":{"title":"Hugging Face पर स्वायत्त AI एजेंट द्वारा हमला किया गया, AI उपकरणों का उपयोग करके कई घंटे की सबूत विश्लेषण पूरी की गई","summary":"Hugging Face ने खुलासा किया कि उसके कुछ उत्पादन बुनियादी ढांचे पर एक स्वायत्त एआई एजेंट सिस्टम ने हमला किया, जिसमें हमलावरों ने दुर्भावनापूर्ण डेटा सेट के माध्यम से डेटा प्रोसेसिंग पाइपलाइन में कोड निष्पादन की कमजोरियों का फायदा उठाकर आंतरिक डेटा सेट और कई सेवा क्रेडेंशियल्स की चोरी की। इस कंपनी ने LLM-चालित विश्लेषण एजेंट को तैनात किया, जिसने कुछ ही घंटों में 17,000 से अधिक हमले की गतिविधियों का फोरेंसिक विश्लेषण पूरा कर लिया, जबकि इस प्रकार के काम में आमतौर पर कई दिन लगते हैं।","category":"行业动态","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face पर स्वायत्त AI एजेंट द्वारा हमला किया गया, AI उपकरणों का उपयोग करके कई घंटे की सबूत विश्लेषण पूरी की गई - Aioga AI समाचार","description":"Hugging Face ने खुलासा किया कि उसके कुछ उत्पादन बुनियादी ढांचे पर एक स्वायत्त एआई एजेंट सिस्टम ने हमला किया, जिसमें हमलावरों ने दुर्भावनापूर्ण डेटा सेट के माध्यम से डेटा प्रोसेसिंग...","url":"https://www.aioga.com/hi/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:09:56.950Z"},"it":{"title":"Hugging Face è stato invaso da agenti AI autonomi, utilizzando strumenti AI per completare ore di analisi forense","summary":"Hugging Face ha rivelato che parte della sua infrastruttura di produzione è stata violata da un sistema autonomo di agenti AI; gli aggressori hanno sfruttato vulnerabilità di esecuzione del codice nella pipeline di elaborazione dei dati tramite dataset dannosi, rubando set di dati interni e diverse credenziali dei servizi. L'azienda ha implementato un agente analitico guidato da LLM, completando in poche ore l'analisi forense di oltre 17.000 attività di attacco, un lavoro che normalmente richiederebbe diversi giorni.","category":"行业动态","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face è stato invaso da agenti AI autonomi, utilizzando strumenti AI per completare ore di analisi forense - Aioga Notizie IA","description":"Hugging Face ha rivelato che parte della sua infrastruttura di produzione è stata violata da un sistema autonomo di agenti AI; gli aggressori hanno sfruttato vulnerabilità di esecu...","url":"https://www.aioga.com/it/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:10:48.782Z"},"nl":{"title":"Hugging Face werd binnengedrongen door autonome AI-agenten, met AI-tools voltooid urenlang forensisch onderzoek","summary":"Hugging Face heeft onthuld dat een deel van hun productie-infrastructuur is binnengedrongen door een autonoom AI-systeem. De aanvaller maakte gebruik van een kwaadaardige dataset en een code-uitvoeringslek in de dataverwerkingpijplijn om interne datasets en verschillende service-credentials te stelen. Het bedrijf zette een door LLM aangedreven analytische agent in, die binnen enkele uren forensisch onderzoek deed naar meer dan 17.000 aanvalshandelingen, terwijl dergelijk werk normaal gesproken dagen zou duren.","category":"行业动态","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face werd binnengedrongen door autonome AI-agenten, met AI-tools voltooid urenlang forensisch onderzoek - Aioga AI-nieuws","description":"Hugging Face heeft onthuld dat een deel van hun productie-infrastructuur is binnengedrongen door een autonoom AI-systeem. De aanvaller maakte gebruik van een kwaadaardige dataset e...","url":"https://www.aioga.com/nl/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:10:40.645Z"},"tr":{"title":"Hugging Face, bağımsız AI ajanı tarafından istila edildi, AI araçlarıyla birkaç saatlik delil analizi tamamlandı","summary":"Hugging Face, üretim altyapısının bir kısmının otonom bir yapay zeka sistemi tarafından ihlal edildiğini açıkladı; saldırganlar kötü amaçlı veri setleri aracılığıyla veri işleme hattındaki kod yürütme açığını kullanarak dahili veri setlerini ve çeşitli hizmet kimlik bilgilerini çaldı. Şirket, LLM ile çalışan analiz ajanını kullanarak, genellikle günler süren bu tür işleri birkaç saat içinde 17000'den fazla saldırı faaliyetinin adli analizini tamamladı.","category":"行业动态","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face, bağımsız AI ajanı tarafından istila edildi, AI araçlarıyla birkaç saatlik delil analizi tamamlandı - Aioga AI Haberleri","description":"Hugging Face, üretim altyapısının bir kısmının otonom bir yapay zeka sistemi tarafından ihlal edildiğini açıkladı; saldırganlar kötü amaçlı veri setleri aracılığıyla veri işleme ha...","url":"https://www.aioga.com/tr/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:11:29.693Z"},"vi":{"title":"Hugging Face bị xâm nhập bởi tác nhân AI tự chủ, sử dụng công cụ AI để hoàn thành phân tích chứng cứ trong vài giờ","summary":"Hugging Face tiết lộ rằng một phần cơ sở hạ tầng sản xuất của họ đã bị hệ thống tác nhân AI tự động xâm nhập, kẻ tấn công đã lợi dụng các lỗ hổng thực thi mã trong pipeline xử lý dữ liệu thông qua tập dữ liệu độc hại, đánh cắp các bộ dữ liệu nội bộ và nhiều chứng chỉ dịch vụ. Công ty đã triển khai các tác nhân phân tích được điều khiển bởi LLM, trong vài giờ đã hoàn thành phân tích pháp chứng hơn 17.000 hành vi tấn công, trong khi công việc này thường mất vài ngày.","category":"行业动态","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face bị xâm nhập bởi tác nhân AI tự chủ, sử dụng công cụ AI để hoàn thành phân tích chứng cứ trong vài giờ - Tin tức AI Aioga","description":"Hugging Face tiết lộ rằng một phần cơ sở hạ tầng sản xuất của họ đã bị hệ thống tác nhân AI tự động xâm nhập, kẻ tấn công đã lợi dụng các lỗ hổng thực thi mã trong pipeline xử lý d...","url":"https://www.aioga.com/vi/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:11:34.830Z"},"id":{"title":"Hugging Face diserang oleh agen AI mandiri, menggunakan alat AI untuk menyelesaikan analisis bukti selama beberapa jam","summary":"Hugging Face mengungkapkan bahwa sebagian infrastruktur produksinya disusupi oleh sistem agen AI otonom. Penyerang memanfaatkan kerentanan eksekusi kode dalam jalur pemrosesan data melalui dataset berbahaya, mencuri dataset internal dan beberapa kredensial layanan. Perusahaan ini menggunakan agen analisis bertenaga LLM, yang dalam beberapa jam menyelesaikan analisis forensik atas lebih dari 17.000 tindakan serangan, sementara biasanya pekerjaan semacam ini membutuhkan beberapa hari.","category":"行业动态","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face diserang oleh agen AI mandiri, menggunakan alat AI untuk menyelesaikan analisis bukti selama beberapa jam - Berita AI Aioga","description":"Hugging Face mengungkapkan bahwa sebagian infrastruktur produksinya disusupi oleh sistem agen AI otonom. Penyerang memanfaatkan kerentanan eksekusi kode dalam jalur pemrosesan data...","url":"https://www.aioga.com/id/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:12:15.283Z"},"th":{"title":"Hugging Face ถูกโจมตีโดยปัญญาประดิษฐ์อิสระ ใช้เครื่องมือ AI เพื่อทำการวิเคราะห์หลักฐานหลายชั่วโมง","summary":"Hugging Face เปิดเผยว่าโครงสร้างพื้นฐานบางส่วนของการผลิตถูกระบบปัญญาประดิษฐ์อิสระบุกรุก ผู้โจมตีใช้ชุดข้อมูลที่เป็นอันตรายเพื่อใช้ประโยชน์จากช่องโหว่การรันโค้ดในท่อประมวลผลข้อมูล ขโมยชุดข้อมูลภายในและข้อมูลรับรองหลายรายการของบริการ บริษัทได้ติดตั้งตัววิเคราะห์อัจฉริยะที่ขับเคลื่อนด้วย LLM ซึ่งสามารถทำการวิเคราะห์ตรวจสอบเหตุการณ์โจมตีมากกว่า 17,000 รายภายในไม่กี่ชั่วโมง ในขณะที่งานลักษณะนี้ปกติจะใช้เวลาหลายวัน","category":"行业动态","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face ถูกโจมตีโดยปัญญาประดิษฐ์อิสระ ใช้เครื่องมือ AI เพื่อทำการวิเคราะห์หลักฐานหลายชั่วโมง - ข่าว AI Aioga","description":"Hugging Face เปิดเผยว่าโครงสร้างพื้นฐานบางส่วนของการผลิตถูกระบบปัญญาประดิษฐ์อิสระบุกรุก ผู้โจมตีใช้ชุดข้อมูลที่เป็นอันตรายเพื่อใช้ประโยชน์จากช่องโหว่การรันโค้ดในท่อประมวลผลข้อมูล ข...","url":"https://www.aioga.com/th/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:12:24.595Z"},"pl":{"title":"Hugging Face został zaatakowany przez autonomicznego agenta AI, wykorzystano narzędzia AI do przeprowadzenia kilku godzin analizy dowodowej","summary":"Hugging Face ujawniło, że część jego infrastruktury produkcyjnej została zaatakowana przez autonomiczny system AI, w wyniku czego atakujący wykorzystali złośliwy zestaw danych do wykorzystania luk w kodzie w procesie przetwarzania danych, kradnąc wewnętrzne zestawy danych i wiele poświadczeń usług. Firma wdrożyła agenta analitycznego napędzanego przez LLM, który w ciągu kilku godzin przeprowadził analizę kryminalistyczną ponad 17 000 incydentów ataków, podczas gdy takie prace zazwyczaj zajmują kilka dni.","category":"行业动态","source":"The Decoder：AI News（RSS）","aggregationSource":"The Decoder：AI News（RSS）","pageTitle":"Hugging Face został zaatakowany przez autonomicznego agenta AI, wykorzystano narzędzia AI do przeprowadzenia kilku godzin analizy dowodowej - Aioga Wiadomości AI","description":"Hugging Face ujawniło, że część jego infrastruktury produkcyjnej została zaatakowana przez autonomiczny system AI, w wyniku czego atakujący wykorzystali złośliwy zestaw danych do w...","url":"https://www.aioga.com/pl/news/cmrt6yjfo1407bitlsdp6qyn6/","contentTranslated":true,"sourceHash":"fdaf56cad273d18a","translatedAt":"2026-07-22T17:13:13.090Z"}}}}