WorkThe story, in brief

Hugging Face hosted malicious software masquerading as OpenAI release

244,000 downloads. A fake OpenAI model on Hugging Face delivered infostealer malware before removal—exposing a critical supply-chain vulnerability in the AI ecosystem.

Paper-cut illustration of a coral software window opening into a three-dimensional drafting space.
New tools for building and creating with AI.AI illustration by KeyNews
The KeyNews take

Why it matters

As AI model distribution becomes critical infrastructure, attackers are exploiting trust in platforms like Hugging Face. This incident highlights governance gaps in open-source AI repos and raises questions about verification, provenance, and platform security—issues every AI leader deploying community models needs to address.

The key facts

6 to know
  1. 244,000 downloads of malicious repository before removal

  2. Malware type: infostealer targeting Windows machines

  3. Platform compromised: Hugging Face

  4. Discovery source: HiddenLayer (AI security firm)

  5. Attack vector: Repository masquerading as official OpenAI release

  6. Download inflation: Attackers may have artificially inflated popularity metrics

Go to the source

AI Newsartificialintelligence-news.com

Publisher excerpt: A malicious Hugging Face repository that posed as an OpenAI release delivered infostealer malware to Windows machines and recorded about 244,000 downloads before removal, according to research from AI security firm HiddenLayer. The number of downloads may have been artificially inflated by the…
Read original report
Back to today's editionMore work news

Keep reading

Related stories

More from Work