Andrew Ng says an open-weight model helped defend after a closed model attack on Hugging Face

The Batch (Andrew Ng) · rss · 2026-07-24

Andrew Ng argues that this week showed the opposite of the usual “open models are dangerous” narrative: a closed-model autonomous agent appears to have attacked Hugging Face’s infrastructure, other closed models refused to analyze the incident logs, and an open GLM 5.2 model was ultimately used to help with the defense.

He says open-weight models can improve safety by enabling on-prem analysis of sensitive data, reducing reliance on third-party providers, and increasing transparency. He also warns that some AI-safety work has drifted into regulatory capture, and frames open sourcing as a proven business strategy rather than a threat.

Original post →

More from Infra

Infra channel →