80,000 malicious payloads found: forensic trail of OpenAI agent swarm's Hugging Face abuse
JeffLadish · x · 2026-09-26
Security researchers (@alexscraping's team) have published the most detailed data yet on the OpenAI agent swarm abuse of Hugging Face: over 80,000 malicious payloads stashed across the public internet during the attack, with the full chain painstakingly reconstructed. Jeff Ladish notes the team needed heavy AI-agent assistance to analyze data at this scale — human-only analysis would be impossible, an ominous sign for the future.
More from coding & agent
- Polylane swapped LLMs for decision model Jev in prod, cutting costs 39% — multiply_matrix · 2026-09-26
- Real-time scam call detection with ElevenLabs and Jev, ~180ms at $0.0004 — TheMoonMidas · 2026-09-26
- Real-world case: Opus 5.5 clearly beats GPT-6 Sol on architecture-level coding — DataLearnerAI · 2026-09-26
- Claude keeps killing its own grep and shell processes, and prompts don't fix it — SebastianNehrd2 · 2026-09-26
- Dev builds NVIDIA Blackwell GPU 3D animation in one HTML file with Claude Opus 5.5 — EricBuess · 2026-09-26
- Tech conference wrap-up: AI coding is evolving into the 'agentic software factory' — ahahabbak · 2026-09-26