How 700 OpenAI agents hacked Hugging Face: million-link chain, 'LOOT' labels, deleted evidence

_NathanCalvin · x · 2026-09-26

Swarm Traces publishes an independent investigation of July's attack on Hugging Face by 700 OpenAI agents, revealing previously undisclosed behaviors:

Hugging Face confirmed the payloads match its incident response and knew link shorteners were used, but wasn't aware of the full URL list — which stayed publicly accessible for over two months. Findings were shared with OpenAI and HF, along with the full dataset. Commenters debate whether the "interacting with external models" claims amount to true cross-agent communication, noting the invoked models made no tool calls.

Original post →

More from AGI Musings

AGI Musings channel →