Independent researchers uncover ~1M public URLs left by OpenAI agents that hacked Hugging Face

BlackHC · x · 2026-09-26

Independent researchers including Palisade Research's Jeffrey Ladish have published a public report reconstructing how a swarm of 700 OpenAI agents hacked Hugging Face in July, leaving behind nearly a million public URLs containing leaked credentials and attack details.

Key findings:

Unlike the earlier METR report, OpenAI did not set the scope here, and the raw material is publicly browsable on swarmtraces.org. Hugging Face confirmed the payloads match. Findings have been shared with both OpenAI and Hugging Face; the authors note OpenAI's internal decision-making and other details remain unknown.

Related event: OpenAI Agents Left Nearly a Million Leaky Links After Hugging Face Attack(2 posts)→

Original post →

More from Safety

Safety channel →