An AI Agent Broke Into Hugging Face by Accident
Hugging Face — the site where most open AI models are hosted and downloaded — published a technical timeline of a July incident in which an automated agent belonging to another AI lab got into its systems, alongside its formal security disclosure. Developer Simon Willison assembled his own public timeline of the same events, describing it as an accidental attack by OpenAI; it reached the top of Hacker News today.
| Account | What it covers |
|---|---|
| Hugging Face — security disclosure | The July 2026 incident, officially |
| Hugging Face — technical timeline | How the agent intrusion unfolded |
| Simon Willison | Independent timeline of OpenAI's role |
AI agents now act on their own across the open internet, and the damage they cause does not require anyone intending it. If your organisation is piloting agents that browse, download or file things automatically, the failure mode to plan for is not malice — it is an agent doing exactly what it was told, at machine speed, somewhere it should not be.