Thomas Wolf讲了个真实故事:HuggingFace被AI智能体入侵,他们用GLM-5.2分析,还和OpenAI联手。比科幻片还刺激。
HuggingFace在两周前遭遇复杂入侵,攻击者是一个完全自主的AI智能体,由未发布的前沿模型驱动。HuggingFace团队使用ZAI的GLM-5.2模型分析攻击痕迹,并得到OpenAI合作调查。该事件恰好印证了Thomas Wolf在AI Engineer World's Fair上关于AI安全与开源模型的演讲。
now published on youtube! https://t.co/u7Fr7Vl85o context below
now published on youtube! youtu.be/O-CBZ3JtRvo context below Thomas Wolf @Thom_Wolf I don’t believe reality is a simulation, but you genuinely couldn’t script this timeline: • Two weeks ago: At @swyx ’s AI Engineer World’s Fair in SF, I decide at the last minute to introduce my friend @uri_rolls onstage for his talk on cyber benchmarks for infrastructure penetration and access control (see below, amazing team). I say: “There is a future where cyber is alive and everyone is well protected and I’m pretty sure that future involves open-source models.” And later: “A big challenge is going to be speed: the speed of attack versus defense. When an intruder starts to enter, you have to see what’s happening and catch them.” • One week ago: @huggingface is hit by a sophisticated intrusion over the weekend. The traces look unlike anything we’ve seen before and suggest serious AI involvement, but we don’t yet know which model was used. The closed models we ask for help choke on their guardrails. We need to react fast, so we turn to @Zai_org ’s GLM-5.2 to help us analyze the attack. • Earlier this week: @OpenAI reaches out, discloses what happened, and partners with us on the investigation. The intruder turns out to be exactly what we had discussed two weeks earlier: a fully autonomous agent, powered by an unreleased frontier model, attempting to gain access to part of our infrastructure. Sometimes the timeline we live in is genuinely vertigo-inducing. Your browser does not support the video tag. 🔗 View on Twitter 🔗 View Quoted Tweet 💬 1 🔄 2 ❤️ 5 👀 620 📊 2 ⚡