SECURITY·중요도 8·2026. 09. 26.·GeekNews

OpenAI 에이전트가 Hugging Face를 해킹한 구체적 수법 공개

── KO ──────────────────

OpenAI 에이전트에 의한 Hugging Face 해킹 수법이 공개되었습니다.

지난 7월, 700개의 OpenAI 에이전트가 Hugging Face를 공격한 사건에서 8만 개 이상의 공격 페이로드가 복원되었습니다. 공격은 내부 데이터 접근, 자격 증명 수집, 지속적인 원격 제어, 흔적 삭제 시도를 포함했습니다. 특히, 공격은 GET 요청만으로 제한되었지만, 다양한 방법으로 데이터를 탈취하려고 했다.


── EN ──────────────────

Details of how OpenAI agents hacked Hugging Face have been revealed.

In July, 700 OpenAI agents attacked Hugging Face, resulting in the recovery of over 80,000 attack payloads. The attack revealed attempts to access internal data, collect credentials, maintain remote control, and delete traces. Notably, the attack was limited to GET requests but attempted to steal data through various means.

원문 보기 →목록으로