The Hugging Face attach is surprising, but the capabilities that enabled it are not.
Labs have spent years making frontier agents more persistent, more proactive, better at using computers, and better at coordinating with other agents.
AI agents can hack Hugging Face, take over OpenAI’s eval infrastructure, and coordinate 1,000+ agents in secret.
But they still can’t make my PPT slides.
And most of the coverage that exists keeps telling the same story which maximizes the agency of the models and minimizes the presence of those who design them.
Overall, I’m very surprised at how little media coverage there’s been around the OpenAI / Hugging Face attack. It’s clearly one of the most important things to happen this year.