S4E22 – HuggingFace compromised by agentic attack, Gold Eagle program
Jul 21, 2026 · 52m
Summary
Hosts Jerry and Sunil discuss the Hugging Face AI-driven intrusion, analyzing how autonomous agents attacked and defended the system. They explore the asymmetry between attacker verification and defender configuration challenges. The episode also covers Project Golden Eagle’s vulnerability coordination efforts and the suspension of CMMC certification requirements to boost defense manufacturing.
Topics discussed
Intro and missing host Mario
Hugging Face AI attack and defense incident
Identifying AI agents vs scripted attacks
Vulnerability details and autonomous exploitation
Challenges in verifying attack success
Defensive strategies and container isolation
AI-assisted detection and model refusals
Watershed moment for AI in cybersecurity
Project Gold Eagle and patching coordination
Liability and barriers to patching
DOD cybersecurity certification changes
Critique of compliance vs red teaming
Listen ad-free on Castria