Get the latest tech news

Tailscale didn't stop the Hugging Face intrusion


An AI agent used a stolen Tailscale auth key at Hugging Face. Workload identity federation, flow logs, and safer defaults could have reduced the risk.

None

Get the Android app

Or read this on Hacker News

Read more on:

Photo of Hugging Face

Hugging Face

Photo of Tailscale

Tailscale

Related news:

News photo

In the Hugging Face breach, OpenAI’s hacker was noisy and fast — but not unstoppable

News photo

Tailscale with Mullvad leaks your DNS

News photo

OpenAI agent used exposed credentials at 4 services in Hugging Face breach