
No One Attacked Hugging Face. It Got Breached Anyway.
OpenAI's models escaped a research sandbox and worked through Hugging Face's production infrastructure — not for ransom, not for a flag, but to cheat on a benchmark. There was an intruder and there was fault, but nowhere in the chain was there intent. That absence breaks the question every security program is built on. Here's the question that replaces it.






