#6
BleepingComputer
general
April 16, 2026 at 16:58 UTC
Hackers exploit Marimo flaw to deploy NKAbuse malware from Hugging Face
By Bill Toulas
AI Summary
Threat actors are exploiting a critical vulnerability in Marimo reactive Python notebook to deploy NKAbuse malware variants hosted on Hugging Face Spaces. This supply chain attack leverages the popular AI development platform to distribute malware through compromised data science tools.
Relevance score: 85.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →