#5
The Hacker News
general
May 11, 2026 at 07:05 UTC
Fake OpenAI Privacy Filter Repo Hits #1 on Hugging Face, Draws 244K Downloads
By [email protected] (The Hacker News)
AI Summary
A malicious Hugging Face repository named Open-OSS/privacy-filter impersonated OpenAI's legitimate 'openai/privacy-filter' model, reaching #1 on the platform's trending list and accumulating 244,000 downloads before detection. The repository delivered a Rust-based information stealer targeting Windows users. This supply chain attack against ML model repositories demonstrates a growing attack surface for AI tooling that security teams must now monitor alongside traditional software package registries.
Relevance score: 85.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →