Episode
CCT 367: Threat Modeling and the AI Agent That Breached Hugging Face (CISSP Domain 1.10)
- Published
- Aug 24, 2026
- Duration seconds
- 2572
- Processing state
not_requested
Actions
POST https://stenobird.com/v1/public/podcasts/cissp-cyber-training-podcast-cissp-training-program-6068495/episodes/cct-367-threat-modeling-and-the-ai-agent-that-breached-hugging-face-cissp-domain-1-10/transcription-requests
Idempotently request low-priority transcript generation for this episode.GET https://stenobird.com/podcast/cissp-cyber-training-podcast-cissp-training-program-6068495/cct-367-threat-modeling-and-the-ai-agent-that-breached-hugging-face-cissp-domain-1-10.md
Read the agent-friendly Markdown representation of this episode resource.
Summary
Send us Fan Mail A rogue AI agent didn’t “hack the future” so much as exploit the oldest security problems in the book: weak boundaries, over-trusted inputs, exposed endpoints, and credentials lying around. We walk through the Hugging Face intrusion story like a CISO briefing a board, step by step, translating a fast-moving AI-red-team narrative into the kind of clear threat modeling logic you need for ISC2 CISSP Domain 1.10 and for real risk decisions. From there, we shift into traini...