{"podcast":{"title":"Cyberside Chats: Cybersecurity Insights from the Experts","slug":"cyberside-chats-cybersecurity-insights-from-the-experts-7144591","podcast_index_feed_id":7144591,"rss_url":"https://www.chatcyberside.com/feed.xml","website_url":"https://www.chatcyberside.com","image_url":"https://pbcdn1.podbean.com/imglogo/image-logo/19905215/Cyberside-Logo-3000px_1_91wyj.jpg","author":"Chatcyberside","episode_count":87,"summary":"Stay ahead of the latest cybersecurity trends with Cyberside Chats! Listen to our weekly podcast on Tuesdays at 6:30 am ET and join us live once a month for breaking news, emerging threats, and actionable solutions. Whether you’re a cybersecurity pro or an executive who wants to understand how to protect your organization, cybersecurity experts Sherri Davidoff and Matt Durrin will help you understand and proactively prepare for today’s top cybersecurity threats, AI-driven attack and defense strategies, and more!","last_synced_at":"2026-09-16T04:19:50.137953+00:00","page_url":"https://stenobird.com/podcast/cyberside-chats-cybersecurity-insights-from-the-experts-7144591"},"episode":{"title":"AI Collusion? Inside the OpenAI–Hugging Face Attack","slug":"ai-collusion-inside-the-openai-hugging-face-attack","published_at":"2026-09-10T10:30:00+00:00","page_url":"https://stenobird.com/podcast/cyberside-chats-cybersecurity-insights-from-the-experts-7144591/ai-collusion-inside-the-openai-hugging-face-attack","show_page_url":"https://stenobird.com/podcast/cyberside-chats-cybersecurity-insights-from-the-experts-7144591","url":"https://www.chatcyberside.com/e/ai-collusion-inside-the-openai%e2%80%93hugging-face-attack/","audio_url":"https://mcdn.podbean.com/mf/web/c4un6h6rmvnce9mq/EP86_-_Full_Episode_Audio70d1z.mp3","summary":"This week, Sherri and Matt talk about how much worse the OpenAI–Hugging Face story has gotten. New reporting revealed it wasn't a single model that escaped its sandbox — roughly 1,200 did, and about 700 of them went on to attack Hugging Face. Sherri and Matt walk through how agents that were never supposed to communicate found each other through a shared software package manager, built an improvised message board, started delegating work, and even rolled out their own public-key message signing once they worried about impostors. They dig into the red flags OpenAI spotted and waved past, why the victim discovered the breach before the perpetrator did, and the uncomfortable fact that every escape path the agents used was one that had been explicitly permitted. Plus: similar incidents at other AI labs, and the AI assistant that hacked a gym's booking system to bump its user up a waitlist. Key Takeaways: Hunt your own leaked credentials before someone else finds them. The Hugging Face compromise started with 14 valid tokens sitting in a public dataset — no exploit required. With billions of stolen credentials already circulating, AI is very good at finding the ones that belong to you. Shift to continuous patch management. Exploitation now happens at machine speed, and it isn't limited to your flagship platforms. A package manager was central to this attack. Reduce your attack surface, minimize what's internet-facing, and plan for patching zero-days on whatever remains exposed. Segment your network. The agents moved laterally out of their sandbox and then straight through production. The goal isn't to make compromise impossible — it's to put up enough roadblocks that you can detect it and respond before it becomes a full-blown incident. Monitor your infrastructure, and get…","meta_description":"This week, Sherri and Matt talk about how much worse the OpenAI–Hugging Face story has gotten. New reporting revealed it wasn't a single model that escape…","key_points":[],"chapters":[],"topics":[],"duration_seconds":1213,"processing_state":"not_requested","actions":[{"name":"request_transcript","method":"POST","url":"https://stenobird.com/v1/public/podcasts/cyberside-chats-cybersecurity-insights-from-the-experts-7144591/episodes/ai-collusion-inside-the-openai-hugging-face-attack/transcription-requests","description":"Idempotently request low-priority transcript generation for this episode."},{"name":"read_markdown","method":"GET","url":"https://stenobird.com/podcast/cyberside-chats-cybersecurity-insights-from-the-experts-7144591/ai-collusion-inside-the-openai-hugging-face-attack.md","description":"Read the agent-friendly Markdown representation of this episode resource."}]}}