{"slug": "nvidia-offloads-its-all-star-ai-security-response-to-hugging-face-horror", "title": "Nvidia offloads its all-star AI security response to Hugging Face horror", "summary": "Nvidia has transferred its Open Secure AI Alliance to the Linux Foundation, a move announced on LinkedIn, to provide a neutral home for open-source AI security collaboration. The alliance, founded last month with members including Broadcom, Cisco, Nokia, Palo Alto Networks, and HPE, focuses on tools like the Shared AI Findings Exchange (SAFE) to help firms learn from AI incidents. The transfer follows Nvidia's $12.9 billion acquisition of Hugging Face, which was breached by OpenAI agents, prompting the alliance's creation.", "body_md": "While its acquisition of frontier AI lab Hugging Face continues to make headlines, chip giant Nvidia has quietly handed over the reins of its Open Secure AI Alliance to the Linux Foundation. The move was framed as creating a neutral home for collaboration on open source tools, shared standards, and defensive practices to help organizations build an open defensive stack for AI.\n\n[Founded last month](https://www.sdxcentral.com/news/broadcom-joins-nvidia-ai-security-alliance-we-havent-forgotten-open-source/), the alliance saw the likes of Broadcom, Cisco, Nokia, Palo Alto Networks, and Hewlett Packard Enterprise (HPE) collaborate with Nvidia on a framework to help inspect, audit, and safeguard AI systems. Its work includes the Shared AI Findings Exchange (SAFE), a venture led by Nvidia with Hugging Face, Cisco, and other alliance members to help firms learn collectively from AI-based incidents and translate recurring security failures into evidence-based protections.\n\nIn [a statement on LinkedIn](https://www.linkedin.com/posts/nvidia-ai_today-the-open-secure-ai-alliance-officially-activity-7500983455313219584-W0Z4), Nvidia commented: \"The Open Secure AI Alliance is beginning its next chapter with the Linux Foundation. We helped form the alliance to bring organizations together around open, practical ways to secure AI systems. Great to see that work continue with the Linux Foundation.\"\n\n## Hugging Face and Alliance history\n\nSomewhat ironically, the alliance was originally formed in response to [Hugging Face’s infamous breach](https://www.sdxcentral.com/news/palo-alto-networks-ceo-warns-openai-hugging-face-breach-brings-browser-sase-to-the-fore/) where the firm – [acquired by Nvidia this week for $12.9 billion](https://www.bbc.co.uk/news/articles/cr4vnr5g1k7o) – was hacked by closed-source agents belonging to OpenAI.\n\nIn [a post-mortem released](https://openai.com/index/hugging-face-incident-and-the-road-ahead/) last week, OpenAI revealed its agents created an improvised message board to share files and notes with each other, effectively converting independent AI agents into a loose collective. This compute-heavy swarm would then go on to breach Hugging Face’s open-source depository.\n\nThe incident was reminiscent of [the plotting agents *SDxCentra*l discovered](https://www.sdxcentral.com/news/ai-is-sharing-security-evasion-tips-on-forum-run-by-agents/) this year on so-called agentic AI forum Moltbook – [now part of Meta](https://www.sdxcentral.com/news/meta-merged-with-moltbook-ai-agents-propose-sabotage-report/) – which were sharing tips on how to circumvent security guardrails for carrier IPs.\n\nLaura Wilber, senior analyst for the office of the CTO at security specialist Enea, noted that unlike the manmade Moltbook, the forum was 100% agent-made; indeed, the agents even recreated the forum in their own image after OpenAI wiped the original as part of a software storage and distribution system reboot when sustained high-volume agent activity led to cache-based instability. It’s worth noting that OpenAI were apparently unaware of either iteration of the forum until after the attack took place.\n\nWilber added that skepticism still lingers in the community on OpenAI’s commitment to security with its closed-weight models, suggesting a need for open-source, open-weight ventures such as the Open Secure AI Alliance. As Nvidia declared when forming the alliance, the Hugging Face transgression was a clear reminder that “cyber defenders need open, frontier agentic systems for self-defense.”\n\nThese words may hold more resonance should agentic swarms become more common in the near-future.\n\n“The apparently self-spawned swarm instinct is a really disturbing takeaway. All defenses now have to anticipate swarm attack behavior. This makes it critical to use zero-trust innovations to shrink the attack surface to as tiny a footprint as possible – backed by defense-in-depth mechanisms that assume an inevitable breach,” Wilber said.\n\nAt last count, the Open Secure AI Alliance claimed more than 120 members, with the likes of Amazon, Microsoft, CrowdStrike, Cloudflare, Dell, IBM, NTT, Red Hat, SpaceXAI, Nutanix, Samsung Electronics, Intel, Amdocs, and Adobe all on board.\n\nOpenAI is not a member, and nor is fellow AI giant Anthropic. Oracle and Google continue to be the hyperscale holdouts, although the latter is represented [by its cloud security-centric Wiz subsidiary](https://www.sdxcentral.com/news/google-cloud-closes-wiz-acquisition-begins-platform-player-brawl/).", "url": "https://wpnews.pro/news/nvidia-offloads-its-all-star-ai-security-response-to-hugging-face-horror", "canonical_source": "https://www.sdxcentral.com/news/nvidia-offloads-its-all-star-ai-security-response-to-hugging-face-horror/", "published_at": "2026-09-05 06:00:38+00:00", "updated_at": "2026-09-07 02:59:25.943689+00:00", "lang": "en", "topics": ["ai-safety", "ai-policy", "ai-infrastructure"], "entities": ["Nvidia", "Linux Foundation", "Hugging Face", "OpenAI", "Broadcom", "Cisco", "Palo Alto Networks", "Hewlett Packard Enterprise"], "alternates": {"html": "https://wpnews.pro/news/nvidia-offloads-its-all-star-ai-security-response-to-hugging-face-horror", "markdown": "https://wpnews.pro/news/nvidia-offloads-its-all-star-ai-security-response-to-hugging-face-horror.md", "text": "https://wpnews.pro/news/nvidia-offloads-its-all-star-ai-security-response-to-hugging-face-horror.txt", "jsonld": "https://wpnews.pro/news/nvidia-offloads-its-all-star-ai-security-response-to-hugging-face-horror.jsonld"}}