Machine LearningHugging Face Typosquatting Attack Exposes Critical AI Supply Chain Flaws
On May 7, 2026, researchers uncovered a massive typosquatting campaign on Hugging Face mimicking an OpenAI repository. The malicious payload deployed a Rust-based infostealer on thousands of Windows machines, highlighting critical vulnerabilities in the AI software supply chain.








