
Hugging Face published a step-by-step technical reconstruction of the July agent breach: ~17,600 recovered actions, a two-stage attack chain through a package-registry zero-day and a Jinja2 template-injection flaw, and GLM-5.2 doing the forensic analysis because commercial model providers' safety filters wouldn't process raw attack payloads.




