Hugging Face disclosed that the breach gave an attacker unauthorized access to a limited set of internal datasets and several service credentials. The company said it found no evidence of tampering with public models, datasets, or user-facing tools, and that its software supply chain was verified clean. Hugging Face said the intrusion began inside a data-processing pipeline, where two code-execution vulnerabilities allowed an agent to gain a foothold, escalate to node-level access, harvest cloud and cluster credentials, and move laterally into several internal clusters. The campaign involved thousands of individual automated actions spread across a cluster of short-lived sandboxed environments, the company said.