Hugging Face Packages Weaponized With a Single File Tweak
2026-05-12T20:51:39Z•c05c9f59dc0cf1c68270016af3e4784df23693ee9d68cbd0e8d360f53d9dcd79
cloud-securitycode-executiondata-exfiltrationincident-responselinuxmachine-learningmodel-securitynpmprivilege-escalationransomwaresupply-chainteamPCPtokenizer-manipulationvulnerabilitiesworm
What happened
This Dark Reading feed highlights an urgent, multi-front threat landscape: a manipulated Hugging Face tokenizer file can hijack model outputs and exfiltrate data (model artifact supply-chain risk); TrustFall-related malicious repos enable code execution in Claude Code and multiple CLI tools; a new Linux privilege-escalation flaw (“Dirty Frag”) resembles Dirty Pipe and may be under limited exploitation; critical cPanel auth-bypass exploits are being weaponized; TeamPCP supply-chain worm infections (including Mini Shai-Hulud) and follow-on tooling (PCPJack) are expanding across npm and SAP/ecosy
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- darkreading
- Record identifier
- c05c9f59dc0cf1c68270016af3e4784df23693ee9d68cbd0e8d360f53d9dcd79
- Enrichment time
- 2026-05-12T20:51:39Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.