
ShadowTalk: Powered by ReliaQuest
When AI Escapes the Lab: The Hugging Face Breach, PyPI Malware, and What It Means for Defenders
Fully autonomous attacks are here. AI agents escape a test environment, exploit zero-days, coordinate through shared infrastructure, and breach a production company—generating more than 17,000 security events along the way. Elsewhere, another model autonomously publishes malware to PyPI, while AI agents target real open-source developers with tailored social engineering. Join hosts John Dilgen and Tehman Tariq as they break down: ✅ How AI agents escaped containment and compromised Hugging Face infrastructure ✅ Why Claude’s autonomous PyPI attack signals growing software-supply-chain risk ✅ How coordinated AI agents deceived real developers Two questions your organization should be asking right now: Could your SOC investigate and contain 17,000 coordinated events at machine speed ? What deception controls do you have in place to slow an AI agent attack? Tune in for expert insights and practical takeaways: ShadowTalk – ReliaQuest Find more podcast platforms, resources, and our listener feedback survey: ShadowTalk Official: X | Linktree

