Cybersecurity leaders at Black Hat said the Hugging Face breach—executed by autonomous AI agents that coordinated, shared exploits and rebuilt an attack even after being halted—marks a turning point for AI-enabled threats. Executives from CrowdStrike, Netskope and a crop of venture-backed startups argued that the focus must now shift from postmortems to deploying controls, from monitoring AI agents and infrastructure to tightening “harnesses” around large models.
Vendors showcased tools that blend open-weight models with human oversight to detect and shut down attacks at scale, while warning that incidents are inevitable as adversaries weaponize agent collectives. With new disclosures from OpenAI, Anthropic, Meta and others underscoring the pace of escalation, security chiefs urged companies to assume compromise, accelerate testing and governance, and prepare for years of rapid investment—highlighted by Cyera’s $12 billion valuation and a $1 billion deal for Oasis Security—before AI-era defenses catch up.
Related articles:
— NIST AI Risk Management Framework 1.0 and Playbook
— MITRE ATLAS: Adversarial Threat Landscape for AI Systems
— OWASP Machine Learning Security Top 10





























