Hugging Face Hub now scans all public models and datasets with VirusTotal for malware checks
AI Impact Summary
Hugging Face is now automatically scanning all public models and datasets on the Hub using VirusTotal. The process uses file hashes to pull risk metadata without sharing raw contents, and surfaces detection counts and threat intelligence on repo/file pages. This strengthens supply-chain security for ML assets by enabling safer asset selection and potential integration into CI/CD workflows, reducing the likelihood of deploying malicious or compromised artifacts.
Affected Systems
- Date
- Date not specified
- Change type
- capability
- Severity
- info