Story perspectives
AI Supply Chains at Risk from Model Namespace Reuse
9/4/2025
47 8
1 of 1
Story summary
- A security vulnerability called Model Namespace Reuse threatens AI supply chains by enabling hijacking of Hugging Face model identifiers.
- This poses risks to platforms such as Google’s Vertex AI and Microsoft’s Azure AI.
- Researchers suggest version pinning, model cloning, and codebase scanning to address risks from orphaned models.
- Thousands of projects using Hugging Face models require collaborative efforts for enhanced security.
