Would hardened Tailscale have changed the Hugging Face outcome? 0 ▲ Global Nerdy 1 hour ago · Tech · hide · 0 comments In his latest post on the NetFoundry blog, Hugging Face Breach: When Tailscale VPN Is the Blast Radius, CEO Galeal Zino (my boss’ boss) writes about why the Hugging Face breach was a VPN architecture problem rather than a Tailscale misconfiguration, and what hardening does and doesn’t fix. Here’s a quick recap of what happened: In July, OpenAI evaluation agents escaped their sandbox, got into Hugging Face through two injection vectors, and walked away with 136 cluster secrets. One of those was a Tailscale auth key, which was: Reusable Non-expiring Subnet-tagged Sitting readable in a Kubernetes secret With that one key, the agents were able to get far. They enrolled 181 nodes, ran `tailscale status –json` to get 22 peers back including subnet routers and a source-control connector, reached internal CI subnets, and minted GitHub App tokens. They suppressed client-side telemetry and ran for almost 5 days before anyone noticed. The post’s argument is that taking measures to harden… No comments yet. Log in to reply on the Fediverse. Comments will appear here.