Tuesday, August 5, 2025

Basis AI Advances AI Safety With Hugging Face

As we speak, Hugging Face provides a brand new mannequin on common each 7 seconds, and the platform now hosts almost 1.9 million fashions accessible to builders worldwide. This unprecedented scale — pushed by contributors globally, spanning each trusted establishments and unbiased creators — fuels a wave of innovation whereas additionally reinforcing the necessity to safe the AI provide chain.

As highlighted in our earlier evaluation, AI provide chain dangers now permeate each stage of the AI lifecycle — from susceptible software program dependencies and malicious or backdoored mannequin recordsdata to poisoned or non-compliant datasets. Given this complexity, it’s more and more difficult for any single group to deal with these points alone. Efficient safety of the AI panorama requires shut collaboration throughout the neighborhood to safe AI.

At Cisco, we’re on a mission to assist each group on the planet securely execute their AI technique. As we speak, we’re taking this mission a step additional. We’re excited to announce a strategic relationship between the Basis AI group at Cisco and Hugging Face, bringing collectively the world’s main AI mannequin hub with Cisco’s experience in securing digital infrastructure.

As a part of this expanded collaboration, Cisco Basis AI will present the platform and scanning of each public file uploaded to Hugging Face — AI mannequin recordsdata and different recordsdata alike — in a unified malware scanning functionality powered by custom-fit detection capabilities in an up to date ClamAV engine.

By combining Hugging Face’s central function in open-source AI with Cisco’s complete malware scanning capabilities, this permits extra rigorous mannequin vetting, early detection of vulnerabilities, and shared risk intelligence — constructing better belief and stronger safety throughout the complete AI ecosystem.

File security scansFile security scans

“We’re thrilled to companion with Cisco Basis AI to assist safe Hugging Face customers. We’ve been scanning recordsdata with ClamAV, the free and open supply malware detection scanner from Cisco Talos, for a number of years. With ClamAV’s new replace we will now present complete safety towards each conventional malware and threats distinctive to AI fashions—all with a single instrument. We’re grateful to Cisco to turning into our companion to scan all recordsdata uploaded to Hugging Face. By combining our management in open-source AI with Cisco’s deep cybersecurity experience, we’re empowering organizations and people worldwide to undertake AI with confidence”

Julien Chaumond, CTO, Hugging Face

As well as, because of our collaboration, we’re democratizing AI mannequin antimalware:

  • ClamAV can now detect malicious code in AI fashions– We’re releasing this functionality to the world. Free of charge. Along with its protection of conventional malware, ClamAV can now detect deserialization dangers in widespread mannequin file codecs corresponding to .pt and .pkl (in milliseconds, not minutes). This enhanced performance is accessible right now for everybody utilizing ClamAV.
  • ClamAV is the one antivirus engine centered on AI threat in VirusTotal– ClamAV is the one antivirus engine to detect malicious fashions in each Hugging Face and VirusTotal – a well-liked risk intelligence platform that can scan uploaded fashions.
ClamAV antivirus engineClamAV antivirus engine

We’re proud to ship our work on AI provide chain safety to Cisco clients and now, the better AI and safety neighborhood. Extra is on the way in which to assist defend AI builders from provide chain dangers.

The Cisco Basis AI group not too long ago launched Cerberus, a 24/7 guard for the AI provide chain. Cerberus inspects fashions as they enter Hugging Face, sharing ends in standardized risk feeds that Cisco Safety merchandise use to construct and implement granular entry insurance policies for the AI provide chain.

With the discharge of ClamAV 1.5, Cisco brings deeper visibility into the AI mannequin provide chain to the safety neighborhood. ClamAV 1.5 provides native assist for figuring out AI mannequin recordsdata throughout scanning to permit for model-specific detection logic and safer dealing with of embedded threats. Along with our signature updates (which don’t require ClamAV 1.5) to ClamAV, ClamAV is now positioned as a foundational instrument for securing the rising AI mannequin ecosystem. These capabilities are additionally accessible throughout the Cisco portfolio of merchandise with our Talos risk intelligence providers.

Customers of Cisco Safe Entry can configure the right way to present entry to Hugging Face repositories, block entry to potential threats in AI fashions, block AI fashions with dangerous licenses, and implement compliance insurance policies on AI fashions that originate from delicate organizations or politically delicate areas.

We beforehand launched protections for Safe Endpoint, Safe E-mail Risk Protection, Safe Entry and Safe Firewall. All current customers of Cisco Safe Endpoint and E-mail Risk Protection are protected towards malicious AI Provide Chain artifacts.

For extra data on the Basis AI group, try our web site and be at liberty to ship us a message!


We’d love to listen to what you assume! Ask a query and keep related with Cisco Safety on social media.

Cisco Safety Social Media

LinkedIn
Fb
Instagram
X

Share:


Related Articles

LEAVE A REPLY

Please enter your comment!
Please enter your name here

Latest Articles