# A fake OpenAI repository has taken top spot on Hugging Face — but all it does is push infostealer malware

> Attackers typosquatted an OpenAI repo on HuggingFace, distributing an infostealer disguised as a “privacy filter” model The malware disabled SSL checks, escalated privileges, and deployed the sefirah payload to steal…

- **Source:** [TechRadar](https://www.techradar.com/pro/security/a-fake-openai-repository-has-taken-top-spot-on-hugging-face-but-all-it-does-is-push-infostealer-malware?utm_source=gearopen.com&utm_medium=referral&utm_campaign=feed&utm_content=6a01f787f34ad2564c98afe4)
- **Published:** 2026-05-11
- **Category:** AI & Bots
- **Tags:** #openai #crypto #infostealer #repository #fake #filter #huggingface #malware
- **Canonical:** http://localhost:4321/a/6a01f787f34ad2564c98afe4

---

_GearOpen's distilled summary. The full original article is published at TechRadar (source link above); GearOpen does not republish the source's full text._
