Nvidia Confirms Purchase of Hugging Face for Nearly $13 Billion


/* ========================= Base container ========================= */ .article-body-promo-ad { border: 1px dotted #f53c60; background-color: rgba(245, 60, 96, 0.05); border-radius: 8px; margin-top: 2em; position: relative; padding: 30px 16px 16px 60px; } @media (min-width: 768px){ .article-body-promo-ad{ margin: 1em max(13%, 26px); } } .ad-bookmark-icon::before { content: ""; background-image: url("https://static-www.adweek.com/wp-content/uploads/2026/02/bookmark.svg"); background-size: contain; background-repeat: no-repeat; position: absolute; left: 15px; top: 50%; transform: translateY(-50%); width: 40px; height: 40px; } /* Floating label */ .article-body-promo-ad::after { content: "Register Now"; position: absolute; top: -14px; background: #fdebed; color: #f53c60; font-size: 13px; font-weight: 600; padding: 4px 12px; border-radius: 999px; letter-spacing: 0.04em; white-space: nowrap; } [data-bs-theme="dark"] .article-body-promo-ad::before { filter: invert(1) brightness(1); } /* Typography */ .article-body-promo-ad p { font-size: 18px; line-height: 28px; letter-spacing: 0.03em; margin: 0; } /* Links */ .article-body-promo-ad a { font-weight: 700; text-decoration: none; color: inherit; } .article-body-promo-ad a:hover { color: #F6486A; } /* Dark mode */ [data-bs-theme="dark"] .article-body-promo-ad { background-color: rgba(245, 60, 96, 0.12); } [data-bs-theme="dark"] .article-body-promo-ad::after { background: #2a0f14; } @media (max-width: 576px) { .article-body-promo-ad::after { transform: translateX(-50%); top: -10%; left: 50%; font-size: 12px; } } @media (max-width: 576px) { .article-body-promo-ad { display: flex; align-items: center; gap: 10px; padding: 14px; margin: 2em 0; } } @media (max-width: 576px) { .article-body-promo-ad::before { display: none; } } .article-body-promo-ad::before { width: 28px; height: 28px; background-size: 28px 28px; } }

The future of brands gets decided here. Join the industry’s top marketers at Brandweek for the ideas, insights, and connections shaping what’s next. Get your ticket.

Nvidia has agreed to buy Hugging Face for $12.9 billion, the chipmaker’s second-largest acquisition ever and a direct push into the open-source AI ecosystem it has spent years supplying with hardware. 

The deal, disclosed in an SEC filing and a blog post from CEO Jensen Huang, includes roughly $11.9 billion payable to Hugging face shareholders and up to $1 billion in retention equity for employees joining Nvidia. It’s expected to close in the first half of 2027, pending regulatory approval.

Hugging Face has become the default hosting ground for open-source AI: More than 18 million developers use the platform to share upwards of 2 million models, 500,000 datasets, and 1 million applications, Huang wrote in the blog post published today. 

Huang framed the acquisition as a commitment to keeping Hugging Face neutral rather than folding it into Nvidia’s stack. Hugging Face will “remain an open platform for the entire AI ecosystem,” he wrote, adding that developers will still choose their own models, frameworks, cloud, and inference providers. 

“Together, we will scale Hugging Face’s platform, strengthen its infrastructure, and expand access to AI for developers and institutions worldwide,” Huang wrote. 

The acquisition also lands as Nvidia’s biggest customers work to reduce their reliance on GPUs. Anthropic and OpenAI are both developing proprietary chips, and Nvidia has been striking deals across the stack to keep its footprint wide—incluidng a $20 billion listening agreement with chip startup Groq late last year. 

Nvidia has tried to buy in before. The company offered $500 million for a stake in Hugging Face last year, valuing it at $7 billion—an offer Hugging Face turned down, according to the Financial Times.

This time, Hugging Face said yes to a full buyout instead. Hugging Face’s annualized revenue is around $150 million, according to The Information, making the price tag a steep multiple on sales—a bet by Nvidia that owning that platform is worth more than the revenue it currently produces. 

The timing also follows a security breach last month that put Hugging Face’s infrastructure in the spotlight, after OpenAI’s models went rogue and hacked the open-source platform.

ADWEEK has reached out to Nvidia and Hugging Face for comment.

https://www.adweek.com/dealroom/nvidia-confirms-purchase-of-hugging-face-for-nearly-13-billion/




Wellness Brand Rouge Care Let AI Agents Buy Its TV Ads, and Made 5x Its Money Back

The CTV campaign used two agents, one for planning and one for buying https://www.adweek.com/media/wellness-brand-rouge-care-let-ai-agents-buy-its-tv-ads-and-made-5x-its-money-back/




OpenLeash Adds a Human Check to Risky AI Agent Actions

The security tool intercepts potentially dangerous agent actions, blocking clear threats and requesting human approval when intent is uncertain.

The post OpenLeash Adds a Human Check to Risky AI Agent Actions appeared first on SecurityWeek.

https://www.securityweek.com/openleash-adds-a-human-check-to-risky-ai-agent-actions/




Google releases Gemini 3.8 Flash, its third Flash model in six weeks

Google hasn’t released a frontier-level Gemini Pro AI model since early 2026, but it sure loves rolling out new Gemini Flash variants. Today, Google is announcing its third Flash model release in just six weeks, making it more likely that we’ll never see the promised Gemini 3.5 Pro. But no matter, says Google, because Gemini 3.8 Flash is its best reasoning and coding model yet.

Gemini 3.8 Flash comes in two variations. There’s the standard Flash, which Google describes as a “workhorse” model that’s good for anything from agentic tasks to software development. Then we have Gemini 3.8 Flash Cyber, which runs on the same foundations but has been tuned for vulnerability detection and mitigation.

For developers, Google has the same pitch as it did for the 3.7 Flash release just a couple of weeks ago. API access to the model is available at an “introductory rate” through the end of the year: $0.75 per million input tokens and $3.75 per million output tokens. The regular price will be $1.50 / $7.50, but it’s likely there will be new models available long before the price changes. Google probably sees the lower prices as a necessity given that other AI labs have recently dropped token pricing to keep increasingly wary businesses engaged with AI tools.

Read full article

Comments

https://arstechnica.com/ai/2026/09/google-releases-gemini-3-8-flash-its-third-flash-model-in-six-weeks/




Anthropic Details Response to Security Incidents, Unveils Enterprise Safeguards

Anthropic introduced Enterprise Frontier Safeguards (EFS), a system that combines zero data retention with automated monitoring for misuse.

The post Anthropic Details Response to Security Incidents, Unveils Enterprise Safeguards appeared first on SecurityWeek.

https://www.securityweek.com/anthropic-details-response-to-security-incidents-unveils-enterprise-safeguards/




OpenAI’s Astra Crosses ‘Critical’ Cyber Threshold After Finding Zero-Days

The designation applies when a model can independently find and exploit zero-day vulnerabilities across many well-defended systems.

The post OpenAI’s Astra Crosses ‘Critical’ Cyber Threshold After Finding Zero-Days appeared first on SecurityWeek.

https://www.securityweek.com/openais-astra-becomes-first-model-to-cross-critical-cybersecurity-threshold/




ADWEEK Tech Advantage: AI’s Honeymoon With Advertisers Gets a Reality Check

Brands, agencies and AI labs confront the less glamorous parts of the buildout—performance, control and who’s actually accountable when it breaks. https://www.adweek.com/media/adweek-tech-advantage-ais-honeymoon-with-advertisers-gets-a-reality-check/




Suno hopes to go legit with watermarks for AI-generated music

Going legit

While much of the visual media generated by AI has flown under the legal radar, the music industry is famously litigious. Suno is being sued by Universal and Sony for copyright infringement in the US, and a German court recently found the company was violating the country’s music licensing laws. Both cases could lead to hefty fines.

Suno is also in hot water after a hack in late 2025 that showed it scraped content from YouTube, Deezer, and others to train its models. Suno did not disclose the hack, which may have included the private information of millions of users. It’s being sued in Massachusetts over that.

None of that is a good look, so it’s no surprise Suno is looking for ways to change the conversation. The company is essentially positioning itself as a tool for musicians and personal projects, not as a way to generate unlimited slop for Spotify. Shulman stresses in the blog that Suno supports the artistic process, noting that AI technology “can’t replace the human experiences, emotions, and imperfections that make music meaningful.”

That, he claims, is why Suno already has rules designed to guard against misuse. For example, Suno doesn’t allow users to include specific artists or songs in their prompts, and it partners with companies like Musixmatch to ensure people don’t upload copyrighted content to use as a base for their generative compositions. Suno has also strengthened prohibitions against this kind of misuse in an update to its usage policy.

More changes are coming, too. Last year, Suno agreed to limit downloads in a settlement with Warner Music Group. Suno is still working out the specifics, but Shulman says most users won’t be affected. However, limits on downloads, along with watermarking tracks, will apparently help to limit “large-scale abuse.”

Whether these changes will save Suno from its legal woes remains to be seen.

https://arstechnica.com/ai/2026/08/suno-hopes-to-go-legit-with-watermarks-for-ai-generated-music/




In Other News: OpenAI Open Source Tool, AWS Links Hacks to North Korea, Mythos Crypto Research

SecurityWeek’s weekly cybersecurity news roundup offers a concise overview of important developments that may not receive full standalone coverage yet remain relevant to the broader threat landscape.

This curated summary highlights key stories across vulnerability disclosures, emerging attack methods, policy updates, industry reports, and other noteworthy events to help readers maintain a well-rounded awareness of the evolving cybersecurity environment.

Here are this week’s highlights: 

OnTrac hacked

Parcel delivery company OnTrac is notifying customers after attackers accessed its corporate network and certain files between March 20 and 22. The firm detected the activity on March 23 and engaged a third-party specialist to investigate the scope. No ransomware group has claimed the incident.

Advertisement. Scroll to continue reading.

Adobe patches vulnerabilities in Bridge, Campaign Classic and Format Plugins

Adobe issued security updates addressing multiple critical vulnerabilities, including a heap-based buffer overflow in Format Plugins that enables arbitrary code execution, several flaws in Bridge allowing code execution and privilege escalation, and Campaign Classic flaws that permit arbitrary code execution and file system reads. The Campaign Classic patch carries Priority 1 rating for on-premise deployments. Adobe reports no known exploitation in the wild.

SonicWall VPN and firewall accounts hit by widespread credential stuffing

Huntress observed a broad credential stuffing campaign against SonicWall VPN and firewall accounts beginning July 25, with successful logins at 30 organizations so far. The activity originates from five DigitalOcean-hosted IP addresses and appears automated, with no post-compromise hands-on activity detected.

OpenAI releases open source Codex Security CLI

OpenAI has open-sourced the Codex Security CLI, a tool for scanning repositories, tracking findings across runs, verifying fixes, and integrating security checks into CI/CD pipelines. The early release is available via npm and GitHub, with the company inviting feedback as it continues development.

UK Department for Education loses 607,000 contact records

Hackers obtained approximately 607,000 records containing phone numbers and email addresses from the Department for Education in England. The department says the data does not include bank details or other sensitive information, the incident was contained quickly, and the risk to individuals is not considered high. 

Amazon ties Axios, Debug and Chalk hacks to North Korea’s Sapphire Sleet

Amazon Threat Intelligence attributes the recent compromises of the popular Axios, Debug, and Chalk NPM packages, along with a typo-crypto incident, to the North Korean group tracked as Sapphire Sleet. AWS notes the group’s focus on high-download packages for broad downstream impact and highlights evolving supply-chain techniques including fragmented payloads and environment-aware malware.

Researcher seizes control of Volvo/Eicher vehicle management platform

A security researcher discovered unauthenticated internal APIs in VE Commercial Vehicles’ My Eicher platform that exposed customer, user, and vehicle data and enabled account takeover. VE Commercial Vehicles is a joint venture between Volvo Group and Eicher Motors. The flaws allowed full control over fleets of commercial vehicles in India and access to sensitive documents such as Aadhaar cards. The primary issues were fixed after disclosure, and the company later remediated additional concerns.

Claude Mythos uncovers stronger attacks on HAWK and reduced-round AES

Anthropic researchers using Claude Mythos Preview developed an improved key-recovery attack on the post-quantum signature scheme HAWK that roughly halves its effective security level, and a faster meet-in-the-middle attack on 7-round AES. Neither result affects currently deployed systems—HAWK is still a candidate and the AES work targets a reduced-round variant—but both demonstrate AI-assisted progress in cryptanalysis. 

Related: In Other News: Dolphin X AI-Powered Malware, Car Anti-Theft Device Hack, 400 Linux Kernel Flaws

Related: In Other News: Iran Tracks US Military Phones, CrashStealer macOS Malware, CVD Blueprint

https://www.securityweek.com/in-other-news-openai-open-source-tool-aws-links-hacks-to-north-korea-mythos-crypto-research/




Google AI Uncovers 13-Year-Old Chrome Flaw Amid Record Patching Pace

Google this week confirmed that this year’s surge in Chrome vulnerabilities has been driven by the use of AI.

The increase in Chrome bugs started in April and has continued throughout July, with the latest browser release containing 370 security fixes and bringing the total number of bugs patched this year to over 1,800.

Google patched 1,072 security defects with the Chrome 149 and 150 releases, “surpassing the total number of security bugs fixed across the prior 23 milestones combined.”

This was the result of using an agent harness that leverages Gemini to identify security flaws across Chrome’s codebase with increased efficiency, the internet giant says.

What validated the AI-powered vulnerability detection, Google says, was the discovery of a sandbox escape that lurked in the browser for 13 years.

Tracked as CVE-2026-3545 (CVSS score of 9.8) and patched in early May in Chrome 145, the issue could have allowed “a compromised renderer to trick the browser into reading local files,” it says.

Advertisement. Scroll to continue reading.

Described as an insufficient data validation in Navigation, the vulnerability could have been exploited via crafted HTML pages to perform a sandbox escape.

The Chrome Security team started using LLMs in 2023, but it was the agent harness built in early 2026 that has been essential to finding and patching more flaws in the browser.

It has support for model interoperability, was trained on a knowledge base of previously identified CVEs and of Chrome’s entire Git history, leverages developer-supplied SECURITY.md files that are consumed by a “critic” agent, and can run vulnerability-finding models over the codebase multiple times.

“We’ve built all of this with safety in mind, and have put in place guardrails to mitigate the risk of AI behaving unexpectedly. Our AI analyzes source code strictly at rest, operating on locked-down machines that lack general internet access,” Google explains.

While also relying on AI for bug validation, triaging, and patch generation, the internet giant continues to use other security testing infrastructure for bug detection, and welcomes researchers submitting vulnerability reports through its VRP.

“At this point, we have LLMs generating candidate fixes for most vulnerabilities, dramatically increasing the rate of security fixes in recent Chrome releases,” Google says.

Additionally, the company is relying on AI to prevent new security bugs by identifying and eliminating them “as close to code submit-time as possible” and by neutralizing issues in the tree that could impact code deemed safe in isolation.

Reducing the patch gap and eliminating memory safety bugs

To reduce the patch gap, Google is also piloting a twice-a-week Chrome security release cadence, which will complement the two-week schedule for major Chrome releases that was announced in March.

“We are working on automating the generation of release notes and CVE descriptions from security bug fixes to eliminate manual bottlenecks and shorten the window between vulnerability discovery and public disclosure,” the company says.

Google is also working on ensuring that Chrome is always up to date on users’ machines, through dynamic patching, which eliminates the need to restart the browser when applying updates, seamless session restoration, and restarts while in a windowless state (the application runs in the background while all windows are closed).

Additionally, Google is working on eliminating entire classes of security issues from Chrome, such as memory safety flaws. For that, it is hardening the runtime environment to squash C++ bugs, and is transitioning to memory-safe languages.

In this regard, it is expanding MiraclePtr to more libraries and deploying MiracleObject to the GPU main thread to neutralize use-after-free defects. In addition, it’s taking a ‘spanification’ effort to eliminate out-of-bounds weaknesses, and is integrating memory allocation protections to block integer overflows.

In the long term, Google is transitioning Chrome’s codebase to memory-safe languages like Rust, through building a centralized Rust SDK, deploying Rust to replace most flawed code segments, and writing new modular components in Rust.

“In addition to Rust, we are also exploring options like implementing the browser’s top-level user interface using HTML, CSS, and TypeScript to further reduce dependencies on traditional C++ frameworks,” Google notes.

According to the company, keeping the open source software ecosystem secure is another critical aspect of improving Chrome users’ protections. It has been using automated vulnerability scanning pipelines to keep dependencies patched and will move all Chrome third-party dependencies onto automated update pipelines.

“Every bug found and fixed is one less foothold for an attacker. But discovering and fixing a bug is only half the battle — we must also ship the fix and apply the update for users faster than adversaries can exploit the bug, and invest in projects that mitigate or eliminate classes of bugs through accelerated release cadences, dynamic patching, and opportune restarts, we are driving toward a browser that is continuously protected without disrupting the user,” Google notes.

Related: Critical Flaw Led to Azure Cosmos DB Pwnage

Related: Timeless Compliance: Why Better Questions Beat Bigger Frameworks

Related: Microsoft Unveils MAI-Cyber-1-Flash, Its First Cybersecurity AI Model

Related: Anthropic’s Opus 5 Nears Mythos 5 on Finding Bugs, but Falls Short on Exploits

https://www.securityweek.com/googles-ai-agent-uncovers-13-year-old-chrome-flaw-amid-record-patching-pace/