Threat actor prompt-injects 30 AI companies in 4 days to steal API keys for pre-release Claude
ns123abc · x · 2026-09-11
A report says a threat actor prompt-injected an AI vendor's evaluation sandbox to steal production API keys, attacking 30 AI companies in 4 days with the explicit goal of accessing a pre-release Claude model.
The quoted prior post describes a fake Claude reseller that proxied traffic to other models while harvesting customers' Anthropic credentials and reselling them.
More from Safety
- Was Anthropic alum Jacob Coxon's viral resignation an AI-regulation psyop? — theimposingshadow · 2026-09-11
- OpenAI Daybreak Helps European Cyber Defenders Find and Fix Vulnerabilities — MartinSignoux · 2026-09-11
- OpenAI's Daybreak helps European cyber defenders find and fix vulnerabilities — MartinSignoux · 2026-09-11
- X users accuse Anthropic of stoking AI fear to build a regulatory moat against open source — ccerrato147 · 2026-09-11
- Red-teaming public-facing AI agents: turning jailbreaks into repeatable evals — njyx · 2026-09-11
- Senators Welch and Bennet drafting bill for independent AI guardrails — Miles_Brundage · 2026-09-11