6TB of Fable data sold with leaked SSH keys, cloud creds tied to Xiaomi, Huawei, NIO
teortaxesTex · x · 2026-09-11
Security researcher Chaofan Shou claims he bought 6TB of Fable trajectories from a major Chinese LLM reseller — and the dump contained far more than chat logs: SSH keys, VPN configs, Alibaba Cloud keys, and GitLab tokens leaked through routers.
- The data alone would be enough to compromise 7 Chinese/CIS government agencies and 19 large Chinese companies, including Xiaomi, Huawei, NIO, and MiniMax
- Screenshots show Git/GitLab endpoints of Sangfor, NIO, Bilibili, Xiaomi, USTC, and Zhejiang Lab (tokens redacted)
- Poster teortaxesTex quips the reseller likely also sold it to Chinese LLM labs, meaning the leaked keys will get SFT'd on and regurgitated by lesser models
The incident is a stark reminder of the credential-management and data-security risks in the LLM proxy/reseller ecosystem.
More from Models
- Is DeepSeek's rumored K3 a scaled-down model, or something bigger? X users debate — teortaxesTex · 2026-09-11
- DeepSeek update keeps cache hits mid-conversation, cuts costs 36.6% — teortaxesTex · 2026-09-11
- AI Sextet offers 6 models free and unlimited for 14 days, including DeepSeek and Qwen — airesearch12 · 2026-09-11
- BullshitBench update: GPT-6-Astra beats all prior OpenAI models but still trails Anthropic — scaling01 · 2026-09-11
- Astra Scores 83% on GauntletBench, First Computer-Use Agent to Beat Human Baseline — ducha_aiki · 2026-09-11
- Kimi K2.8 Preview rolls out: near-K3 coding performance, 1M context for all tiers — teortaxesTex · 2026-09-11