Bleepingcomputer
Hackers Exploit Misconfigured Proxies to Access LLM Services
First seen 9 Jan 2026, 21:48 UTC
•


•83% similarity
•24.3
Share:
Export
Ask AI about this cluster
Analyzing cluster data...
Referenced clusters:
Something went wrong. Please try again.
Cluster AI
Ask questions about this threat cluster with AI-powered analysis.
Get Researcher $29.99/moArticle Content
Browse articles
Threat actors have been targeting misconfigured proxy servers to gain unauthorized access to commercial large language model (LLM) services. This campaign, which began in late December 2025, has seen over 91,000 attack sessions recorded, indicating a systematic effort to map AI deployment vulnerabilities.
ThreatCluster AI