Skip to Content
logologo
AI Incident Database
Open TwitterOpen RSS FeedOpen FacebookOpen LinkedInOpen GitHub
Open Menu
Descubrir
Enviar
  • Bienvenido a la AIID
  • Descubrir Incidentes
  • Vista espacial
  • Vista Tabular
  • Vista de lista
  • Entidades
  • Taxonomías
  • Enviar Informes de Incidentes
  • Ranking de Reportadores
  • Blog
  • Resumen de noticias de IA
  • Control de Riesgos
  • Incidente aleatorio
  • Registrarse
Colapsar
Descubrir
Enviar
  • Bienvenido a la AIID
  • Descubrir Incidentes
  • Vista espacial
  • Vista Tabular
  • Vista de lista
  • Entidades
  • Taxonomías
  • Enviar Informes de Incidentes
  • Ranking de Reportadores
  • Blog
  • Resumen de noticias de IA
  • Control de Riesgos
  • Incidente aleatorio
  • Registrarse
Colapsar
Entidades

Laravel CVE-2021-3129 users

Afectado por Incidentes

Incidente 8982 Reportes
Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

2024-05-06

Attackers reportedly exploited stolen cloud credentials obtained through a vulnerable Laravel system (CVE-2021-3129) to allegedly abuse AI cloud services, including Anthropic’s Claude and AWS Bedrock, in a scheme referred to as “LLMjacking.” The attackers are said to have monetized access through reverse proxies, reportedly inflating victim costs to as much as $100,000 per day. Additionally, they allegedly bypassed sanctions, enabled LLM models, and evolved techniques to evade detection and logging.

Más

Entidades relacionadas
Otras entidades que están relacionadas con el mismo incidente. Por ejemplo, si el desarrollador de un incidente es esta entidad pero el implementador es otra entidad, se marcan como entidades relacionadas.
 

Entity

LLMjacking Attackers Exploiting Laravel

Incidents involved as Deployer
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más
Entity

Entities engaging in Russian sanctions evasion

Incidents involved as Deployer
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más
Entity

OAI Reverse Proxy Tool Creators

Incidents involved as Developer
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más
Entity

LLMjacking Reverse Proxy Tool Creators

Incidents involved as Developer
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más
Entity

Laravel users

Afectado por Incidentes
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más
Entity

Cloud LLM users

Afectado por Incidentes
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más
Entity

Cloud LLM service providers

Afectado por Incidentes
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más
Entity

OpenRouter services

Incidents implicated systems
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más
Entity

OpenAI models

Incidents implicated systems
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más
Entity

Mistral-hosted models

Incidents implicated systems
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más
Entity

MakerSuite tools

Incidents implicated systems
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más
Entity

GCP Vertex AI models

Incidents implicated systems
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más
Entity

ElevenLabs services

Incidents implicated systems
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más
Entity

Azure-hosted LLMs

Incidents implicated systems
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más
Entity

AWS Bedrock-hosted models

Incidents implicated systems
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más
Entity

Anthropic Claude (v2/v3)

Incidents implicated systems
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más
Entity

AI21 Labs models

Incidents implicated systems
  • Incidente 898
    2 Report

    Alleged LLMjacking Targets AI Cloud Services with Stolen Credentials

Más

Investigación

  • Definición de un “Incidente de IA”
  • Definición de una “Respuesta a incidentes de IA”
  • Hoja de ruta de la base de datos
  • Trabajo relacionado
  • Descargar Base de Datos Completa

Proyecto y Comunidad

  • Acerca de
  • Contactar y Seguir
  • Aplicaciones y resúmenes
  • Guía del editor

Incidencias

  • Todos los incidentes en forma de lista
  • Incidentes marcados
  • Cola de envío
  • Vista de clasificaciones
  • Taxonomías

2024 - AI Incident Database

  • Condiciones de uso
  • Política de privacidad
  • Open twitterOpen githubOpen rssOpen facebookOpen linkedin
  • 1420c8e