Attackers Steal METR API Key and Consume AI Credits Worth About $600,000
Summary
METR, a research organization that tests AI systems, disclosed two security incidents in 2026 where attackers stole an API key (a credential that grants access to AI services) and ran up about $600,000 in unauthorized charges on AI models, and separately probed its systems for vulnerabilities. The first attack exploited a fail-open vulnerability (a security flaw where authentication is accidentally disabled) on a researcher's publicly accessible server, while the second involved systematic scanning and phishing attempts to gain access to frontier AI models.
Solution / Mitigation
Following the March incident, METR updated its security policies to restrict storing credentials on non-METR infrastructure, improved monitoring of suspicious activity, and added spend alerts to API keys where possible. For the May incident, METR addressed the exposed SQL query mechanism and the bug that could have allowed access to unpublished data, though the source does not specify the exact remediation steps taken.
Classification
Affected Vendors
Related Issues
CVE-2026-63086: text-generation-inference through 3.3.7 contains a server-side request forgery (SSRF) vulnerability in the OpenAI-compat
CVE-2026-34371: LibreChat is a ChatGPT clone with additional features. Prior to 0.8.4, LibreChat trusts the name field returned by the e
Original source: https://thehackernews.com/2026/09/attackers-steal-metr-api-key-and.html
First tracked: September 1, 2026 at 08:01 AM
Classified by LLM (prompt v3) · confidence: 92%