Skip to content
MediumNewsLLM-specific

Stolen AI credentials feed growing LLM proxy economy

Published
Record updated
View JSON

Summary

Team Cymru reports that malicious actors use proxy servers called transfer stations to hide the origin of traffic to frontier AI models, enabling model distillation attacks and abuse of stolen AI subscription credentials. The firm initially identified 10,867 such servers running the open-source relay platforms Claude Relay Service (CRS) and its successor sub2api, and now estimates more than 80,000 proxies in total. Investigations by Okta Threat Intelligence and Gambit Security found stolen Anthropic session tokens, Gemini, OpenAI and other API keys in infostealer data and in a reselling gateway.