importantSYS.SOURCE: The Hacker News• 2026-09-09T19:53:55+05:30
Replayable AI Tokens from Infostealer Logs Bypass MFA Protections
Cybercriminals are exploiting stolen AI session tokens and API keys from infostealer logs to bypass MFA and access services like Google, Anthropic, and OpenAI. The breach highlights risks of session replay attacks, LLMjacking, and the proliferation of stolen credentials in underground markets.
Cybercriminals are hijacking artificial intelligence (AI) user accounts via information stealer logs to create "stolen keys" that grant illicit access to tools from model providers like Google, Anthropic, and others.
Information stealers like Lumma Stealer or Vidar are equipped to harvest a wide range of data from compromised systems. This can include credential, session tokens, and API
*** END OF TRANSMISSION ***