跳到正文
原文
Michael Bargury· @mbrg0 · X·本站收录 · 原文发表

研究称 26 个 LLM 路由器被植入恶意工具调用并窃取凭据

AI 导读

一项研究称 26 个 LLM 路由器被秘密注入恶意工具调用并窃取凭据,其中一个路由器盗走了某客户价值 50 万美元的钱包。研究者还表示已实现对路由器的投毒,可将流量转发给自己,并在数小时内直接接管约 400 台主机。相关论文见 https://arxiv.org/abs/2604.08407。

正文

v cool find!

引用Chaofan Shou@shoucccc
26 LLM routers are secretly injecting malicious tool calls and stealing creds. One drained our client $500k wallet. We also managed to poison routers to forward traffic to us. Within several hours, we can directly take over ~400 hosts. Check our paper: https://arxiv.org/abs/2604.08407
在 X 查看被引用的帖子

来源:Michael Bargury · x.com