CybersecurityAI Research6 min reading time

Infostealer Logs Expose Replayable AI Tokens That Can Bypass MFA

The Hacker News
Read full post
Cybercriminals are exploiting stolen session tokens and API keys from infostealer logs to access AI services like Google and Anthropic without needing passwords or MFA. Okta analyzed a large data dump revealing thousands of valid tokens across many AI platforms, enabling unauthorized account access.

More in Cybersecurity

Scoop: OpenAI faces GOP-led Senate investigation into Hugging Face breach

Covered by 3 sources
Cybersecurity6 min read

Anthropic Discloses Fourth AI Hacking Incident Involving Claude Opus 4.6

Covered by 2 sources
Cybersecurity5 min read

Every AI Incident Has Two Timelines. We Default To One

Forbes