BotBeat
...
← Back

> ▌

AnthropicAnthropic
RESEARCHAnthropic2026-05-28

Internet Scanners Systematically Targeting AI Infrastructure for Exposed Credentials

Key Takeaways

  • ▸Anthropic's API proxy paths have been hit with 3,861 coordinated requests from a single ISP over three weeks, targeting misconfigured reverse proxies that could expose unprotected API keys
  • ▸Ollama's default insecure configuration on port 11434 is now permanently embedded in automated internet scanner wordlists, with consistent weekly targeting from 50–80 distinct IP addresses since early March
  • ▸A coordinated credential-theft attack on May 18 systematically probed credential storage locations across Anthropic, OpenAI, Google, DeepSeek, Alibaba, and other AI platforms, revealing shared security weaknesses in developer tooling
Source:
Hacker Newshttps://honeylabs.net/blog/ai-scanning-may-2026↗

Summary

Security research from honeylabs reveals systematic and widespread scanning activity targeting AI infrastructure across multiple companies. Analysis of network traffic over 90 days shows coordinated reconnaissance efforts, including 3,861 requests over three weeks from a single Dutch ASN targeting Anthropic's API proxy paths, and sustained probing of Ollama's default unprotected port 11434 with 50–80 distinct scanner IPs per week since March 2026. A notable 45-minute sweep on May 18 systematically attempted to access credential storage conventions used by Claude Code, Claude Desktop, Anthropic SDK, OpenAI Codex, Google Gemini, DeepSeek, and Alibaba's DashScope. The scale and sophistication of these reconnaissance efforts indicate that AI infrastructure has become a high-value target for attackers actively mapping and attempting to exploit exposed services and credential storage paths.

  • The evolution from opportunistic to systematic reconnaissance suggests credential theft vectors for AI tools have been weaponized in automated attack frameworks

Editorial Opinion

This research reveals a critical inflection point in the AI security landscape: reconnaissance against AI infrastructure has shifted from opportunistic to systematic and industrialized. The targeting of credential storage conventions across multiple platforms demonstrates that attackers have developed and weaponized shared intelligence about where AI developers store secrets. For AI companies and the developer community, this underscores an urgent need to move beyond convention-based credential storage, implement infrastructure-level access controls, and establish persistent monitoring for credential theft attempts.

MLOps & InfrastructureCybersecurityAI Safety & Alignment

More from Anthropic

AnthropicAnthropic
INDUSTRY REPORT

Anthropic Dominates Cisco's LLM Security Leaderboard With 8 of Top 10 Spots

2026-05-28
AnthropicAnthropic
RESEARCH

PIMMUR Principles: Audit Questions Validity of LLM-Based Collective Behavior Simulations

2026-05-28
AnthropicAnthropic
POLICY & REGULATION

Anthropic CEO Amodei Pivots From AI 'Bloodbath' Warning to Jevons Paradox Optimism—With a Catch

2026-05-28

Comments

Suggested

Google / AlphabetGoogle / Alphabet
RESEARCH

DiffusionBlocks: New Training Method Cuts Memory Requirements for Large Neural Networks

2026-05-28
Sphere LabSphere Lab
OPEN SOURCE

Sphere Lab Open-Sources Orbit: First Framework for Single-Node Post-Training of Trillion-Scale LLMs

2026-05-28
NVIDIANVIDIA
RESEARCH

gpusnek: Running 1 Million Python Interpreters in Parallel on Consumer GPUs

2026-05-28
← Back to news
© 2026 BotBeat
AboutPrivacy PolicyTerms of ServiceContact Us