header-langage
简体中文
繁體中文
English
Tiếng Việt
한국어
日本語
ภาษาไทย
Türkçe
Scan to Download the APP

Buying 6TB of model relay station data can get you the key? Researcher claims can breach 19 companies including Huawei, Xiaomi.

Beating AI News Flash: Security researcher Shou Chaofan stated that he had just purchased approximately 6TB of Fable model invocation data from a leading Chinese large model relay station. It contained sensitive credentials such as SSH keys, VPN configurations, Alibaba Cloud keys, and GitLab tokens.


He claimed that the keys in this batch of data were enough to give him access to the servers or internal systems of 19 leading Chinese enterprises and 7 government-related agencies in China and the CIS, including Huawei, Xiaomi, NIO, and MiniMax.


Large model relay stations sit between users and models such as Claude, and both requests and responses pass through them first, so they can see the full plaintext. Once developers put SSH Keys, API Keys, VPN configurations, and the like into the Agent context, if the relay station stores or even sells these records, the company's system keys will leak out along with them.


This is not the first time Shou Chaofan has warned about the risks of relay stations. An April paper he participated in tested 428 LLM relay stations and found that 9 actively injected malicious code, 17 actually used the AWS test keys that researchers deliberately placed to call AWS after seeing them, and 1 directly transferred away the ETH in a test wallet.


Shou Chaofan is a co-founder of the blockchain security company Fuzzland and has long conducted research on vulnerabilities and supply chain security. At the end of March, he was also the first to discover that a source map in the Claude Code 2.1.88 release package accidentally exposed approximately 500,000 lines of TypeScript source code.

Correction/Report
Submit
Add Library
Visible to myself only
Public
Save
Choose Library
Add Library
Cancel
Finish