Hackers hijack exposed LLM endpoints in Bizarre Bazaar operation
ID: b0c0fef7-995d-5002-889e-2d70f2417dcf
STIX ID: report--b0c0fef7-995d-5002-889e-2d70f2417dcf
Feed Name: Bleeping Computer
Pillar Security uncovered a large-scale criminal campaign named 'Bizarre Bazaar' that systematically scans for and abuses exposed LLM and MCP endpoints. Over a 40-day period researchers recorded 35,000+ attack sessions showing a coordinated supply chain: scanners that find misconfigured services, validators that test access, and a commercial resale service (SilverInc/NeXeonAI) that sells access for cryptocurrency or PayPal. Attackers use these compromises to steal compute resources (cryptomining), exfiltrate prompt and conversation data, resell API access on darknet markets, and attempt lateral movement via MCP/Kubernetes interactions, with common targets including unauthenticated Ollama (11434), OpenAI-compatible APIs (8000), and publicly accessible development/staging environments.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
