When AI infrastructure becomes the target: Securing gateways and control points
ID: 078546d4-4b9d-573e-b8c3-37ba42ad2a83
STIX ID: report--078546d4-4b9d-573e-b8c3-37ba42ad2a83
Feed Name: Microsoft Security
Date Published: 2026-08-26
Date Updated: 2026-08-26
Author: Microsoft Security Research, Yash Gund and Sumith Maniath
Microsoft observed a campaign targeting AI control-plane components (LiteLLM gateway, RAGFlow retrieval, Kestra orchestration) where attackers leveraged exposed application surfaces and public CVEs to gain execution, harvest model-provider keys and database credentials, persist inside runtimes, and monetize compute via XMRig cryptomining. The report details multi-stage attack chains per product, includes IOCs (IPs, domains, file hashes), MITRE technique mappings, advanced-hunting queries, and concrete mitigation recommendations to protect AI gateways, constrain egress, and monitor for gateway-originated execution and secret access.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
