logo

When AI infrastructure becomes the target: Securing gateways and control points

ID: 078546d4-4b9d-573e-b8c3-37ba42ad2a83

STIX ID: report--078546d4-4b9d-573e-b8c3-37ba42ad2a83

Feed Name: Microsoft Security

Threat Score
76/100

Date Published: 2026-08-26

Date Updated: 2026-08-26

Author: Microsoft Security Research, Yash Gund and Sumith Maniath

...
...

Microsoft observed a campaign targeting AI control-plane components (LiteLLM gateway, RAGFlow retrieval, Kestra orchestration) where attackers leveraged exposed application surfaces and public CVEs to gain execution, harvest model-provider keys and database credentials, persist inside runtimes, and monetize compute via XMRig cryptomining. The report details multi-stage attack chains per product, includes IOCs (IPs, domains, file hashes), MITRE technique mappings, advanced-hunting queries, and concrete mitigation recommendations to protect AI gateways, constrain egress, and monitor for gateway-originated execution and secret access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.