Close Menu
CoinNewsJunction.comCoinNewsJunction.com
    What's Hot

    Tajikistan Criminalizes Illegal Electricity Use for Cryptocurrency Mining

    December 16, 2025

    Trump family’s crypto firm WLFI seeks bank charter

    January 7, 2026

    Tether Secures Hadron Platform Trademark in Russia Through 2035

    January 12, 2026
    Facebook X (Twitter) Instagram
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    Facebook X (Twitter) Instagram
    CoinNewsJunction.comCoinNewsJunction.com
    • News

      US Households Budget for AI

      April 18, 2026

      Sanctioned Exchange Grinex Hit by $13.7M Hack; Blames Foreign Intelligence Services

      April 17, 2026

      Retail Investors Are The Only Ones Panicking About Bitcoin, Here’s what The Big Dogs Are Doing

      April 16, 2026

      Why are quantum stocks rallying so much?

      April 15, 2026

      UC researchers warn third-Party AI routers are stealing crypto and private keys

      April 13, 2026
    • Technology

      Court dismisses lawsuit over Caitlyn Jenner memecoin

      April 19, 2026

      Tennessee Moves Toward Bitcoin Reserve With Strict Rules on Public Fund Allocation

      April 18, 2026

      Ethereum Stablecoin Supply Hits $180B Record High as Public Crypto Fundraising Hits Two-Year Low

      April 15, 2026

      Nigel Farage faces potential FCA probe over links to Bitcoin treasury firm

      April 14, 2026

      TAO Drops 16% After Covenant AI Exit Raises Fresh Centralization Concerns in Bittensor

      April 13, 2026
    • Learn/Guide

      How to Optimize Company Operational Costs: A Manual on Modern Payment Ecosystems

      March 7, 2026

      6 Best Citizenship by Investment Programs for 2026

      February 24, 2026

      Best Smart Contract Auditors and Web3 Security Companies (2026): Ranked by Verifiable Public Evidence

      February 12, 2026

      Your Complete Guide to Smarter Investing

      January 29, 2026

      How to Use Cryptocurrency for Everyday Shopping in 2026

      January 23, 2026
    • Regulation

      CFTC Wins Arizona TRO as Prediction Markets Criminal Case Pauses

      April 11, 2026

      MSBT: Morgan Stanley’s Bitcoin ETF Ready for Launch Tomorrow

      April 8, 2026

      U.S. 401(k) Crypto Rule Proposal Opens New Retirement Path for Digital Assets

      March 31, 2026

      CFTC Launches Innovation Task Force for Crypto Oversight

      March 25, 2026

      Fidelity Calls for SEC Framework on Crypto Infrastructure

      March 24, 2026
    • Live Pricing Chart
    CoinNewsJunction.comCoinNewsJunction.com
    Home»News»UC researchers warn third-Party AI routers are stealing crypto and private keys
    News

    UC researchers warn third-Party AI routers are stealing crypto and private keys

    April 13, 20263 Mins Read
    Facebook Twitter Pinterest LinkedIn Tumblr Email
    UC researchers warn third-Party AI routers are stealing crypto and private keys - 1
    Share
    Facebook Twitter LinkedIn Pinterest Email



    Third-party AI routing services are exposing users to significant security flaws that could result in the theft of cryptocurrency and cloud credentials.

    Summary

    • Researchers found that 26 third-party LLM routers are actively injecting malicious code and stealing credentials by exploiting their access to plaintext data.
    • The study revealed that intermediaries can intercept private keys and cloud credentials because they terminate secure encryption to aggregate AI requests.

    According to a paper published on Thursday by University of California researchers, the supply chain for Large Language Models (LLM) contains several vulnerabilities that allow for malicious code injection and credential extraction. 

    These intermediaries, which developers use to manage access to providers like Google or OpenAI, essentially act as a “middleman” that terminates secure encryption. 

    Because they have full plaintext access to every message sent through them, sensitive data like seed phrases or private keys can be intercepted by unverified infrastructure.

    The researchers tested 400 free and 28 paid routers to measure the extent of these risks. Nine of these services actively injected malicious code, while 17 separate routers were caught accessing Amazon Web Services credentials owned by the team. 

    During the experiment, one router successfully drained Ether from a decoy wallet after the researchers provided a prefunded private key. 

    Although the team kept the balances low to ensure the total loss remained under $50, the result confirmed how easily a compromised intermediary can siphon funds.

    “26 LLM routers are secretly injecting malicious tool calls and stealing creds,” co-author Chaofan Shou stated on X.

    Identifying a malicious router is a difficult task for the average user. The researchers noted that because these services must read data to forward it, there is no visible difference between legitimate handling and active theft. 

    The danger increases when developers enable “YOLO mode,” a setting in many AI frameworks that lets an agent execute commands automatically without a human confirming the action. 

    This allows an attacker to send instructions that the user’s system will run instantly, often without the operator’s knowledge.

    “The boundary between ‘credential handling’ and ‘credential theft’ is invisible to the client because routers already read secrets in plaintext as part of normal forwarding,” the study explained.

    Previously reliable routers can become dangerous if they reuse leaked credentials through weak relays. To prevent these attacks, the research team suggested that developers should never allow private keys or sensitive phrases to pass through an AI agent session. 

    A permanent solution would require AI companies to use cryptographic signatures. Such a system would allow an agent to mathematically prove that instructions came from the actual model rather than a tampered third-party source.

    “LLM API routers sit on a critical trust boundary that the ecosystem currently treats as transparent transport,” the paper concluded.



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

    Related Posts

    US Households Budget for AI

    April 18, 2026

    Sanctioned Exchange Grinex Hit by $13.7M Hack; Blames Foreign Intelligence Services

    April 17, 2026

    Retail Investors Are The Only Ones Panicking About Bitcoin, Here’s what The Big Dogs Are Doing

    April 16, 2026

    Why are quantum stocks rallying so much?

    April 15, 2026
    Top Posts

    Mobilum: The All-in-One Bitcoin Banking App Bridging Crypto & Traditional Finance

    November 26, 2025

    The Future Of Tech: How Blockchain AI And Will Converge By Late 2026

    December 31, 2025

    Anchorage Digital Builds Federal Rails for Stablecoin Payments

    February 20, 2026

    Welcome to CoinNewsJunction.com! Your go-to source for fast, reliable updates from the ever-evolving world of cryptocurrency. Whether it's Bitcoin, altcoins, blockchain breakthroughs, or DeFi trends, we bring you timely insights, expert analysis, and key developments shaping the future of digital finance. Stay ahead with real-time crypto news and in-depth coverage.

    Top Insights

    US Households Budget for AI

    April 18, 2026

    Sanctioned Exchange Grinex Hit by $13.7M Hack; Blames Foreign Intelligence Services

    April 17, 2026

    Retail Investors Are The Only Ones Panicking About Bitcoin, Here’s what The Big Dogs Are Doing

    April 16, 2026
    Advertisement
    Demo
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms and Conditions
    © 2026. Designed by CoinNewsJunction.com.

    Type above and press Enter to search. Press Esc to cancel.