← Back
Data BreachInfosecurity Magazine·3 hours ago

Attackers Steal METR API Key and Burn $600,000 in AI Credits

Threat actors obtained a METR API key and exploited it for approximately three weeks to consume $600,000 worth of model credits. The incident highlights the financial impact and operational risks associated with compromised API credentials in AI service environments.

Read full article at Infosecurity Magazine

Related Articles

Data BreachSecurityWeek·8 hours ago

9.5 Million Impacted by Aesto Health Data Breach

Aesto Health experienced a data breach affecting 9.5 million individuals, with attackers gaining unauthorized access to personal and health information stored in the company's AWS infrastructure. The incident highlights ongoing security challenges in healthcare technology environments and the sensitive nature of data at risk when cloud infrastructure is compromised.

Data BreachHelp Net Security·8 hours ago

Berlin refuses to be blackmailed after network breach

Berlin's state government confirmed it suffered a data breach of its administrative network in August followed by an extortion attempt by the attackers. Governing officials publicly stated the city will not comply with the blackmailers' demands, characterizing the incident as a serious crime. The breach prompted an emergency Senate session where leadership addressed both the security incident and the extortion threat.

Data BreachThe Hacker News·8 hours ago

Attackers Steal METR API Key and Consume AI Credits Worth About $600,000

METR disclosed two security incidents involving unauthorized access attempts to its systems, with attackers successfully stealing an API key and consuming approximately $600,000 worth of AI credits. The incidents highlight the value and accessibility of compromised API credentials in the AI services ecosystem, where stolen keys can be rapidly exploited for resource consumption before detection. No sensitive information was believed to have been compromised in the breaches.