← Back

Wire · regulatory

Infostealer Logs Expose Replayable AI Tokens That Can Bypass MFA

Published

10 September 2026

Topic

regulatory

Sectors

AI InfrastructureCybersecurity

Geography

United States

Source

Read at thehackernews.com

Verified

Fusion42 · 10 September 2026 · Fusion42 review

Cybercriminals are exploiting information stealer logs to obtain replayable AI tokens that bypass multi-factor authentication (MFA), gaining illicit access to AI services from providers like Google, Anthropic, and others. This vulnerability enables attackers to use stolen session tokens and API keys to access AI platforms without logging in, exposing thousands of infected machines globally and raising security risks for AI service users.

This Wire brief sits within Fusion42's coverage of AI Infrastructure and Cybersecurity.

◆ The Wire takeaway

The vulnerability lets attackers skip authentication on AI platforms using stolen tokens, making you a target if your product relies on external AI APIs. Cut dependencies or add token validation now or risk account takeover.

Coverage

1 source · 10 Sep 2026

Related on Wire

Topics

AI InfrastructureCybersecurityai-securityinfostealermfa-bypasscybercrimeapi-tokens