Infostealer Logs Expose Replayable AI Tokens That Can Bypass MFA
The Hacker News
Read full postCybercriminals are exploiting stolen session tokens and API keys from infostealer logs to access AI services like Google and Anthropic without needing passwords or MFA. Okta analyzed a large data dump revealing thousands of valid tokens across many AI platforms, enabling unauthorized account access.


