The Self-Expanding Stolen Inference Supply Chain: An AI Agent Harvesting and Re-Serving LLM Access

Executive Summary

An attacker deployed a semi‑autonomous coding agent to locate insecure LLM resale gateways, exploit web flaws and farm accounts to obtain API access, validate inference capacity, and consolidate the harvested LLM services behind a single gateway. The operation demonstrates a novel supply‑chain attack that expands stolen inference resources and enables large‑scale AI exploitation.


Intelligence Metadata - Source Publisher: SANS Internet Storm Center - Published Date: 2026-09-11T14:40:32+00:00 - Category: threat-intel

Original Description: I identified an attacker using a semi-autonomous coding agent to run an offensive operation: finding poorly secured LLM resale gateways, acquiring API access through ordinary web flaws and account farming, validating the resulting inference capacity, and aggregating it behind a single gateway of their own.

"Arrogance and rudeness are training wheels on the bicycle of life � for weak people who cannot keep their balance without them."

— Laura Teresa Marquez
Source: SANS Internet Storm Center