{"id":1578,"date":"2026-09-11T16:41:18","date_gmt":"2026-09-11T11:11:18","guid":{"rendered":"https:\/\/www.hexnode.com\/threat-watch\/?p=1578"},"modified":"2026-09-14T15:21:22","modified_gmt":"2026-09-14T09:51:22","slug":"ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs","status":"publish","type":"post","link":"https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/","title":{"rendered":"AI Token Theft and MFA Bypass: Lessons From Infostealer Logs"},"content":{"rendered":"<p>AI accounts have become valuable enough to appear in infostealer logs sold on underground marketplaces. Okta&#8217;s threat intelligence team analyzed a leaked stealer dump and found thousands of unexpired authentication tokens tied to AI services. Attackers are not just stealing passwords anymore. They are replaying live sessions and API keys to walk past <a href=\"https:\/\/www.hexnode.com\/blogs\/explained\/what-is-multi-factor-authentication-mfa\/\">MFA<\/a> entirely.<\/p>\n<p>This shifts the risk for enterprises adopting generative AI tools. A stolen password alone rarely grants access when MFA is enforced. A stolen session token or API key can. Once an attacker replays that token, the AI service treats them as an already-authenticated user, and username-password checks never trigger.<\/p>\n<p><center>    \t\t<!-- button style scb20be917a3efc78059cf9961ee4e54284 -->\r\n    \t\t<style>\r\n    \t\t\t.scb20be917a3efc78059cf9961ee4e54284, a.scb20be917a3efc78059cf9961ee4e54284{\r\n    \t\t\t\tcolor: #fff;\r\n    \t\t\t\tbackground-color: #00868B;\r\n    \t\t\t}\r\n    \t\t\t.scb20be917a3efc78059cf9961ee4e54284:hover, a.scb20be917a3efc78059cf9961ee4e54284:hover{\r\n    \t\t\t\t    \t\t\t\tbackground-color: #32b8bd;\r\n    \t\t\t}\r\n    \t\t<\/style>\r\n    \t\t<a href=\"https:\/\/www.hexnode.com\/\" class=\"ht-shortcodes-button scb20be917a3efc78059cf9961ee4e54284  hn-cta__blogs--inline-button \" id=\"\" style=\"\" >\r\n    \t\tBook a free demo and explore Hexnode today!<\/a>\r\n    \t\t<\/center><\/p>\n<h2>What Okta found inside the stealer dump<\/h2>\n<p>Okta reviewed a stealer log released on a Telegram channel in August 2026. The dump included credentials, cookies, and authentication tokens harvested from compromised endpoints. Two token types stood out for AI-specific risk:<\/p>\n<ul>\n<li><strong>JSON Web Tokens (JWTs):<\/strong> 44,791 unique JWTs were present, and 555 were linked to AI service authentication. A valid JWT grants direct account access without a fresh login.<\/li>\n<li><strong>JSON Web Encryption (JWE) structures:<\/strong> 2,937 encrypted token objects were found, mostly tied to OpenAI&#8217;s use of NextAuth.js. These require the issuing service&#8217;s key to decrypt, but an attacker can still replay an unexpired JWE to gain access without ever decrypting it.<\/li>\n<\/ul>\n<p>Okta treated these as two distinct mechanisms. JWTs work as direct bearer tokens. JWEs work as replayable session artifacts even while remaining opaque to the attacker. Both routes skip password and MFA checks entirely.<\/p>\n<p>A separate concern surfaced in the same dataset: 17.7% of the 44,791 JWTs carried plaintext personally identifiable information, including names, phone numbers, and email addresses. That data does not expire the way a token does, and it links a specific person to a specific AI service, which raises phishing and social engineering risk on its own.<\/p>\n<div class=\"next_blog\"><div class=\"post-next\"><div class=\"hex_blog_box_parent\"><div class=\"blog_warp_next\"><div class=\"next_blog_thumb\" style=\"background-image:url(https:\/\/cdn.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/threat-analysis-.jpeg?format=webp)\"><\/div><div class=\"next_post_content\"><div class=\"center_box\"><h4>What is Threat Analysis?<\/h4><p>Threat analysis explained: detection, correlation, tools, and Hexnode XDR's role.<\/p><\/div><\/div><\/div><a class=\"hex_blog_box_link hn-cta__blogs--blog-box\" href=\"https:\/\/www.hexnode.com\/blogs\/what-is-threat-analysis\/\" aria-label=\"What is Threat Analysis?\"><\/a><\/div><\/div><\/div>\n<h2>Why session replay defeats MFA<\/h2>\n<p>MFA verifies a login event. It does not verify every request made during a session. Infostealer malware such as Lumma Stealer and Vidar harvest session tokens directly from browser storage, cookies, and local files, capturing an already-authenticated state.<\/p>\n<p>Attackers then load that stolen session data into tooling built for exactly this purpose:<\/p>\n<ul>\n<li>Anti-detect browsers (such as Camoufox) that mimic legitimate browser fingerprints to avoid detection.<\/li>\n<li>Automation frameworks (such as SeleniumBase) that import stolen sessionStorage and localStorage data from a file.<\/li>\n<li>Proxy configurations that defeat impossible-travel and behavioral anomaly triggers by matching the victim&#8217;s expected geography.<\/li>\n<\/ul>\n<p>Two controls can blunt session replay specifically. IP allowlisting blocks traffic from outside approved ranges, which limits where a replayed token can be used. Google&#8217;s Device Bound Session Credentials, now generally available in Chrome on Windows, cryptographically ties a session token to the originating device so a copied token fails on another system. Neither control is universal yet, which is why token lifetime and endpoint hygiene still carry most of the weight.<\/p>\n<section id='resource-single'>\n                    <div class='resource-box'>\n                        <div class='resource-box__image-section'>\n                            <div class='resource-box__image-wrap'>\n                                <img decoding=\"async\" src=\"https:\/\/cdn.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/cybersecurity-kit-.jpg?format=webp\" class=\"resource-box__image\" alt=\"cybersecurity kit\" loading=\"lazy\" srcset=\"https:\/\/cdn.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/cybersecurity-kit-.jpg?format=webp 960w, https:\/\/cdn.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/cybersecurity-kit--300x225.jpg?format=webp 300w, https:\/\/cdn.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/cybersecurity-kit--768x576.jpg?format=webp 768w, https:\/\/cdn.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/cybersecurity-kit--133x100.jpg?format=webp 133w\" sizes=\"auto, (max-width: 960px) 100vw, 960px\" title=\"cybersecurity kit\" \/>\n                            <\/div>\n                        <\/div>\n                        <div class='resource-box__content-section'>\n                            <h5 class='resource-box__content-subheading'>\n                            Featured resource\n                            <\/h5>\n                            <h4 class='resource-box__content-heading'>\n                            Cybersecurity kit\n                            <\/h4>\n                            <p class='resource-box__contents'>\n                            Download this cybersecurity kit for blueprints, frameworks, checklists, policy templates, and guides securing your enterprise.\n                            <\/p>\n                            <a class='resource-box__content-link hn-cta__blogs--resource-box' href='https:\/\/www.hexnode.com\/resources\/resource-kits\/cybersecurity-kit\/'>\n                            DOWNLOAD\n                            <svg xmlns='http:\/\/www.w3.org\/2000\/svg' width='20' height='20' viewBox='0 0 20 20'>\n                            <g id='arrow' transform='translate(-309 -191)' opacity='0'>\n                                <rect id='base' width='20' height='20' transform='translate(309 191)' fill='none'\/>\n                                <path id='arrow-2' data-name='arrow' d='M13.093.5,6.8,6.8.5.5' transform='translate(315 207.594) rotate(-90)' fill='none' stroke='#0549d1' stroke-linecap='round' stroke-linejoin='round' stroke-width='1.2'\/>\n                            <\/g>\n                            <\/svg>\n\n                            <\/a>\n                        <\/div>\n                    <\/div>\n                <\/section>\n<h2>Stolen AI access as a cybercrime category<\/h2>\n<p>The report also points to a maturing market for stolen AI accounts. Okta identified Telegram sellers offering discounted access to Claude, Cursor, ChatGPT, and Gemini, complete with support and refund guarantees. A separate listing, described as Poison Claude, advertised access to multiple Anthropic model versions.<\/p>\n<p>Google&#8217;s Threat<a href=\"https:\/\/www.hexnode.com\/blogs\/explained\/what-is-threat-intelligence-in-cyber-security\/\"> Intelligence Group<\/a> corroborated the trend, reporting increased buyer demand for AI credentials paired with coding tools like Cursor Pro. In one Mandiant incident response case, a threat actor used an exposed GitHub Personal Access Token to deploy unauthorized AI infrastructure inside a victim&#8217;s cloud environment.<\/p>\n<table style=\"width: 88.192%;\">\n<thead>\n<tr>\n<th style=\"width: 21.8698%; text-align: left;\"><strong>Stolen Asset<\/strong><\/th>\n<th style=\"width: 43.8754%; text-align: left;\"><strong>What Attackers Do With It<\/strong><\/th>\n<th style=\"width: 33.0529%; text-align: left;\"><strong>Operational Priority<\/strong><\/th>\n<\/tr>\n<\/thead>\n<tbody>\n<tr>\n<td style=\"width: 21.8698%;\">Session tokens \/ JWTs<\/td>\n<td style=\"width: 43.8754%;\">Replay to bypass login and MFA<\/td>\n<td style=\"width: 33.0529%;\">Investigate token exposure immediately<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 21.8698%;\">API keys<\/td>\n<td style=\"width: 43.8754%;\">LLMjacking: resource theft, inflated bills, espionage<\/td>\n<td style=\"width: 33.0529%;\">Rotate and scope keys on discovery<\/td>\n<\/tr>\n<tr>\n<td style=\"width: 21.8698%;\">Plaintext PII in tokens<\/td>\n<td style=\"width: 43.8754%;\">Targeted phishing and social engineering<\/td>\n<td style=\"width: 33.0529%;\">Monitor for follow-on credential attacks<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<p>This pattern of using stolen API keys to run up compute costs or resell access, known as LLMjacking, mirrors older cryptomining abuse campaigns where victims absorbed the compute bill.<\/p>\n<h2>Where endpoint hygiene fits<\/h2>\n<p>Session and API key theft starts with endpoint compromise, which puts this squarely in identity security and endpoint management territory. Hexnode addresses this across three connected layers of defense.<\/p>\n<ul>\n<li><a href=\"https:\/\/www.hexnode.com\/xdr\/\">Hexnode XDR<\/a> detects malicious process activity on managed Windows endpoints and isolates the device on confirmation. This blocks lateral movement before stolen tokens can leave the network.<\/li>\n<li><a href=\"https:\/\/www.hexnode.com\/uem\/\">Hexnode UEM<\/a> reduces the attack surface that infostealers exploit. It enforces patch management and browser extension policies that limit what can read or exfiltrate browser-stored session data.<\/li>\n<li><a href=\"https:\/\/www.hexnode.com\/idp\/\">Hexnode IdP<\/a> enforces compliance-based conditional access. It blocks login attempts from devices flagged as unenrolled or non-compliant, which stops a replayed session from reaching protected resources even if the token itself is valid.<\/li>\n<\/ul>\n<div class=\"faq-section-wrapper\" itemscope itemtype=\"https:\/\/schema.org\/FAQPage\"><h2 class=\"faq-main-title\">FAQs<\/h2><div class=\"faq-items\"><div class=\"faq-item\" itemprop=\"mainEntity\" itemscope itemtype=\"https:\/\/schema.org\/Question\"><div class=\"faq-item__question\" role=\"button\" tabindex=\"0\" aria-expanded=\"false\"><span itemprop=\"name\">Does enabling MFA on AI accounts stop this attack?<\/span>\n            <div class=\"toggle\" aria-hidden=\"true\"><span><\/span><span><\/span><\/div>\n        <\/div> <div class=\"faq-item__content\" itemprop=\"acceptedAnswer\" itemscope itemtype=\"https:\/\/schema.org\/Answer\"><div class=\"faq-item__body\" itemprop=\"text\"><p>MFA prevents password-based takeover, but it does not stop an attacker who replays an already-valid session token or API key, since no new login event occurs.<\/p>\n<\/div><\/div><\/div>\n<div class=\"faq-item\" itemprop=\"mainEntity\" itemscope itemtype=\"https:\/\/schema.org\/Question\"><div class=\"faq-item__question\" role=\"button\" tabindex=\"0\" aria-expanded=\"false\"><span itemprop=\"name\">How can organizations reduce exposure to stolen API keys?<\/span>\n            <div class=\"toggle\" aria-hidden=\"true\"><span><\/span><span><\/span><\/div>\n        <\/div> <div class=\"faq-item__content\" itemprop=\"acceptedAnswer\" itemscope itemtype=\"https:\/\/schema.org\/Answer\"><div class=\"faq-item__body\" itemprop=\"text\"><p>Scope API keys narrowly, rotate them regularly, monitor usage for anomalies, and prefer OAuth 2.0 flows with short-lived tokens over long-lived static keys.<\/p>\n<\/div><\/div><\/div>\n<div class=\"faq-item\" itemprop=\"mainEntity\" itemscope itemtype=\"https:\/\/schema.org\/Question\"><div class=\"faq-item__question\" role=\"button\" tabindex=\"0\" aria-expanded=\"false\"><span itemprop=\"name\">Are encrypted JWE tokens safe from replay even without the decryption key?<\/span>\n            <div class=\"toggle\" aria-hidden=\"true\"><span><\/span><span><\/span><\/div>\n        <\/div> <div class=\"faq-item__content\" itemprop=\"acceptedAnswer\" itemscope itemtype=\"https:\/\/schema.org\/Answer\"><div class=\"faq-item__body\" itemprop=\"text\"><p>No. An attacker can replay an unexpired JWE to gain account access even without decrypting it, since the receiving service accepts the token as valid.<\/p>\n<\/div><\/div><\/div><\/div><\/div>\n<h3>Conclusion<\/h3>\n<p>AI access now carries the same stakes as privileged account access, and it needs governance to match. MFA remains a necessary control, but this report shows it is not sufficient on its own against session replay and stolen API keys.<\/p>\n<p>Enterprises adopting AI tools should treat endpoint compromise, token lifetime, and identity-aware monitoring as a single connected problem rather than three separate checklist items.<\/p>\n<div class=\"signup_box\"><div class=\"signup_wrap_img\"><div class=\"signup-bg\" style=\"background-image:url(https:\/\/cdn.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/Hexnode-MDM-free-trial.jpg?format=webp)\"><\/div><\/div><div class=\"signup_wrap\"><h5>Stolen tokens don't wait for you to notice. <\/h5><p>Get identity and endpoint security insights delivered to your inbox. <\/p><a href=\"https:\/\/www.hexnode.com\/xdr\/signup\/\" class=\"hn-cta__blogs--signup-stripe\" target=\"_blank\"> SIGN UP NOW<\/a><\/div><\/div>\n","protected":false},"excerpt":{"rendered":"<p>AI accounts have become valuable enough to appear in infostealer logs sold on underground marketplaces&#8230;.<\/p>\n","protected":false},"author":5,"featured_media":1601,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1,13],"class_list":["post-1578","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-ai-security","category-identity-abuse","product_category-identity-provider","tab_group-ai-threats"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>AI Token Theft and MFA Bypass: Lessons From Infostealer Logs<\/title>\n<meta name=\"description\" content=\"Infostealer logs exposed thousands of unexpired AI tokens and API keys that can bypass MFA and enable LLMjacking attacks.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"AI Token Theft and MFA Bypass: Lessons From Infostealer Logs\" \/>\n<meta property=\"og:description\" content=\"Infostealer logs exposed thousands of unexpired AI tokens and API keys that can bypass MFA and enable LLMjacking attacks.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/\" \/>\n<meta property=\"og:site_name\" content=\"Hexnode Threat Watch\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/Hexnode\/\" \/>\n<meta property=\"article:published_time\" content=\"2026-09-11T11:11:18+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-09-14T09:51:22+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/cdn.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/09\/infostealer-logs.jpeg?format=webp\" \/>\n\t<meta property=\"og:image:width\" content=\"1340\" \/>\n\t<meta property=\"og:image:height\" content=\"700\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Sophia Hart\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@thehexnode\" \/>\n<meta name=\"twitter:site\" content=\"@thehexnode\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Sophia Hart\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":[\"Article\",\"BlogPosting\"],\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\\\/\"},\"author\":{\"name\":\"Sophia Hart\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#\\\/schema\\\/person\\\/7303d7e90665b5fbccde155fa1c11430\"},\"headline\":\"AI Token Theft and MFA Bypass: Lessons From Infostealer Logs\",\"datePublished\":\"2026-09-11T11:11:18+00:00\",\"dateModified\":\"2026-09-14T09:51:22+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\\\/\"},\"wordCount\":1029,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/cdn.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/infostealer-logs.jpeg?format=webp\",\"articleSection\":[\"AI Security\",\"Identity Abuse\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\\\/\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\\\/\",\"name\":\"AI Token Theft and MFA Bypass: Lessons From Infostealer Logs\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/cdn.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/infostealer-logs.jpeg?format=webp\",\"datePublished\":\"2026-09-11T11:11:18+00:00\",\"dateModified\":\"2026-09-14T09:51:22+00:00\",\"description\":\"Infostealer logs exposed thousands of unexpired AI tokens and API keys that can bypass MFA and enable LLMjacking attacks.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\\\/#primaryimage\",\"url\":\"https:\\\/\\\/cdn.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/infostealer-logs.jpeg?format=webp\",\"contentUrl\":\"https:\\\/\\\/cdn.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/09\\\/infostealer-logs.jpeg?format=webp\",\"width\":1340,\"height\":700,\"caption\":\"infostealer logs\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"AI Token Theft and MFA Bypass: Lessons From Infostealer Logs\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#website\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/\",\"name\":\"Hexnode Threat Watch\",\"description\":\"Latest cyber threats, smarter enterprise response.\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#organization\"},\"alternateName\":\"Threat Watch\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#organization\",\"name\":\"Hexnode\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/hexnode-2.png?format=webp\",\"contentUrl\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/wp-content\\\/uploads\\\/2026\\\/08\\\/hexnode-2.png?format=webp\",\"width\":100,\"height\":100,\"caption\":\"Hexnode\"},\"image\":{\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/www.facebook.com\\\/Hexnode\\\/\",\"https:\\\/\\\/x.com\\\/thehexnode\",\"https:\\\/\\\/www.linkedin.com\\\/company\\\/hexnode\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/#\\\/schema\\\/person\\\/7303d7e90665b5fbccde155fa1c11430\",\"name\":\"Sophia Hart\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/9f2fcf8cf2a94925b3769939d19f157c643407bd45ff69fd553f22903b961f3a?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/9f2fcf8cf2a94925b3769939d19f157c643407bd45ff69fd553f22903b961f3a?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/9f2fcf8cf2a94925b3769939d19f157c643407bd45ff69fd553f22903b961f3a?s=96&d=mm&r=g\",\"caption\":\"Sophia Hart\"},\"description\":\"A storyteller for practical people. Breaks down complicated topics into steps, trade-offs, and clear next actions\u2014without the buzzword fog. Known to replace fluff with facts, sharpen the message, and keep things readable\u2014politely.\",\"url\":\"https:\\\/\\\/www.hexnode.com\\\/threat-watch\\\/author\\\/sophia-hart\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"AI Token Theft and MFA Bypass: Lessons From Infostealer Logs","description":"Infostealer logs exposed thousands of unexpired AI tokens and API keys that can bypass MFA and enable LLMjacking attacks.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/","og_locale":"en_US","og_type":"article","og_title":"AI Token Theft and MFA Bypass: Lessons From Infostealer Logs","og_description":"Infostealer logs exposed thousands of unexpired AI tokens and API keys that can bypass MFA and enable LLMjacking attacks.","og_url":"https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/","og_site_name":"Hexnode Threat Watch","article_publisher":"https:\/\/www.facebook.com\/Hexnode\/","article_published_time":"2026-09-11T11:11:18+00:00","article_modified_time":"2026-09-14T09:51:22+00:00","og_image":[{"width":1340,"height":700,"url":"https:\/\/cdn.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/09\/infostealer-logs.jpeg?format=webp","type":"image\/jpeg"}],"author":"Sophia Hart","twitter_card":"summary_large_image","twitter_creator":"@thehexnode","twitter_site":"@thehexnode","twitter_misc":{"Written by":"Sophia Hart","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":["Article","BlogPosting"],"@id":"https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/#article","isPartOf":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/"},"author":{"name":"Sophia Hart","@id":"https:\/\/www.hexnode.com\/threat-watch\/#\/schema\/person\/7303d7e90665b5fbccde155fa1c11430"},"headline":"AI Token Theft and MFA Bypass: Lessons From Infostealer Logs","datePublished":"2026-09-11T11:11:18+00:00","dateModified":"2026-09-14T09:51:22+00:00","mainEntityOfPage":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/"},"wordCount":1029,"commentCount":0,"publisher":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/#organization"},"image":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/#primaryimage"},"thumbnailUrl":"https:\/\/cdn.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/09\/infostealer-logs.jpeg?format=webp","articleSection":["AI Security","Identity Abuse"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/","url":"https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/","name":"AI Token Theft and MFA Bypass: Lessons From Infostealer Logs","isPartOf":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/#primaryimage"},"image":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/#primaryimage"},"thumbnailUrl":"https:\/\/cdn.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/09\/infostealer-logs.jpeg?format=webp","datePublished":"2026-09-11T11:11:18+00:00","dateModified":"2026-09-14T09:51:22+00:00","description":"Infostealer logs exposed thousands of unexpired AI tokens and API keys that can bypass MFA and enable LLMjacking attacks.","breadcrumb":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/#primaryimage","url":"https:\/\/cdn.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/09\/infostealer-logs.jpeg?format=webp","contentUrl":"https:\/\/cdn.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/09\/infostealer-logs.jpeg?format=webp","width":1340,"height":700,"caption":"infostealer logs"},{"@type":"BreadcrumbList","@id":"https:\/\/www.hexnode.com\/threat-watch\/ai-token-theft-and-mfa-bypass-lessons-from-infostealer-logs\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.hexnode.com\/threat-watch\/"},{"@type":"ListItem","position":2,"name":"AI Token Theft and MFA Bypass: Lessons From Infostealer Logs"}]},{"@type":"WebSite","@id":"https:\/\/www.hexnode.com\/threat-watch\/#website","url":"https:\/\/www.hexnode.com\/threat-watch\/","name":"Hexnode Threat Watch","description":"Latest cyber threats, smarter enterprise response.","publisher":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/#organization"},"alternateName":"Threat Watch","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.hexnode.com\/threat-watch\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.hexnode.com\/threat-watch\/#organization","name":"Hexnode","url":"https:\/\/www.hexnode.com\/threat-watch\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.hexnode.com\/threat-watch\/#\/schema\/logo\/image\/","url":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/hexnode-2.png?format=webp","contentUrl":"https:\/\/www.hexnode.com\/threat-watch\/wp-content\/uploads\/2026\/08\/hexnode-2.png?format=webp","width":100,"height":100,"caption":"Hexnode"},"image":{"@id":"https:\/\/www.hexnode.com\/threat-watch\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/Hexnode\/","https:\/\/x.com\/thehexnode","https:\/\/www.linkedin.com\/company\/hexnode"]},{"@type":"Person","@id":"https:\/\/www.hexnode.com\/threat-watch\/#\/schema\/person\/7303d7e90665b5fbccde155fa1c11430","name":"Sophia Hart","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/9f2fcf8cf2a94925b3769939d19f157c643407bd45ff69fd553f22903b961f3a?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/9f2fcf8cf2a94925b3769939d19f157c643407bd45ff69fd553f22903b961f3a?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/9f2fcf8cf2a94925b3769939d19f157c643407bd45ff69fd553f22903b961f3a?s=96&d=mm&r=g","caption":"Sophia Hart"},"description":"A storyteller for practical people. Breaks down complicated topics into steps, trade-offs, and clear next actions\u2014without the buzzword fog. Known to replace fluff with facts, sharpen the message, and keep things readable\u2014politely.","url":"https:\/\/www.hexnode.com\/threat-watch\/author\/sophia-hart\/"}]}},"_links":{"self":[{"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/posts\/1578","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/comments?post=1578"}],"version-history":[{"count":2,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/posts\/1578\/revisions"}],"predecessor-version":[{"id":1626,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/posts\/1578\/revisions\/1626"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/media\/1601"}],"wp:attachment":[{"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/media?parent=1578"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.hexnode.com\/threat-watch\/wp-json\/wp\/v2\/categories?post=1578"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}