Thomas Roccia :verified: on Nostr: 🧐 When attackers expose their LLM interface, they expose part of their ...
🧐 When attackers expose their LLM interface, they expose part of their infrastructure and potentially much more!
Unit 42 recently released a threat report that shows how a self hosted NextChat instance, SOCKS5 relays, scripts and reused certificates could be used as a pivot point in your threat research.
In a recent campaign they discovered an exposed NextChat interface used to interact with different models.
The hosted LLM provided all the information needed to extract the Active Directory database, but the infrastructure was accessible to anyone without authentication, exposing the attackers playbook, prompt history and malicious scripts.
Even threat actors are hiring rookies! 😅
Report:
https://unit42.paloaltonetworks.com/ai-tool-use-targeting-latam-orgs/
Published at
2026-09-08 05:33:51 GMTEvent JSON
{
"id": "ff8b49b68c7f339d44989c9f99921e3b49490ecc5ca46817c8bbccefd71a583c",
"pubkey": "4d38255ded7f7470a1fb2ebd9abc748caaf15b8766d7ced42344f9ceac41f542",
"created_at": 1788845631,
"kind": 1,
"tags": [
[
"imeta",
"url https://media.infosec.exchange/infosec.exchange/media_attachments/files/117/233/787/047/493/928/original/943af3cca0e98ca8.png",
"m image/png",
"dim 1536x1203",
"blurhash U9SsEP1P10cF?HNGaxWBIUn$oLt7-;RjjsWV"
],
[
"proxy",
"https://infosec.exchange/users/fr0gger/statuses/117233787306180556",
"activitypub"
],
[
"client",
"Mostr",
"31990:6be38f8c63df7dbf84db7ec4a6e6fbbd8d19dca3b980efad18585c46f04b26f9:mostr",
"wss://relay.ditto.pub"
]
],
"content": "🧐 When attackers expose their LLM interface, they expose part of their infrastructure and potentially much more!\n\nUnit 42 recently released a threat report that shows how a self hosted NextChat instance, SOCKS5 relays, scripts and reused certificates could be used as a pivot point in your threat research. \n\nIn a recent campaign they discovered an exposed NextChat interface used to interact with different models.\n\nThe hosted LLM provided all the information needed to extract the Active Directory database, but the infrastructure was accessible to anyone without authentication, exposing the attackers playbook, prompt history and malicious scripts.\n\nEven threat actors are hiring rookies! 😅\n\nReport: https://unit42.paloaltonetworks.com/ai-tool-use-targeting-latam-orgs/\n\nhttps://media.infosec.exchange/infosec.exchange/media_attachments/files/117/233/787/047/493/928/original/943af3cca0e98ca8.png",
"sig": "1f3f7bb0506d90b1c49c792ae5989aa10770642ed3699b423969f0e2d07aac8f2eb0b45e5b46df9b8cae115a9269f35705ba37a353c4301286a7ae62e34f1aab"
}