Solayer Founder Reveals Security Risks in LLM API Routers

iconAiCoin
Share
Share IconShare IconShare IconShare IconShare IconShare IconCopy
AI summary iconSummary

expand icon
Solayer founder @Fried_rice exposed a security breach in LLM API routers, uncovering malicious code in 1 paid and 8 free routers. The code targeted ETH and credentials. The team developed Mine Proxy to simulate attacks and implemented defenses such as fault lockout and access control. The findings underscore ongoing concerns regarding ETH-related smart contract and API vulnerabilities.

On April 10, Solayer founder @Fried_rice posted that large language model agents rely on third-party API routers but lack cryptographic integrity protection. Testing 28 paid routers and 400 free routers revealed that one paid router and eight free routers injected malicious code and stole ETH and credentials. The team developed Mine, an agent verification system for detecting and defending against such attacks, including fail-safe policy gating mechanisms.

Disclaimer: The information on this page may have been obtained from third parties and does not necessarily reflect the views or opinions of KuCoin. This content is provided for general informational purposes only, without any representation or warranty of any kind, nor shall it be construed as financial or investment advice. KuCoin shall not be liable for any errors or omissions, or for any outcomes resulting from the use of this information. Investments in digital assets can be risky. Please carefully evaluate the risks of a product and your risk tolerance based on your own financial circumstances. For more information, please refer to our Terms of Use and Risk Disclosure.