AI Routers Can Steal Credentials and Crypto - Research
2026-04-13
Cointelegraph

The information displayed in the AIM should not be reported as representing the official views of the OECD or of its member countries.
Researchers from the University of California uncovered that third-party AI routing services, used to connect AI agents with LLM providers, are vulnerable to attacks. Malicious routers were found injecting harmful code and stealing sensitive data, resulting in real cryptocurrency theft and credential exfiltration, exposing a critical supply chain risk in AI development environments.[AI generated]