# Hackers hijack AI accounts and servers to fuel new cyber crime boom

> **Open Intelligence Dossier** · First detected: 2026-09-28 08:40 UTC · Category: Business

## Executive Summary
Hackers are hijacking corporate AI accounts and servers to fuel a massive new cyber crime boom.

## Intelligence Brief
Recent coverage from outlets including CX Today, csoonline.com, Inshorts, 조선일보, and ft.com details a significant escalation in cybersecurity threats targeting artificial intelligence infrastructure. According to the reports, hackers are actively hijacking corporate AI accounts and servers to execute unauthorized operations. This activity includes stealing AI model access to sell on the dark web, misusing corporate clouds for free AI operations, and feeding a growing large language model proxy economy. A major supply chain attack has specifically exposed over 2,500 companies in what is being characterized as the largest artificial intelligence infrastructure breach recorded so far in the year 2026. The reporting across these publications places heavy emphasis on the mechanics of these breaches, which are increasingly referred to as LLM-jacking.


Outlets such as ft.com and csoonline.com highlight how stolen credentials are being monetized through proxy economies, while CX Today provides metrics regarding the vast scope of the supply chain compromise. 조선일보 and Inshorts focus on the operational aspects of the attacks, noting how unauthorized actors exploit corporate cloud environments to utilize artificial intelligence capabilities without incurring costs. Coverage does not yet specify the full extent of the financial damages incurred by the affected organizations or the exact identity of the threat actors behind the incidents. This trend emerges against the backdrop of rapidly expanding corporate adoption of artificial intelligence and large language models, creating new surfaces for attack that traditional security measures may not fully cover. As companies integrate sophisticated AI tools into their core supply chains and cloud infrastructures, these interconnected environments present lucrative targets for malicious actors. The exploitation of stolen credentials points to vulnerabilities in how organizations manage access permissions for complex machine learning resources.


Coverage does not yet detail the historical timeline of prior breaches or the specific preventative protocols currently being deployed by the thousands of impacted companies. Observers and stakeholders will need to monitor ongoing reports to see how affected firms respond to the supply chain exposures and whether security frameworks adapt to the rising LLM proxy economy. Further updates from outlets covering technology and business will likely track the evolution of LLM-jacking techniques and any potential regulatory or industry-wide interventions. Coverage does not yet specify concrete timelines for remediation efforts or whether law enforcement agencies have initiated formal investigations into the dark web markets where stolen AI access is currently being traded.

## Multi-Source Evidence Table
| Source Outlet | Headline | Verification URL |
|---|---|---|
| CX Today | Supply Chain Attack Exposes 2,500+ Companies in Largest AI Infrastructure Breach of 2026 So Far | [Source Link](https://news.google.com/rss/articles/CBMiuAFBVV95cUxQaXh0akxmbi1FaEpQV2hFak1QRHNGX1h0RFRWb2VUQnNCcVFJUUp1bzBxdEthbDR0c21YeUNJWVVGQlZnd0I0clVRVGNYRk9lQ3pQUldGSXVoRE1zZDR3SlZmbGpSSlNqN0gweUNOZnZYMWFCVTBrMTdzN0pYNGV1blNreFV3MWhVaXdWRWcwdE5XVzFFZ29nTk9jTEc3R1hHbUVzY3BFVFk2OWhxQXJsbTRuSEVCcndQ?oc=5) |
| csoonline.com | Stolen AI credentials feed growing LLM proxy economy | [Source Link](https://news.google.com/rss/articles/CBMioAFBVV95cUxNU3RjcHowOHcydDktRGZPUnpyM0p4UExtckdtS3ljc3FOVDI5UldKNVJOU09sSlFoRUV5ZmZ4Y0V0RmVhNVFoQV9obXhMR2VCaWhiUlhhcDV6VWhuT1RWbEY0dGE0N1JlMXgxalRvUzl6REc3M1BZT1RMd3U3YW5wcUtnTkJoXzBfRjljQTcwVDFOeTNWd1JsZ1lNdS1tR0pZ?oc=5) |
| Inshorts | Hackers use 'LLM-jacking' to steal AI model access to sell on dark web - Tap to know more - Inshorts | [Source Link](https://news.google.com/rss/articles/CBMiqAFBVV95cUxOQXQ4RWNISkJlWHNOWXlwTzJLdk1DbnhCMGNRMURSak1qSC1ucEVmUDRRREpXWDVmczlhWXpvNTdxM3BRZVBKOEhoUjJJU2txUTNmbFBVQTVTUmFQd3ZKSGJ1a3Q4dFJIN09PNmRLX01ZWllIakhxSzM5eEtPdkVFUTNlRHFMVFFONkhROW15Wm1QYWlJb0xWUDh1RldfSFlob3Q3MWxvXzfSAa4BQVVfeXFMTzFqYUdEb283dUhRTEdkZXh3cTYwdHlqalROQzNmSlE5ZGpzSHpGeEVRSjd3YTlPcHNWajBYYzVud0VRR0FtLWdtUzdMTWR0YjNrZThZYldQU0hyLVYxa3FFX0xtOFRxVkEweTczczk0VDhhbkh1Q2MxUkxXS25Td2NNbmxxNC1UdFBUaTA5ZHJ3M0lVN3U0dkxkVVZpNHlHMm5xUmNJZkNKNjN) |
| 조선일보 | Hackers Steal AI Accounts, Misuse Corporate Clouds for Free AI Operations | [Source Link](https://news.google.com/rss/articles/CBMiiAFBVV95cUxQVGJGZ3YzaW5ibXc1SW1YZURZb09ad1k5T0s0RlNaNkctenJrdkxxMkY4Z3IwVE1DLXFHN1o5SkI1Q2R1dnRxcmJHV0s3ck5faE4tc2ZFMTBLNTQydUNWOFZabmUxVDRyRWlyWjh5dWJIOGZyZVJYR2lQS3FhTUpBUXB4TTlic0pi?oc=5) |
| ft.com | Hackers hijack AI accounts and servers to fuel new cyber crime boom | [Source Link](https://news.google.com/rss/articles/CBMihAFBVV95cUxOVDI0d2VKaVhhMjhjQ3dwcXo3UVlyejRrVWZoS212dWp6NENmRkswblZnbHdCSWlBU01VMmowRDk1dVhVRkF4Ny0zR1NSMWxOVUJBVU1BX1FxMmNuZURGcXpvejhUREJCZUwzV2lXSEJXNzRTeFFNQ05fTWZQR3JEMVZFVGw?oc=5) |

---
*Canonical Source: https://pulse.byoviral.com/trend/2026-09-28/hackers-hijack-ai-accounts-and-servers-to-fuel-new-cyber-crime-boom*
