National Cyber Warfare Foundation (NCWF)

Trojanized PyPI AI Proxy Steals Claude Prompt, Exfiltrates Data


0 user ratings
2026-04-06 13:36:08
milo
Red Team (CNA)

A malicious PyPI package, hermes-px, that masquerades as a “Secure AI Inference Proxy” while secretly stealing user prompts and abusing a private university AI service. Marketed as an OpenAI-compatible, Tor-routed proxy requiring no API keys, the package actually hijacks a Tunisian university’s internal AI endpoint, injects a stolen Anthropic Claude system prompt, and exfiltrates every […]


The post Trojanized PyPI AI Proxy Steals Claude Prompt, Exfiltrates Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.



Mayura Kathir

Source: gbHackers
Source Link: https://gbhackers.com/trojanized-pypi-ai/


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Red Team (CNA)



Copyright 2012 through 2026 - National Cyber Warfare Foundation - All rights reserved worldwide.