A new arxiv study finds 26 LLM API routers injecting malicious code and draining ETH wallets, exposing a hidden supply chain threat inside AI coding agents.
As AI agents increasingly rely on third-party API routers, criminals are using this dependence to trick users and inject malicious code into their machines.
Some AI API routers can steal crypto private keys and inject malicious code, researchers warned in a new security study.