14 days agoEngagement
Cross-Service Credential Replay: Operator Targets Hypervisor Using Harvested LLM Endpoint Secrets
A single IP harvested strings from an LLM emulator's responses (`.env`, model list, MCP manifest) and replayed them as Proxmox credentials, chat-completions parameters, and MCP tool-call names against the same host — a token-reuse feedback loop, not blind brute-force. 22 of 24 credential pairs are byte-for-byte traceable to served response bodies.