type: incident ยท created: 2026-09-10 ยท updated: 2026-09-10 ยท tags: [incident, ai, infostealer, credential-theft, mfa-bypass, session-tokens] ยท confidence: reported ยท affected_sectors: [technology, financial-services, government] ยท au_impact: true
New research finds that infostealer log collections are surfacing replayable authentication tokens for AI platforms that can be used to bypass multi-factor authentication, extending the credential-theft economy into the AI-access layer. As organisations increasingly grant conversational agents and AI applications privileged access through session tokens, those tokens are becoming a fresh target in stealer malware output. Defenders are advised to treat AI-platform session tokens as highly sensitive, enforce short-lived sessions and rotation, and monitor infostealer feeds for AI-companion credentials.
| Attribute | Detail |
|---|---|
| Date | Reported 2026-09-09 |
| Type | Credential theft / MFA-bypass vector in AI layer |
| Theme | Autonomous-AI-agent access risk |
| Source | The Hacker News โ Tier 2/4 |