AI Safety 🇩🇪 06.08.2026 14:03

OpenAI developer warns: AI models could soon mass-search for exposed API keys and crypto wallets

OpenAIOpenAI
OpenAI developer 'roon' warns on X that AI models could soon scan the internet for exposed API keys, crypto wallets, and user credentials. He advises removing such data from public repositories and checking smart contracts for vulnerabilities. In a follow-up, he softens the warning but stresses the need for security experts to close gaps.
OpenAI developer 'roon' (@tszzl) warns on X about growing security risks from AI models. He advises anyone with API keys, crypto wallet access, or user credentials exposed online—such as on GitHub or Pastebin—to remove them before 'the tireless eagle eyes of a million models' search for them. He also recommends that those who have invested in insecure smart contracts check them with a current AI model for vulnerabilities, and that outdated IoT devices be turned off before they become part of a botnet. In a follow-up post, 'roon' slightly qualifies his warning, saying that things will probably be fine, but it is still useful for security experts to 'freak out' and close all gaps in the coming weeks. The trigger for his warning, according to an earlier post, was OpenAI's autonomous Hugging Face hack, which he called a 'warning shot'.
Abbreviations
API = Application Programming Interface — программный интерфейс приложения
Source: The Decoder (DE) — original
Our earlier posts on this topic ↓
Fresh news