When you purchase through links on our site, we may earn an affiliate commission.Heres how it works.

Those 655 tokens belonged to 77 organizations, including hotshots Meta.

So, how could hackers exploit these API tokens?

AI

The researchers said attackers could use them to swipe or poison training data, or even steal AI models.

The publication also claims data poisoning of this sort could lead to the sabotage of web connection traffic.

During their analysis, the researcher stole more than 10,000 private models, they concluded.

“The gravity of the situation cannot be overstated.

The three companies in question have all barred access to these tokens in the meantime.

More from TechRadar Pro