Skip to content
Zenteck
Latest
Analysis

LLMjacking: How Stolen AI API Keys Drain Budgets

Por Alex da Cruz1 min read0 comments
llmjacking-theft-switches-inflates-accounts
A

Alex da Cruz

Alex da Cruz is a full-stack developer based in São Paulo, Brazil. He works with React, TypeScript and automation, and uses AI daily to solve real problems in code and operations — not as a demo. He has run an e-commerce operation end to end, and now builds and maintains the automation pipeline behind this blog. He writes about what he actually tests.

Ver perfil →

Corporate AI budgets face a severe threat from LLMjacking, a cybercriminal method where attackers steal API keys or account credentials to use enterprise artificial intelligence resources without paying for them.

How much does LLMjacking cost a business?

According to estimates from Sysdig's Threat Research Team cited by ZDNet, unauthorized token consumption on top-tier models can rack up charges between $46,000 and over $100,000 per day for targeted organizations.

Why are attackers targeting AI credentials?

Attackers steal these high-limit keys to run heavy computing workloads, train malicious models, or resell access on underground markets at up to a 97% discount, as noted by Google Threat Intelligence Group analyst John Hultquist.

How can companies stop LLMjacking?

To protect infrastructure, security teams must eliminate hardcoded API keys, enforce strict least-privilege frameworks, and monitor systems for unusual token spikes that indicate unauthorized access.

Sources

  1. LLMjacking can run up your business’ AI bill fast – how to stop it — zdnet.com

Frequently asked questions

What is LLMjacking?
LLMjacking is the AI equivalent of cryptojacking, where attackers steal enterprise API keys or credentials to use corporate AI models and compute power illicitly.
How much can LLMjacking cost a company?
Sysdig estimates that unauthorized usage on top-tier enterprise AI models can inflate daily operational costs from $46,000 to over $100,000.
How do attackers get AI credentials?
Cybercriminals obtain credentials through phishing, data breaches, network vulnerabilities, insider threats, or by exploiting hardcoded API keys.