Get the latest tech news

Massive hack hits AI servers, exploits Ray framework vulnerability


Thousands of AI servers hacked in ongoing attack, exploiting a Ray vulnerability, affecting major tech firms.

They claim that a trove of sensitive information from compromised servers has been leaked, targeting entities such as OpenAI, Hugging Face, Stripe, and Slack, as well as cloud environments like Amazon’s AWS and Microsoft Azure. Bishop Fox senior consultant Berenice Flores Garcia wrote in a blog post: “In the default configuration, Ray does not enforce authentication. It added: “We recognize that reasonable minds can differ on this issue, and consequently have decided that, while we still do not believe that an organization should rely on isolation controls within Ray like authentication, there can be value in certain contexts in furtherance of a defense-in-depth strategy, and so we will implement this as a new feature in a future release.”

Get the Android app

Or read this on ReadWrite

Read more on:

Photo of Ray

Ray

Photo of AI servers

AI servers

Photo of massive hack

massive hack

Related news:

News photo

Meta is adding AI to its Ray-Ban smart glasses next month

News photo

‘ShadowRay’ vulnerability on Ray framework exposes thousands of AI workloads, compute power and data

News photo

Hackers exploit Ray framework flaw to breach servers, hijack resources