SECURITY·중요도 8·2026. 07. 17.·The Hacker News
New NadMesh Botnet Hunts Exposed AI Services for Cloud Keys and Kubernetes Tokens
── KO ──────────────────
NadMesh 봇넷이 노출된 AI 서비스를 검색하고 있습니다.
NadMesh라는 Go 기반의 봇넷이 노출된 AI 서비스를 겨냥하여 AWS 키를 수집하고 있습니다. 이 봇넷은 Shodan을 사용하여 ComfyUI, Ollama, n8n, Open WebUI, Langflow, Gradio와 같은 이미지 생성기 및 워크플로우 빌더들을 스캔하고 있습니다. 이를 통해 공격자는 클라우드 키와 쿠버네티스 토큰을 목표로 하고 있습니다.
── EN ──────────────────
The NadMesh botnet is hunting exposed AI services.
A Go-based botnet named NadMesh has emerged, targeting exposed AI services to harvest AWS keys. It utilizes Shodan to scan for tools like ComfyUI, Ollama, n8n, Open WebUI, Langflow, and Gradio. By doing so, the botnet aims to collect cloud keys and Kubernetes tokens from vulnerable services.