Cybercriminals are using a toolkit called BlueMoon to harvest AI authentication tokens from stolen password files, potentially bypassing multi-factor authentication protections.
Security researchers have discovered a troubling new cyber campaign where hackers are stealing login credentials for artificial intelligence systems and using them to gain unauthorized access to accounts—even when those accounts have extra security protections enabled. The attackers are using a previously unknown attack toolkit called BlueMoon, which exploits multiple weak points in both Windows computers and the Google Chrome web browser simultaneously.
The stolen credentials include something called "AI tokens"—essentially digital keys that prove your identity to artificial intelligence platforms. Unlike regular passwords that you type in, these tokens can be reused automatically by attackers without triggering the extra verification step (known as multi-factor authentication or MFA) that normally stops unauthorized logins.
Think of multi-factor authentication like a bank requiring both your key card and a fingerprint scan to open your account. Traditional MFA defeats attackers who steal your password because they can't also steal your fingerprint. But these AI tokens are like having a key card that already has your fingerprint encoded into it—stealing the card means the attacker can walk right in without any additional verification.
This represents a significant shift in how cybercriminals attack businesses and individuals. Rather than targeting AI systems directly, they're going after the stolen password files that hackers collect from security breaches. Intelligence agencies believe the campaign originates from threat groups associated with China, suggesting this could be part of larger espionage operations targeting governments and corporations.
If you or your organization uses artificial intelligence tools for work—whether that's ChatGPT, Claude, or enterprise AI platforms—your account could be at risk. These compromised credentials could give attackers access to:
The broader concern is that as organizations increasingly rely on AI for critical decisions and processes, attackers are adapting their playbooks to target these new tools. This is no longer a theoretical risk—it's actively happening in the wild.
For individuals:
For organizations:
As artificial intelligence becomes central to how we work and communicate, protecting these tools from theft and misuse deserves the same urgency we give to traditional cybersecurity defenses.
Want to understand the technology behind this story? ITVedas has beginner-friendly guides on every IT topic.
Explore IT Chapters →