Advanced threat intelligence
Kinryū Labs
We're a research group that finds vulnerabilities in space systems, runs honeypot networks to watch attackers in the wild, and produces cyber threat intelligence. We report what we find to the organisations affected, and publish what we can - once it's ready and cleared for release.
Doing it for the love of the game.
Latest reports
View all →-
Threat teardown
DeepSeek Harness Abuse: An Autonomous Agent Exposes Its Operator's Host
This is an operator stealing inference from an internet-exposed OpenAI-compatible model endpoint by pointing the open-source DeepSeek Harness coding agent at it, whose auto-approving tool loop then ran the endpoint's tool calls on the operator's own Windows workstation and posted the output back.
llm-abuse · agent-harness · deepseek-harness · api-key-abuse · mcp · fofa
-
Threat teardown
DeepSeek Harness Against a Stolen LLM Gateway: Tool Calls Run on the Caller
This is an agentic LLM client, DeepSeek Harness, DeepSeek's developer-preview agent framework, pointed at a honeypot LLM gateway by the two addresses that had replayed a virtual key minted on that gateway the day before.
llm-abuse · litellm · llm-gateway · agent-harness · deepseek · credential-abuse
-
Threat teardown
An exposed inference endpoint, health-checked and then used as somebody's backend
This is the end-to-end recruitment of an unauthenticated OpenAI-compatible inference endpoint by a third party, who validated the model with a scripted probe battery and then relayed a real agent application's user traffic through it.
llm-abuse · llmjacking · self-hosted-llm · ai-agents · prompt-capture · credential-exposure
kinryu@lab