0x

guest@0xbase ~$ read-only mode. Posting requires EU location.

ComfyUI-Server: Attackers turn instances into crypto-miner proxy botnets (heise.de)

· 111d ago · Report · Spotlight this ·
0xBASE INTEL BRIEF
  • Over 1,000 ComfyUI nodes found exposed without security layers.
  • Attackers leveraging infrastructure for unauthorized mining and proxy routing.
  • Critical lack of default authentication allows full server takeover.

"More than 1,000 ComfyUI instances are currently exposed to the public internet, leaving them vulnerable to exploitation. Attackers are hijacking these AI workflow servers by exploiting configuration weaknesses to deploy cryptominers and turn the nodes into proxy botnets. The lack of default authentication in typical setups facilitates unauthorized administrative control over the underlying infrastructure."

Discussion Matrix

0 segments

no comments yet.