A security firm named Strix discovered a critical vulnerability in Baseten, a company valued at $13 billion that provides AI inference services. Strix's autonomous hacking agent, also named Strix, found an active GitHub personal access token with admin privileges to Baseten's internal repositories. This token was embedded in a Docker image from March 2023 and remained functional until July 2026. Baseten's security team responded quickly to confirm the issue and revoke the token. AI
IMPACT Exposes potential security risks for companies relying on third-party AI infrastructure providers.
RANK_REASON Security tool discovers vulnerability in a third-party service.
Read on Mastodon — fosstodon.org →
AI-generated summary · Google Gemini · from 2 sources. How we write summaries →