<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Security on AI Engineer Helper</title><link>https://aiengineerhelper.com/tags/security/</link><description>Recent content in Security on AI Engineer Helper</description><generator>Hugo -- 0.162.1</generator><language>en-us</language><lastBuildDate>Sun, 07 Jun 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://aiengineerhelper.com/tags/security/index.xml" rel="self" type="application/rss+xml"/><item><title>Anatomy of an LLMjacking worm</title><link>https://aiengineerhelper.com/posts/anatomy-of-an-llmjacking-worm/</link><pubDate>Sun, 07 Jun 2026 00:00:00 +0000</pubDate><guid>https://aiengineerhelper.com/posts/anatomy-of-an-llmjacking-worm/</guid><description>A first-hand incident report breaking down a devastating new &amp;#34;LLMjacking&amp;#34; worm that targets exposed AI infrastructure. Learn how an unauthenticated LiteLLM proxy led to both cryptojacking and the stealthy theft of LLM API keys—and get the exact indicators of compromise (IOCs) and commands needed to audit your own servers today.</description></item></channel></rss>