BT
Privacy ToolboxJournalProjectsResumeBookmarks
Feed
Privacy Toolbox
Journal
Projects
Resume
Bookmarks
Intel
CIPHER
Threat Actors
Privacy Threats
Dashboard
CVEs
Tags
Intel
CIPHERThreat ActorsPrivacy ThreatsDashboardCVEsTags

Intel

  • Feed
  • Threat Actors
  • Privacy Threats
  • Dashboard
  • Privacy Toolbox
  • CVEs

Personal

  • Journal
  • Projects

Resources

  • Subscribe
  • Bookmarks
  • Developers
  • Tags
Cybersecurity News & Analysis
github
defconxt
β€’
Β© 2026
β€’
blacktemple.net
  1. Feed
  2. /Data Breach Roundup: AI Service Secrets Surge 81% on GitHub, Steam Games Hide Wallet Drainers, AWS Bedrock Leak Risk

Data Breach Roundup: AI Service Secrets Surge 81% on GitHub, Steam Games Hide Wallet Drainers, AWS Bedrock Leak Risk

March 17, 2026Data Breaches & Incidents3 min readhigh

Originally reported by Hackread, Troy Hunt

#github-leaks#ai-security#infostealer#aws-bedrock#steam-malware#phishing#secret-exposure
Share

TL;DR

GitGuardian reports 29 million secrets exposed on GitHub with an 81% surge in AI service leaks, while researchers discover data leak risks in AWS Bedrock AI tools. Meanwhile, the FBI investigates Steam games distributing malware that drained cryptocurrency wallets, and new phishing campaigns use real-time chat to impersonate major brands.

Why high?

The combination of 29 million exposed secrets on GitHub (81% increase in AI service leaks), FBI investigations into Steam malware campaigns, and AWS Bedrock data leak vulnerabilities represents significant active threats to enterprise and consumer security.

Digital Frontier Dispatch: Week of March 16, 2026

The past week delivered a barrage of data exposure incidents spanning cloud secrets, gaming platforms, and AI infrastructure. From millions of leaked API keys to crypto wallet theft disguised as game cheats, the attack surface continues expanding across digital ecosystems.

AI Service Secrets Flood GitHub Repositories

GitGuardian's latest research reveals a staggering 81% increase in AI service credential leaks, with 29 million secrets now exposed across public GitHub repositories. The surge reflects the rapid adoption of AI services without corresponding improvements in secrets management practices.

The exposed credentials include API keys for major AI platforms, potentially granting unauthorized access to expensive computational resources and sensitive training data. Organizations deploying AI services at scale face mounting risks as developers inadvertently commit authentication tokens to public code repositories.

Steam Gaming Platform Harbors Cryptocurrency Thieves

The FBI has launched investigations into multiple Steam games containing hidden malware designed to steal browser data and drain cryptocurrency wallets. The campaign operated between May 2024 and January 2026, targeting gamers through seemingly legitimate game downloads.

The malware specifically targeted cryptocurrency wallet files and browser-stored credentials, demonstrating the gaming ecosystem's value as an attack vector for financial crime. The FBI's involvement signals the scale and impact of these operations on victims.

AWS Bedrock AI Tools Leak Data Through DNS Queries

Security researchers identified a significant data leak vulnerability in AWS Bedrock's AgentCore Code Interpreter sandbox environment. The flaw allows malicious actors to exfiltrate sensitive cloud data through DNS queries, bypassing intended security boundaries.

The vulnerability highlights emerging risks in AI infrastructure, where sandboxing mechanisms may not adequately contain data flows. Organizations using AWS Bedrock for processing sensitive information should review their data handling procedures and network monitoring capabilities.

Vidar 2.0 Infostealer Targets Young Gamers

A new campaign distributes Vidar 2.0 infostealer malware through fake game cheats posted on GitHub and Reddit. The operation specifically targets younger gamers who may be more likely to ignore security warnings when downloading unofficial game modifications.

The malware harvests cryptocurrency wallets, login tokens, and files from infected systems. The campaign leverages trusted platforms like GitHub to appear legitimate, exploiting the gaming community's willingness to download third-party tools.

Real-Time Phishing Campaign Impersonates Major Brands

Cofense researchers documented a sophisticated phishing operation using LiveChat functionality to impersonate Amazon and PayPal customer service representatives in real-time. The attackers engage victims through live chat sessions to harvest credit card details and multi-factor authentication codes.

The campaign's real-time interaction component significantly increases its effectiveness compared to traditional static phishing pages. Victims receive immediate responses to their queries, creating a more convincing impersonation of legitimate customer service interactions.

Adobe Settles $150 Million Over Subscription Practices

The Department of Justice announced Adobe will pay $150 million to settle allegations of deceptive subscription practices, including hidden cancellation fees buried in terms of service documentation. While not a traditional data breach, the case highlights how organizations can exploit user interface design to extract unauthorized payments.

The settlement demonstrates regulatory enforcement extending beyond data protection into broader consumer protection areas affecting digital services.

Have I Been Pwned Infrastructure Evolution

Troy Hunt's Weekly Update 495 detailed the technical evolution of Have I Been Pwned from a simple website with 150 million email addresses to a complex distributed system handling massive breach datasets. The post provides insights into scaling breach notification services as the volume and complexity of data breaches continue growing.

Sources

  • https://hackread.com/gitguardian-reports-an-81-surge-of-ai-service-leaks-as-29m-secrets-hit-public-github/
  • https://hackread.com/vidar-2-0-infostealer-fake-game-cheats-github-reddit/
  • https://hackread.com/data-leak-risk-in-aws-bedrock-ai-code-interpreter/
  • https://hackread.com/fbi-investigate-steam-games-malware-crypto-theft/
  • https://hackread.com/phishing-scam-livechat-pose-as-amazon-paypal/
  • https://hackread.com/adobe-hidden-fees-hard-to-cancel-subscriptions/
  • https://www.troyhunt.com/weekly-update-495/

Originally reported by Hackread, Troy Hunt

Tags

#github-leaks#ai-security#infostealer#aws-bedrock#steam-malware#phishing#secret-exposure

Tracked Companies

πŸ‡ΊπŸ‡ΈReddit
πŸ‡ΊπŸ‡ΈAmazon

Related Intelligence

  • Phishing Campaign Compromises Starbucks Employee Portal, Exposes 889 Staff Records

    mediumMar 15, 2026
  • 2,600+ TLS Certificates Compromised by Private Key Exposure on GitHub and DockerHub

    highMar 7, 2026
  • Security Roundup: Certificate Abuse, Phishing Evolution, and Enterprise Defense Gaps

    highMar 5, 2026

Related Knowledge

  • DFIR & Threat Hunting Deep Training β€” CIPHER Knowledge Base

    dfir
  • Digital Forensics Artifacts β€” Deep Dive Reference

    dfir
  • CIPHER Incident Response Playbooks β€” Operational Reference

    dfir

Explore

  • Dashboard
  • Privacy Threats
  • Threat Actors
← Back to the feed

Previous Article

← Nation-State Activity Roundup: Iranian APT Evolution, Russian Backdoors, and Cross-Platform Social Engineering

Next Article

Critical Chrome Zero-Day Under Active Attack, North Korean Campaigns Target KakaoTalk, Supply Chain Attacks Hit Python Repos β†’