Scanning for AI Models, (Tue, Apr 14th)
A single threat actor (IP 81.168.83.103) has been systematically scanning internet-facing systems since at least January 2026, specifically targeting credential files, API tokens, and configuration …
AML.T0012 - Valid Accounts
AML.T0040 - ML Model Inference API Access
AML.T0044 - Full ML Model Access