ainewsblitz.com

Breaking

NadMesh Botnet Targets Exposed AI and Model Context Protocol Servers, Claims Thousands of Stolen AWS Keys

  • Security
  • AI Agents

A newly discovered Go-based botnet dubbed NadMesh is systematically hunting exposed artificial intelligence services and Model Context Protocol (MCP) servers, harvesting cloud credentials at scale and signaling a shift from indiscriminate worm behavior toward an industrial-grade, return-on-investment-driven attack platform. Uncovered in early July 2026 by researchers at QiAnXin XLab, the malware combines automated internet-wide reconnaissance with more than 20 distinct remote code execution vectors to compromise AI infrastructure that has been left accessible on the open internet.

Continue reading

The rest of this article is for AI News Blitz readers. Choose an option below to keep reading.

$20
Read this article
$29/month
Unlimited — all 7,274 articles, the full archive, and comprehension quizzes
Save 72%
$98/year
≈ $8.17/month
Unlimited, billed once a year