Close Menu
NCIJ Network NCIJ Network
    What's Hot

    Healthcare organizations can now connect EHR and additional industry data to ChatGPT

    September 1, 2026

    Critical Langflow flaw exploited to steal OpenAI and AWS keys

    September 1, 2026

    200 ms subblocks zero four fields in Optimism payloads

    September 1, 2026
    Facebook X (Twitter) Instagram
    Trending
    • Healthcare organizations can now connect EHR and additional industry data to ChatGPT
    • Critical Langflow flaw exploited to steal OpenAI and AWS keys
    • 200 ms subblocks zero four fields in Optimism payloads
    • How a small island in Canada appeared, vanished, and was found again
    • Tiago Karaí and Laudiceia Benites helped reclaim Guarani land. They died with their children in an accident last month.
    • Burnham’s ambitious plans need room to breathe – and Westminster suffocates change | Rafael Behr
    • US health authorities contradict state officials on measles-related deaths | Health News
    • Pressure mounts on Europe as Trump deals push pharma to the US – POLITICO
    • About
      • Our Team
      • Editorial Policy
      • Editorial Independence
      • International Support
    • Trust & Standards
      • AI Usage Policy
      • Conflict of Interest Policy
      • Corrections Policy
      • Ethics Policy
      • Fact-Checking Policy
      • Source Protection
    • Get Involved
      • Guide for Sources
      • Support Independent Journalism
    • Legal
      • Cookie Policy
      • Privacy Policy
      • Terms of Use
    Facebook X (Twitter) Instagram
    NCIJ Network NCIJ Network
    Tuesday, September 1
    • Home
    • World
    • Ai
    • Business
    • Politics
    • Health
    • Crypto
    • Science
    • Technology
    • Cybersecurity
    • Defense & Security
    • Economy
    • Energy
    • Europe
    • More
      • Fact Check
      • Investigations
      • Opinion & Analysis
      • Environment
    NCIJ Network NCIJ Network
    Home»Cybersecurity

    Critical Langflow flaw exploited to steal OpenAI and AWS keys

    NCIJ NETWNCIJ NETWORKBy NCIJ NETWNCIJ NETWORKSeptember 1, 2026 Cybersecurity No Comments3 Mins Read
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Threat actors are exploiting an unauthenticated remote code execution vulnerability (CVE-2026-0768) in Langflow, an open-source framework for building AI applications, to steal credentials, tokens, and keys.

    The security issue received a critical severity rating and resides in the code validator of Langflow’s custom component editor.

    Threat intelligence company VulnCheck detected the activity on its honeypots in the U.K. that were targeted in at least 50 exploitation attempts over the weekend, with attack traffic originating primarily from Russia.

    VulnCheck lead security researcher Caitlin Condon said that the activity intensified and the total number of observed attacks increased to 360 as of today.

    According to Condon, the attacker conducts reconnaissance and queries environment variables to harvest administrative credentials or superuser authentication keys for Langflow instances, AWS secrets, and OpenAI API keys.

    “Among other things, attacker requests are querying environment variables (LANGFLOW_SUPERUSER, OPENAI_API*, AWS_ACCESS*, AWS_SECRET*), reading /root/.cache/langflow/secret_key, and checking .ssh access and .bash_history size,” Condon explained.

    Langflow is an open-source, Python-based low-code platform for building AI applications, agents, chatbots, and retrieval-augmented generation (RAG) systems.

    It lets users create workflows in a graphical interface by connecting components for language models, prompts, databases, APIs, and other tools.

    The CVE-2026-0768 vulnerability was disclosed in January and affects Langflow versions 1.4.2 and earlier. It allows executing arbitrary code without authentication with root privileges.

    “The specific flaw exists within the handling of the code parameter provided to the validate endpoint. The issue results from the lack of proper validation of a user-supplied string before using it to execute Python code,” reads the vulnerability’s description.

    Trend Micro’s Zero Day Initiative notes that it results from the lack of proper validation of a user-supplied string before using it to execute Python code.

    Condon says that there are no known public proof-of-concept (PoC) exploits.

    CVE-2026-0768 isn’t the first Langflow vulnerability that exploited this year. In March, attackers leveraged CVE-2026-33017, a critical code-injection flaw, within about a day of its disclosure, and used it to execute Python scripts and to harvest .ENV and database files.

    This was followed by attacks exploiting CVE-2026-5027 to write arbitrary files to vulnerable servers and CVE-2026-55255 to access other users’ AI workflows, steal sensitive data, and deliver second-stage implants.

    Attackers also exploited CVE-2026-0770 to execute commands with root privileges and attempted to deploy malware and extract cloud credentials, environment variables, and container metadata.

    More recently, CISA warned that CVE-2026-9198 was being exploited after multiple proof-of-concept exploits became publicly available.

    Langflow users are recommended to upgrade to the latest available version, 1.11.6, which addresses all known flaws in the popular tool.


    article image

    Overall prevention scores can hide what happens after initial access. Once attackers are using valid credentials, prevention drops sharply.

    The Blue Report 2026 measures defenses technique by technique across 338 million simulations run in customer production environments.

    Get the report

    AWS critical Exploited Flaw keys Langflow OpenAI Steal
    NCIJ NETWNCIJ NETWORK
    • Website

    Keep Reading

    13 Malicious Packagist Packages Target Unpatched iPhones to Steal Crypto Wallet Seeds

    Novocure data breach affects more than 1,400 cancer patients

    Hackers push malicious Virtualizor update in BGP hijacking attack

    Iranian Hackers Pose as Recruiters to Deliver Cross-Platform RATs Through Coding Tests

    Nearly 22,000 Microsoft Exchange servers vulnerable to hijack attacks

    Hackers Start Exploiting Critical Langflow Vulnerability

    Add A Comment
    Leave A Reply Cancel Reply

    Editors Picks

    Healthcare organizations can now connect EHR and additional industry data to ChatGPT

    September 1, 2026

    Critical Langflow flaw exploited to steal OpenAI and AWS keys

    September 1, 2026

    200 ms subblocks zero four fields in Optimism payloads

    September 1, 2026

    How a small island in Canada appeared, vanished, and was found again

    September 1, 2026
    Latest Posts

    Bitcoin Only Makes Up 1% Of Legendary Investor Ray Dalio’s Portfolio

    July 30, 2026

    AI Harnesses Burst With Potential Exploit Opps

    July 30, 2026

    LinkedIn actually adds a ‘seems like AI slop’ button

    July 30, 2026

    Subscribe to News

    Get the latest sports news from NewsSite about world, sports and politics.

    NCIJ Network is an independent digital news platform delivering trusted investigative journalism, European and global news, in-depth analysis, and fact-based reporting with accuracy, transparency, and integrity.

    Facebook X (Twitter) Instagram Pinterest YouTube

    Healthcare organizations can now connect EHR and additional industry data to ChatGPT

    September 1, 2026

    Critical Langflow flaw exploited to steal OpenAI and AWS keys

    September 1, 2026

    200 ms subblocks zero four fields in Optimism payloads

    September 1, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Type above and press Enter to search. Press Esc to cancel.