PoeLLM malware infects 2,100 AI servers in cryptomining attacks
The PoeLLM malware has compromised over 2,100 exposed AI servers running LiteLLM, Ollama, Gotenberg, and Gitea, turning them into scanners and cryptomining launchpads. It retrieves C2 addresses by extracting words from a poem hosted on GitHub, and victims communicate with Russian mining service Kryptex.
- Over 2,100 servers infected, peak of 800 active in one day
- C2 addresses encoded in a GitHub poem, updated 11 times
- Targets LiteLLM, Ollama, Gotenberg, Gitea, and Ivanti Sentry
- Exploits CVE-2026-42271 in LiteLLM for unauthenticated RCE
Read next
Security