PoeLLM botnet mines crypto on AI servers via LiteLLM flaw
Lumen's Black Lotus Labs uncovered the PoeLLM botnet, which mines cryptocurrency on servers running LiteLLM, Ollama, Gotenberg and Gitea. Command-and-control addresses are encoded in a GitHub poem, and initial access came through LiteLLM vulnerability CVE-2026-42271.
- Affected deployments run LiteLLM, Ollama, Gotenberg and Gitea
- CVE-2026-42271 is fixed in LiteLLM 1.83.7
- C&C addresses are encoded in words of a GitHub poem
- Activity traced back to April 2026
Read next
Security