LLMjacking — How AI API Key Theft Works and How to Prevent It
A startup's OpenAI bill jumped from $400 to $67,000 in a month. Their API key had been sitting in a public GitHub repository for 11 days. Automated bots found it within minutes. This is LLMjacking — and Microsoft has already filed lawsuits over it.