LLMHorrors

Stories you never want to feel on your own skin

Stolen Gemini API key racks up $82,000 in 48 hours

Andras Bacsai's avatar
Stolen Gemini API key racks up $82,000 in 48 hours

Original post

Conclusion: Always set billing caps and alerts on cloud API keys. A compromised key without spending limits can bankrupt you overnight.


tldr: A stolen Google Cloud API key generated $82,314 in Gemini charges in 48 hours — normal monthly spend was $180.