GreyNoise identified an automated scanning campaign that spoofed user-agent strings associated with AI crawlers from OpenAI, Anthropic, Google, Perplexity, DeepSeek, and Amazon to probe internet-facing systems for exposed credentials and secrets. Between July 28 and August 23, the activity originated from 824 IP addresses across 795 separate /24 networks; the infrastructure shared one HTTP client fingerprint linked to more than 1,500 user-agent strings over the preceding 90 days.
The scanners sought sensitive web-accessible files including /.env, /.aws/credentials, private keys, password stores, and Git configuration files, while the forged identities did not request /robots.txt. None of the observed source addresses matched published crawler IP ranges for the impersonated providers. GreyNoise could not determine whether any requested files were retrieved, whether victims were compromised, or who operated the campaign; organizations should validate crawler traffic against provider-published IP ranges rather than trusting user-agent strings and ensure sensitive files are not exposed through web servers.

Map this exposure pattern across your cloud, code, and identities.
2 events from the most recent confirmed update back to the earliest known activity.
Almost all traffic using the six forged AI-crawler identities occurred in August, with the largest single-day volume observed on August 23. The spoofed traffic did not request /robots.txt, unlike legitimate Anthropic crawler traffic observed during the same period.
Between July 28 and August 23, automated scanners used forged AI-crawler user-agent identities to request exposed environment files, cloud credentials, private keys, password stores, and Git configuration files. GreyNoise observed six forged crawler names from 824 IP addresses across 795 /24 networks; none matched published crawler IP ranges, and the activity was not attributed.
See where this exposure pattern shows up across your cloud, code, supply chain, and non-human identities.
3 references tracked. Mallory keeps watching after this page renders.
cybersecuritynews.com
Open sourcehelpnetsecurity.com
Open sourcegreynoise.io
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.