Skip to main content
Live Webinar with SANS (June 25)— Agentic CTI Automation for Fun & ProfitRegister Free
Mallory
Back to intelligence
leaked-secret-api-keyai-platform-securitycloud-misconfigurationidentity-authentication-vulnerability

Stolen Google Gemini API Key Abuse Triggers $82K in Unauthorized Cloud Charges

Updated 3mo agoFirst seen Mar 4, 20262 sources

A small three-person software team reported that a stolen Google Cloud/Gemini API key was abused to run up $82,314.44 in charges in roughly 48 hours, a ~455x spike from their typical $180/month spend. The attacker(s) allegedly hammered the Gemini 3 Pro Image and Gemini 3 Pro Text endpoints, and the victim stated they deleted the compromised key, disabled Gemini APIs, rotated credentials, enabled 2FA, and tightened IAM controls while opening a support case.

Both reports indicate Google support initially pointed to the cloud Shared Responsibility Model, signaling the customer may remain liable for charges tied to compromised credentials. The incident was framed as a cautionary example of how exposed or poorly-scoped API keys can become high-impact AI credentials; one report cited research indicating thousands of legacy Google API keys have been found exposed on public websites and warned that default or “Unrestricted” API key settings can enable catastrophic cost exposure unless organizations implement guardrails such as billing budgets/caps, API key restrictions (API/IP/referrer scoping), and tighter quota limits.

Share:
Stolen Google Gemini API Key Abuse Triggers $82K in Unauthorized Cloud Charges
Stay ahead

Get ahead of threats like this

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.

EVENT TIMELINE

How this story unfolded

4 events from the most recent confirmed update back to the earliest known activity.

4 EVENTS
Mar 4, 20264mo ago

Victim files FBI cybercrime report

The affected user reported filing a cybercrime complaint with the FBI and planned to provide logs as evidence of credential theft and API abuse. The filing was part of an effort to support the dispute and seek possible goodwill credits from Google.

Feb 12, 20264mo ago

Developers open Google support case over disputed charges

Following the incident, the team contacted Google Cloud support to dispute the charges and seek relief. According to the reports, initial feedback indicated the charges would likely stand under Google's shared responsibility model.

Victim team revokes key and hardens account security

After discovering the unauthorized usage, the affected developers deleted the compromised key, disabled Gemini APIs, rotated credentials, enabled 2FA, and tightened IAM controls. These actions were taken to stop further abuse and secure the Google Cloud environment.

Feb 11, 20264mo ago

Attackers abuse stolen Gemini API key over 48 hours

Between 2026-02-11 and 2026-02-12, attackers used a stolen Google Cloud/Gemini API key to make large volumes of Gemini 3 Pro Image and Gemini 3 Pro Text requests. The abuse drove charges to $82,314.44, far above the victim team's usual monthly spend of about $180.

LINKED ENTITIES

Related entities

Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.

2 LINKEDOpen in app
Organizations
2 linked
Tom's HardwareGoogle
The operational view lives in Mallory

See the full picture, correlated to your attack surface.

This page covers what’s public. Mallory adds the parts that aren’t — which of your assets are affected, which threat actors are using it right now, which detections to deploy, and what to do next.
Exposure mapping

Map indicators from this story to your assets and identify affected systems in minutes.

Threat actor evidence

Every observed campaign, victim, and pivot linked to actors named in this story.

Associated malware

Malware, exploits, and IOCs connected to the activity described here.

Detection signatures

YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.

Scheduled alerts

Get matching new stories delivered to your team as they break — not the next morning.

AI threads

Ask questions about this story and take action on the answers.