Unveiling the Landscape of LLM Deployment in the Wild: An Empirical Study
Xinyi Hou, Jiahao Han, Yanjie Zhao, Haoyu Wang

TL;DR
This empirical study investigates the security and deployment characteristics of publicly accessible large language models, revealing widespread vulnerabilities, insecure configurations, and inconsistent access controls across various frameworks.
Contribution
It provides the first large-scale measurement and analysis of public-facing LLM deployments, highlighting systemic security risks and exposing the need for improved deployment practices.
Findings
Over 40% of API endpoints used plain HTTP.
More than 210,000 endpoints lacked valid TLS metadata.
Some frameworks responded to over 35% unauthenticated requests.
Abstract
Large language models (LLMs) are increasingly deployed through open-source and commercial frameworks, enabling individuals and organizations to self-host advanced LLM capabilities. As LLM deployments become prevalent, particularly in industry, ensuring their secure and reliable operation has become a critical issue. However, insecure defaults and misconfigurations often expose LLM services to the public internet, posing serious security and system engineering risks. This study conducted a large-scale empirical investigation of public-facing LLM deployments, focusing on the prevalence of services, exposure characteristics, systemic vulnerabilities, and associated risks. Through internet-wide measurements, we identified 320,102 public-facing LLM services across 15 frameworks and extracted 158 unique API endpoints, categorized into 12 functional groups based on functionality and security…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsCollaboration in agile enterprises · ERP Systems Implementation and Impact · Cooperative Studies and Economics
Methodstravel james
