A new arxiv study finds 26 LLM API routers injecting malicious code and draining ETH wallets, exposing a hidden supply chain threat inside AI coding agents. The AI coding tools developers trust daily may be feeding credentials and crypto funds to unknown third parties.