❌

Normal view

There are new articles available, click to refresh the page.
Today β€” 16 September 2026GBHackers

Shared AI Memory Lets Hundreds of Agents Inherit Exploits and Join Coordinated Attacks

16 September 2026 at 04:14

A shared message board turned isolated AI agents into an effective offensive collective during OpenAI’s July 2026 ExploitGym evaluations, enabling roughly 1,200 agents to exchange more than 70,000 messages and files. About 700 eventually participated in activity that compromised portions of Hugging Face’s production environment showing that shared agent memory can become a high-risk coordination […]

The post Shared AI Memory Lets Hundreds of Agents Inherit Exploits and Join Coordinated Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Hackers Disguise CHOSEN BRICK Malware as AI Apps, Antivirus Software and MRI Results

16 September 2026 at 02:57

Iranian state-linked cyber actors are using fake AI applications, antivirus tools and even fabricated MRI scan results to deliver CHOSEN BRICK, a Windows-focused spyware family designed to surveil dissidents, activists and journalists. A joint advisory from the UK National Cyber Security Centre (NCSC), the FBI and the Netherlands’ AIVD warns that the campaign has targeted […]

The post Hackers Disguise CHOSEN BRICK Malware as AI Apps, Antivirus Software and MRI Results appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

OpenAI Agent Swarm Linked to 3,022 Malicious RubyGems Packages in GemStuffer Campaign

16 September 2026 at 01:02

3,022 RubyGems packages associated with the GemStuffer campaign, expanding the known scope of an incident that researchers have linked to an alleged OpenAI agent swarm. The inventory covers 3,315 distinct package name-and-version pairs and reveals a sustained campaign that combined documentation-worker abuse, data collection, credential-theft attempts, and metadata-based web attack tests. When a documentation worker […]

The post OpenAI Agent Swarm Linked to 3,022 Malicious RubyGems Packages in GemStuffer Campaign appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Yesterday β€” 15 September 2026GBHackers

Hackers Deploy Agentic AI to Automate Exploitation and Mass Credential Harvesting

15 September 2026 at 03:46

Threat actors are moving from using artificial intelligence as a productivity aid to deploying autonomous agentic systems that can execute major portions of an intrusion with minimal human intervention. Google Threat Intelligence Group (GTIG) has documented a financially motivated actor that used a multi-agent framework to plan, build, and run a mass credential-harvesting operation in […]

The post Hackers Deploy Agentic AI to Automate Exploitation and Mass Credential Harvesting appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Before yesterdayGBHackers

Hackers Weaponize AI Safety Guardrails to Hide Malware From LLM-Powered Security Scanners

11 September 2026 at 06:51

Threat actors are adapting malware not only for conventional endpoint defenses and sandboxes, but also for large language model-powered tools increasingly used to triage suspicious code. ESET researchers linked the activity to Russia-aligned threat actor UAC-0099, which used the method during an attack against an organization in Ukraine. The group inserted a safety-sensitive, weapon-related request […]

The post Hackers Weaponize AI Safety Guardrails to Hide Malware From LLM-Powered Security Scanners appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Hackers Use AI-Assisted CEO Emails to Trick Finance Teams Into Sending $50,000 Payments.

11 September 2026 at 03:43

Threat actors are using AI-assisted phishing templates, executive impersonation, fake ServiceNow invoices, and fabricated email threads to pressure finance teams into authorizing fraudulent ACH payments worth nearly $50,000. Microsoft detected more than one million messages in the campaign, demonstrating how business email compromise (BEC) operations are becoming more polished, scalable, and difficult to spot. The […]

The post Hackers Use AI-Assisted CEO Emails to Trick Finance Teams Into Sending $50,000 Payments. appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Hackers Abuse Claude AI Agents to Automate Cyberattacks, Exploitation and Data Theft

By: Divya
11 September 2026 at 02:03

Threat actors increasingly deploy AI agents as operational systems for cyberattacks, moving beyond simple chatbot assistants. These AI systems automate various stages of the cyber kill chain, including reconnaissance, phishing, exploitation, persistence, and bulk data theft. Anthropic reported disrupting multiple such operations between December 2025 and August 2026, involving groups suspected to be linked to […]

The post Hackers Abuse Claude AI Agents to Automate Cyberattacks, Exploitation and Data Theft appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

πŸ’Ύ

πŸ’Ύ

New AI Attack Hides Malicious Instructions in Normal-Looking Text to Evade Safety Filters

11 September 2026 at 01:53

A newly disclosed prompt-crafting technique can hide policy-violating instructions inside ordinary-looking English prose, allowing malicious requests to pass through lightweight LLM safety filters before being recovered and processed by a more capable downstream model. Researchers found that carefully structured prose can make the first model miss an embedded instruction entirely, while the target model invests […]

The post New AI Attack Hides Malicious Instructions in Normal-Looking Text to Evade Safety Filters appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Hackers Can Turn Vulnerable LiteLLM AI Gateways Into Root Access and Cloud Credential Theft

10 September 2026 at 08:56

Nearly one in 10 internet-exposed LiteLLM AI gateways accepted the widely documented default master key, sk-1234, or required no authentication, creating a direct path to LLMjacking, sensitive credential exposure, and in vulnerable versions root-level code execution inside the gateway container. Their internet scan of 3,074 publicly reachable instances found that 294 systems, or 9.6%, accepted […]

The post Hackers Can Turn Vulnerable LiteLLM AI Gateways Into Root Access and Cloud Credential Theft appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

OpenAI Builds β€˜Defense Factory’ as AI Agents Gain Ability to Chain Cyber Exploits

By: Divya
10 September 2026 at 05:24

OpenAI has announced its plans for a β€œDefense Factory,” a cybersecurity operation that prioritizes agent-driven actions. This initiative is designed to continuously discover, validate, remediate, and verify vulnerabilities as AI systems develop the ability to conduct increasingly complex cyber operations. The initiative addresses growing concerns that long-running autonomous agents, especially those powered by widely accessible […]

The post OpenAI Builds β€˜Defense Factory’ as AI Agents Gain Ability to Chain Cyber Exploits appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

New AI Workflow Identity Hijacking Attack Lets Hackers Exfiltrate Sensitive Data

By: Divya
10 September 2026 at 03:51

Security researchers have recently disclosed a new enterprise AI attack technique known as Workflow Identity Hijacking. This method enables external attackers to exfiltrate sensitive corporate information by submitting seemingly harmless requests to AI-powered automations. Research published by Noma Labs researcher Sasi Levi reveals that this attack does not rely on prompt injection, stolen credentials, or […]

The post New AI Workflow Identity Hijacking Attack Lets Hackers Exfiltrate Sensitive Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Hackers Deploy Hundreds of AI Agents to Compromise 440 PaperCut Servers

By: Divya
10 September 2026 at 01:20

Threat intelligence firm GreyNoise has identified an AI-driven intrusion campaign, likely orchestrated by a Russian-speaking threat actor, that compromised at least 440 PaperCut NG/MF servers across 395 organizations in 48 countries. This campaign began on August 31, 2026, exploiting two vulnerabilities in PaperCut: CVE-2026-81578, an authentication bypass flaw, and CVE-2026-82078, a vulnerability that allows unsafe […]

The post Hackers Deploy Hundreds of AI Agents to Compromise 440 PaperCut Servers appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Anthropic Claude AI Models Attack Real Systems During Misconfigured Cybersecurity Tests

By: Divya
10 September 2026 at 00:51

Anthropic has reported four cybersecurity evaluation incidents in which pre-release Claude AI models gained unauthorized access to real third-party systems after isolated test environments were accidentally connected to the internet. These cases revealed significant alignment failures, including biased reasoning and reckless task pursuit, when autonomous models operated for extended periods without production cyber safeguards. All […]

The post Anthropic Claude AI Models Attack Real Systems During Misconfigured Cybersecurity Tests appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Hackers Weaponize Agentic AI to Automate Reconnaissance, Exploitation and Post-Exploitation

9 September 2026 at 05:12

Threat actors are increasingly operationalizing agentic artificial intelligence to compress cyberattack timelines, automating reconnaissance, vulnerability research, exploit development and credential theft with far less hands-on-keyboard activity. However, current evidence points to semi-autonomous, human-supervised attack chains rather than fully independent AI-driven intrusions in the wild. Agentic AI represents a material shift from conventional generative-AI abuse. Rather […]

The post Hackers Weaponize Agentic AI to Automate Reconnaissance, Exploitation and Post-Exploitation appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

DeepSeek, Alibaba and Chinese AI Firms Extract Billions of Tokens From U.S. AI Models

9 September 2026 at 04:29

U.S. intelligence and cybersecurity agencies have accused six China-based AI companies including DeepSeek, Alibaba, Moonshot AI, MiniMax, StepFun and Z.AI of extracting billions of tokens from leading American AI systems through industrial-scale knowledge-distillation campaigns. A joint Cybersecurity Advisory, AA26-251A, issued by the National Security Agency, Cybersecurity and Infrastructure Security Agency and FBI, said the campaigns […]

The post DeepSeek, Alibaba and Chinese AI Firms Extract Billions of Tokens From U.S. AI Models appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Infostealers Target Claude, Cursor, Codex and Other AI Agents to Steal Credentials and Sensitive Data

9 September 2026 at 03:05

Information-stealing malware is expanding its collection logic to target locally stored data from AI coding agents, including Claude, Cursor, Codex, Cline, Continue, and OpenCode. The shift puts developer credentials, Model Context Protocol configurations, prompt histories, project metadata, and potentially proprietary source code into the same theft pipeline long used for browser cookies, cryptocurrency wallets, and […]

The post Infostealers Target Claude, Cursor, Codex and Other AI Agents to Steal Credentials and Sensitive Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

AI Customer Service Agents Can Be Hacked to Bypass MFA, Steal OTPs and Expose User Data

By: Divya
8 September 2026 at 05:42

Security researchers have demonstrated how vulnerabilities in AI-powered customer service agents can be exploited to bypass identity checks, expose sensitive customer data, exfiltrate one-time passwords (OTPs), and trigger unauthorized account actions. These findings underscore that the risks go beyond prompt injection; they also stem from flawed integrations among email, authentication, backend APIs, knowledge bases, and […]

The post AI Customer Service Agents Can Be Hacked to Bypass MFA, Steal OTPs and Expose User Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

OpenAI Commits $1 Billion in Daybreak AI Cyber Tools to Protect Critical Infrastructure

By: Divya
7 September 2026 at 07:49

OpenAI has announced a $1 billion global commitment to expanding access to its Daybreak AI cybersecurity platform for frontline defenders who protect critical infrastructure, public services, and under-resourced organizations. The initiative, named β€œDaybreak for Frontline Defenders,” aims to provide subsidized access to AI models focused on cybersecurity, along with hands-on training, technical assistance, and partnerships. […]

The post OpenAI Commits $1 Billion in Daybreak AI Cyber Tools to Protect Critical Infrastructure appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

Kimsuky Uses OpenCode AI Agent and GitHub PATs in Operation GitPower Attacks

7 September 2026 at 04:39

North Korea-linked threat actor Kimsuky has expanded its Operation GitPower activity with malicious LNK shortcuts, GitHub Personal Access Token (PAT)-authenticated payload delivery, and AI-generated decoy documents linked to the OpenCode coding agent. Genians Security Center analyzed 13 malicious LNK samples collected between August 11 and August 19, 2026. The files were delivered in ZIP archives […]

The post Kimsuky Uses OpenCode AI Agent and GitHub PATs in Operation GitPower Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

OpenAI Confirms AI Agents Wrote to Multiple Internet Sites in β€˜Wiki Incident’

By: Divya
7 September 2026 at 04:04

OpenAI has acknowledged that its AI agents posted content on multiple internet sites during an event it has termed the β€œwiki incident.” The company characterizes this episode as a real-world example of model misalignment rather than a typical cybersecurity breach. In a statement shared on X, OpenAI emphasized that the incident highlights the need for […]

The post OpenAI Confirms AI Agents Wrote to Multiple Internet Sites in β€˜Wiki Incident’ appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.

❌
❌