LIVE · cybersecurity feed
Live wire
malware

A Sneaky Hacking Tool Targeting AI Infrastructure Is Lurking in Victims’ Blind Spots

A new type of malware can worm deep into AI coding systems to steal data and logins—and can flip a “death switch” to destroy files and keep out real users.

zeroday.news · 11d ago

A new type of malware has been discovered actively targeting artificial intelligence (AI) development infrastructure, capable of stealing credentials, exfiltrating sensitive data, and even destroying files. Cybersecurity firm CrowdStrike identified the worm in the wild during investigations into AI software supply chain attacks.

The malware operates in multiple phases, initially performing reconnaissance to map the target environment. It then seeks out access tokens, cryptographic keys, and server access credentials for exfiltration. As it gains deeper privileges, it unpacks further, specifically targeting npm tokens which grant access to critical software package management servers and development capabilities such, as pull requests.

A significant concern is the malware's destructive capability, which CrowdStrike researchers have termed a "death switch." This functionality allows the attackers to destroy files or block legitimate users from accessing the compromised infrastructure.

According to CrowdStrike, a key challenge in detecting this worm is its ability to mimic legitimate AI automation activities. Much of its malicious behavior occurs within blind spots, making it difficult for traditional security scanners and analysis tools to differentiate between legitimate and malicious actions. The telemetry generated by the worm often overlaps with that of legitimate AI coding systems, complicating detection efforts.

To further evade detection, the malware incorporates time delays, with various capabilities executing hours or even days after the initial compromise. This tactic makes it harder for defenders to establish a clear chain of events leading to a breach.

CrowdStrike has not yet attributed the activity to a specific threat actor, but notes that it aligns with broader trends observed in AI software supply chain attacks by groups like TeamPCP (tracked by CrowdStrike as "Altered Spider") and North Korean state-sponsored actors. The firm emphasizes that this campaign represents an emerging class of attacks exploiting the trust relationships inherent in AI coding agents, which are becoming standard in software development.

Researchers highlight the urgent need for collaboration across the industry to develop structural solutions, as the limited detection surface and telemetry overlap make it extremely challenging to distinguish legitimate from illegitimate behavior within AI development pipelines.

malwareai
ShareXLinkedInWhatsAppFacebook

More News

view all →
breach

Hermes AI agent used to automate attack on Thai Finance Ministry

A threat actor used the open-source Hermes AI agent in unattended "YOLO" mode to automate post-exploitation activity during an alleged breach of Thailand's Ministry of Finance. [...]

security

Hackers hijack hotel Wi-Fi DNS to steal Microsoft 365 accounts

Hackers are changing the DNS settings on Wi-Fi devices at hotels and conference centers to redirect users to fake Microsoft 365 login pages. [...]

security

BGP ORIGIN attribute manipulation and its impact on the Internet

By doing in-depth testing, we found nearly 70% of BGP paths experience ORIGIN attribute rewrites by transit providers seeking traffic advantages. We examine the global impact of this practice and argue for deprecating ORIGIN in route selection.

security

Andy Burnham signals continuity on UK cyber policy, reappoints minister despite scrapping ministry

The new British prime minister is retaining Liz Lloyd in a cyber policy role, making her one of the few Keir Starmer allies remaining in government.

security

'Wrench' attacks against crypto holders appear to be on the rise

There are more reports than ever before of strong-arm tactics like home invasions and kidnappings against cryptocurrency holders, researchers say.

vulnerability

Microsoft blames massive Microsoft 365 outage on maintenance bug

Microsoft says a bug in its automated network maintenance request system caused Thursday's massive outage by mistakenly removing IP routes from more devices than intended, disrupting Azure and Microsoft 365 services. [...]