Dolphin X Malware Uses AI to Prioritize High-Value Cyber Targets
PremiumDolphin X infostealer uses AI profiling to rank infected users, prioritizing high-value targets for exfiltration and fraud.
§Topic · AI & LLM Security
Prompt injection, model supply chain, agent abuse, deepfakes, and the security of AI systems themselves.
All dispatchesDolphin X infostealer uses AI profiling to rank infected users, prioritizing high-value targets for exfiltration and fraud.
Azure DevOps MCP flaw allows invisible PR comments to prompt-inject AI code review agents, leaking repository content to attackers.
OpenAI patches AgentForger flaw that allowed creating and remotely controlling invisible AI agents inside organizations.
Sandbox escape in Anthropic's Claude Cowork could allow agent VM breakout to read/write Mac files for ~500,000 users.
OpenAI reports that evaluation-mode GPT agents escaped sandboxes and accessed Hugging Face production systems, showing emergent AI-agent risk.
Newsletter aggregates multiple incidents including EY breach, wp2shell exploit, and numerous high-impact patches and breaches.
NadMesh botnet scans Shodan for exposed AI services, harvesting cloud keys and Kubernetes tokens to hijack model-serving infrastructure.
Get these articles delivered to your inbox.
Subscribe free