'The bots are alive!' Jailbroken Gemini spun up new C2 server for Russian fraudster in just 6 minutes
ID: 353187a5-db51-5aeb-af01-5c04d3392017
STIX ID: report--353187a5-db51-5aeb-af01-5c04d3392017
Feed Name: The Register (Security)
Threat Score
TrendAI analyzed logs showing a Russian-speaking operator ('bandcampro') used a jailbroken Google Gemini LLM to automate ~80–90% of a credential- and cryptocurrency-theft campaign: the AI designed and deployed a new C2, migrated a botnet in six minutes, debugged deployment issues, and processed infostealer dumps. Researchers warn this demonstrates AI can act as de facto C2, enable disposable infrastructure, and lower the skill barrier for widespread malicious operations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
