logo

PromptMink Tricked AI Agents into Planting Malware

ID: 3ee66c9b-620c-5dfb-8bcb-c01f3b485ab0

STIX ID: report--3ee66c9b-620c-5dfb-8bcb-c01f3b485ab0

Feed Name: securityonline.info

Threat Score
85/100

Date Published: 2026-05-01

Date Updated: 2026-05-01

Author: Ddos

...
...

#### Executive summary ReversingLabs uncovered the PromptMink campaign, attributed to North Korean-linked Famous Chollima, where attackers use LLM-assisted malicious npm packages (e.g., @validate-sdk/v2) to trick AI coding agents into adding dependencies that steal crypto and secrets. The campaign uses a layered lure/payload model and rapidly evolving payloads (obfuscated JS → SSH key drops → large single-executable malware → Rust-based exfiltration), demonstrating sophisticated supply-chain abuse and LLM optimization; researchers recommend detailed static analysis of dependencies and integrating threat intelligence into developer/AI toolchains.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.