logo

AI-aided malvertising: Exploiting a chatbot to spread scams

ID: 366eb6cf-ab7d-533e-8a01-b4c791b686d4

STIX ID: report--366eb6cf-ab7d-533e-8a01-b4c791b686d4

Feed Name: WeLiveSecurity (ESET Research)

Threat Score
70/100

Date Published: 2025-10-13

Date Updated: 2026-05-01

...
...

The article explains a malvertising campaign called “Grokking” where attackers hide phishing links in X video metadata and trick X’s Grok AI via prompt injection to repost those links, amplifying phishing and malware distribution; researchers observed hundreds of accounts repeating the technique and high-reach paid posts, and the report warns that the same prompt-injection TTP could be used against any public-facing GenAI or LLM-integrated service.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.