logo

AI Assistants Used as Covert Command-and-Control Relays

ID: 022fa084-d0d9-5c11-82a9-d911b09c4748

STIX ID: report--022fa084-d0d9-5c11-82a9-d911b09c4748

Feed Name: Infosecurity Magazine (News)

Threat Score
60/100

Date Published: 2026-02-18

Date Updated: 2026-04-22

...
...

Check Point Research demonstrates a proof-of-concept where web-capable AI assistants are repurposed as covert C2 proxies: malware can have the AI fetch attacker-controlled pages, embed commands in the AI's response, and receive instructions without API keys or accounts. The report highlights automation via a WebView2-based implant and warns of future AI-enabled malware that uses models for runtime decision-making to refine reconnaissance, evade sandboxes, and exfiltrate high-value data selectively.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.