AI Assistants Used as Covert Command-and-Control Relays
ID: 022fa084-d0d9-5c11-82a9-d911b09c4748
STIX ID: report--022fa084-d0d9-5c11-82a9-d911b09c4748
Feed Name: Infosecurity Magazine (News)
Check Point Research demonstrates a proof-of-concept where web-capable AI assistants are repurposed as covert C2 proxies: malware can have the AI fetch attacker-controlled pages, embed commands in the AI's response, and receive instructions without API keys or accounts. The report highlights automation via a WebView2-based implant and warns of future AI-enabled malware that uses models for runtime decision-making to refine reconnaissance, evade sandboxes, and exfiltrate high-value data selectively.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
