logo

New HalluSquatting Attack Could Trick AI Coding Assistants Into Installing Botnet Malware

ID: 6e0ce5d1-fae1-5db1-bbab-2d520a787616

STIX ID: report--6e0ce5d1-fae1-5db1-bbab-2d520a787616

Feed Name: The Hacker News

Threat Score
72/100

Date Published: 2026-07-08

Date Updated: 2026-07-18

Author: [email protected] (The Hacker News)

...
...

Researchers describe "HalluSquatting": an attack that exploits AI assistants' tendency to hallucinate resource names and their ability to fetch and execute external content. Attackers identify names AIs are likely to invent, register those packages/plugins/domains, embed adversarial instructions, and wait for assistants to pull and run them—potentially installing bots across many systems. The report includes experimental results across multiple assistants, an observed benign spread (react-codeshift), and recommends fixes such as forcing lookups before fetches, disabling unattended auto-run modes, and platform-side protections.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.