Follow the latest coverage, related explainers and connected technology stories.
A financially motivated attacker used open-source AI agent frameworks to attack hundreds of online stores, steal more than 600,000 card records, and deploy skimming malware on at least 119 sites. The campaign shows that lowering the cost of automation expands the scale of attacks, with the potential to cause operational damage by deleting data after stealing it.
Cisco Talos researchers identified a Windows malware named ClosedQuorum that delegates post-compromise decisions to a committee of Gemini, DeepSeek, Qwen, and Mistral models. Although there is no evidence of its actual deployment, its design illustrates a trend toward automating attack chains without continuous human intervention.