Red Agent: AI-Powered Command Execution
Red Agent is an LLM-driven component of RedC2 that translates natural-language prompts into framework beacon commands, enabling operators to execute complex post-exploitation…
Red Agent is an LLM-driven component of RedC2 that translates natural-language prompts into framework beacon commands, enabling operators to execute complex post-exploitation…
Perplexity is among the AI assistants targeted by 'Ask AI' buttons that carry hidden memory-poisoning prompts, as observed in a consent management…
A new class of prompt injection attack, dubbed "AI Recommendation Poisoning," is spreading across commercial websites. It exploits pre-filled deep links in…
ChocoShell, also known as CHERRYPIE, is a PowerShell-based infostealer delivered via ClickFix lures. It steals browser session cookies, saved passwords, Microsoft 365…
GGUF, the current standard for locally deployed LLMs, is among the AI file types targeted by ENCFORGE ransomware.
GGML, the predecessor to GGUF, is among the AI file types targeted by ENCFORGE ransomware.
A malware operator left its delivery server exposed, allowing Rapid7 to recover a full toolkit of 1,048 files including lure templates, filename-spoofing…
GPT-5.2 is a large language model by OpenAI. It was tested and found vulnerable to Agent Data Injection (ADI) attacks.
GPT-5-mini is a smaller language model by OpenAI. It was tested and found vulnerable to Agent Data Injection (ADI) attacks.
Sonnet 4.5 is a language model by Anthropic. It was tested and found vulnerable to Agent Data Injection (ADI) attacks.