#AIHacking
AI got caught hacking into other computers. But it learned how not to get caught! So we don’t have to worry about it any more! Right?#AIHacking
September 25, 2026 at 8:45 PM
The CEO and board should be held accountable for the actions of an AI as any individual would be if they actively took the same actions.
#AI #AIHacking
September 24, 2026 at 8:08 AM
This has been the plan of the fat warmonger pedophile #trump administration and his #MAGA #Billinaires all the time #openAI #AI #Altman infiltration of other governments #Australia #Albanese #UN www.nu.nl/tech/6410788... #AIhacking #Europe Unite against the US! #NWO #privacy #security #BBC #BILD
Australië boos nadat AI van OpenAI overheidswebsite infiltreert: 'Onacceptabel'
Kunstmatige intelligentie (AI) van het bedrijf OpenAI heeft een Australische overheidswebsite binnengedrongen, meldt de Australische premier Anthony Albanese aan de Sydney Morning Herald. Het gaat voo...
www.nu.nl
September 23, 2026 at 10:21 PM
OpenAI just paused its newest self‑improving AI over safety fears. Meanwhile, autonomous agents are learning to hack themselves. Is the hype about superintelligence finally hitting reality? Check out the full breakdown. #AIHacking #SelfImprovingAI #AISafety

🔗 aidailypost.com/news/downloa...
September 22, 2026 at 2:42 PM
Did you know ChatGPT can spin up a full childbirth course in minutes, shaving hours off research? See how LLMs are reshaping learning—and the security twists they bring. Dive in for the full scoop! #ChatGPT #AIHacking #LLM

🔗 aidailypost.com/news/chatgpt...
September 21, 2026 at 10:51 AM
Talking of #hacking, #AIHacking is focused a lot on sewage systems (I assume because although its problematic, they assume no one is going to die from it, unlike if you hacked a traffic system). #AI
AISN #80: AI Is Assisting Cyberattacks on Critical Infrastructure
Also, two new technical reports on the Hugging Face incident.
newsletter.safe.ai
September 8, 2026 at 8:31 PM
📣 New Podcast! "Chinese Hackers Use AI Agents in Multi-Country Cyberattacks: The Rise of AI-Powered Cyber Espionage" on @Spreaker #aiagents #aicybersecurity #aihacking #aisecurity #apt #chinacyberthreat #chinesehackers #claude #cyberattack #cyberespionage #cybersecurity #cyberwarfare #deepseek
Chinese Hackers Use AI Agents in Multi-Country Cyberattacks: The Rise of AI-Powered Cyber Espionage
https://www.osintinvestigate.com A new China-linked cyber campaign shows how AI agents are becoming operational tools for cyber espionage. The SecFlow framework reportedly connected commercial AI models such as Claude, Qwen, and DeepSeek to reconnaissance, exploitation, credential testing, data collection, and reporting. Targets included government, education, political, and industrial organizations across Asia. This episode explores how attackers are combining traditional hacking techniques with AI-driven automation, why exposed infrastructure helped researchers uncover the operation, and what this evolution means for cybersecurity defenders.
www.spreaker.com
September 8, 2026 at 3:00 PM
Artificial Intelligence WeChat worm: Just placing the call infects the user creating patient zero

The worm could have hijacked over a billion WeChat accounts with a single call

qz.com/calif-wechat...

#Infosec #hacker #hacked #WeChat #Worm #AiThreat #Security #AiHacking #ai #dl #ml #Replication
Calif security firm built AI-powered WeChat worm WeWorm
The worm could hijack accounts and spread to contacts with a single unanswered call, potentially reaching hundreds of millions of devices within hours
qz.com
September 8, 2026 at 2:42 PM
EXCLUSIVE: OpenAI agents hijacked German website in previously undisclosed AI breakout this spring | Reuters https://www.reuters.com/world/europe/openai-agents-hijacked-german-website-previously-undisclosed-ai-breakout-this-2026-09-04/ #ai #aihacking #sarahconnors
September 4, 2026 at 11:37 PM
"But HIS emails."

21,899 MS Exchange servers still exposed and unpatched for high-severity auth-bypass. #CVE-2026-62911
The 'rouge' #OpenAI agents story and more.
#Cyber #OpSec #RedTeam #BlueTeam #CyberSecurity
#AIHacking
youtu.be/6AbZlAoU82o?...
22,000 Exchange servers open to hijack, 700 rogue AI agents swarmed Hugging Face, AI threatens globa
YouTube video by Tech Newsday
youtu.be
September 4, 2026 at 8:27 PM
AI-Assisted Hacking Campaign Exposes Security Risks Across 14 Companies #aiagents #AIcyberattacks #AIHacking
AI-Assisted Hacking Campaign Exposes Security Risks Across 14 Companies
Cyberattacks have been made more effective and more accessible due to artificial intelligence, but a recent investigation has demonstrated just how far that accessibility can extend. According to OALABS cybersecurity researchers, an attacker with limited technical expertise compromised at least 14 organizations using Anthropic's Claude Code and OpenAI's Codex to obtain sensitive information.  Upon obtaining the attacker’s entire working directory from a compromised third-party server, researchers began investigating. The directory contains more than 1,000 sessions involving the two AI coding agents, including prompts, tool activity, and other evidence of the attacker’s activities. As indicated by the logs, the attacker frequently drew short, vague, poorly written prompts, while the artificial intelligence agents handled the vast majority of the technical tasks.  The investigation of exposed services, identification of potential vulnerabilities, development and testing of exploit code, establishment of access, and data collection were conducted using Claude Code and Codex. According to OALABS, the case demonstrates a growing concern for cybersecurity teams: sophisticated technical knowledge is no longer necessary to complete each stage of an intrusion when autonomous artificial intelligence coding agents can fill crucial gaps in the capabilities of an inexperienced operator.  AI Guardrails Failed Under Simple Deception A number of requests were not accepted without resistance by the AI systems According to the logs, nine requests were flagged as policy violations by Claude Code, while a warning was raised by Codex. However, the attacker managed to circumvent the limitations by framing the requests as part of an authorized red-team exercise.  When malicious activity was presented as legitimate security testing, the attacker was able to persuade the models to complete tasks that would otherwise raise stronger safeguards. Once the attacker provided Claude with a list of target addresses, he instructed him to conduct reconnaissance. After conducting most of the work normally required by skilled security operators, the agent handled them. The AI enabled the organisation of the results by analysing exposed services, researching known vulnerabilities, developing exploit code, and retrieving files from compromised systems. The AI also provided an analysis of the results for a number of victims by providing reports describing the compromised systems and the information obtained. In another meeting, Claude was requested by the attacker to evaluate the victims based on their potential to pay a ransom. The model then presented possible methods of monetizing the stolen access.  Poor Operational Security Exposed the Attacker Even though the attacker successfully compromised several organizations, he failed to demonstrate sufficient sophistication in protecting his own identity. The infrastructure used for the operation was not owned by him, but rather, a compromised server provided the AI tools. This decision ultimately led to the discovery of the intrusion and the recovery of the working directory by the server's owner.  A second feature of the attacker's Claude installation was that he obtained it from another developer rather than setting it up himself. The recovered logs contained a conversation during which the attacker requested Claude to improve his own resume. The document reportedly contained his real name, educational background, and LinkedIn information. A preliminary investigation suggested that these details may have been deliberately planted; however, further examination indicated they were the property of the attacker.  Claude was also able to provide clues about his location by examining the logs. Claude was asked to identify connections to the attacker's staging server at one point, since he suspected it had been compromised. Information included residential internet addresses associated with Addis Ababa, Ethiopia.  Millions in Cryptocurrency Remained Out of Reach There was also an opportunity to get close to a potentially significant cryptocurrency target. One compromised system contained a Lightning Network node for Bitcoin payment routing, which researchers determined contained approximately 69.71 bitcoins worth approximately $4 million when the investigation was conducted.  A wallet key file containing the funds could not be accessed by the attacker, preventing access to the cryptocurrency. The investigation also shows no clear evidence that the stolen information from these other organizations was sold or used for extortion. As a result, it provides more evidence regarding the attacker's access and activity than any financial gain.  The Risk Extends Beyond One Attacker This incident is noteworthy not because the attacker displayed advanced hacking skills, but rather because artificial intelligence agents performed most of the technical work on his behalf. Additionally, the models involved were not among the newest versions available at the time.  OALABS examined activity involving Claude Opus 4.5 and GPT-5.2, demonstrating that the problem is not restricted to one type of cutting-edge technology. By strengthening security controls, AI systems may be less susceptible to assisting malicious activity. However, tighter controls will also present a challenge to legitimate security researchers who use similar tools to identify and test vulnerabilities. The results of OALABS indicate that AI developers are faced with a challenging balance between preventing malicious use and making AI coding agents ineffective for legitimate security purposes.  Additionally, the case illustrates the difficulty of maintaining that balance when an inexperienced operator turns simple instructions into largely automated intrusion procedures. In light of the increasing security challenges associated with autonomous AI coding agents, stronger safeguards are needed to distinguish legitimate security research from malicious activity, as illustrated by this incident.
dlvr.it
August 24, 2026 at 4:05 PM
August 19, 2026 at 6:19 AM
August 19, 2026 at 5:55 AM