ThreatsDay: AI Search Poisoning, AI Coding Tool Leaking Repos, One-Click Code Execution and 13 More Stories
This week’s ‘ThreatsDay’ bulletin highlights a diverse range of emerging threats, from AI-powered attacks to sophisticated malware distribution frameworks. Key concerns include AI-poisoning of search engines to deliver phishing scams, a new malware-as-a-service (MaaS) framework mimicking ClickFix, and a malicious WordPress plugin used for web shell deployment. Additionally, the bulletin details a growing trend of government impersonation scams and a critical vulnerability in a WordPress plugin. Several other threats include a new Android banking Trojan, a privacy concern with an AI coding tool, and a critical infrastructure risk related to third-party ICS integrators.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
