threat-intel
ThreatsDay: GhostJacking AI Attacks, EtherHiding ClickFix, Cursor CLI Flaw + 17 More Stories
High
Summary
This week's ThreatsDay Bulletin highlights a diverse range of security threats, including AI-related attacks, data breaches, and malware campaigns. Key concerns include GhostJacking, where AI agents are hijacked to execute malicious code; a new ClickFix malware campaign utilizing blockchain to hide C2 infrastructure; and a fake CCleaner/Spyware campaign. Other notable threats include a Salesforce/ServiceNow guest user data theft campaign, a vulnerability in Apple's PCC environment, and a new approach using prompt injections to defend against AI agent compromise.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
