Attackers Used Multi-Agent AI Framework to Steal Thousands of Credentials in Under Six Hours
Published · curated by AI Is Going Just Great
Source: siliconangle.com ↗
"Criminals, like the ones who conducted a mass exploitation campaign in just six hours, will gravitate to attacks that are faster than we can respond to."
A financially motivated threat actor assembled an autonomous AI attack framework from a coding chatbot, a prompt, and a set of agent instructions, then used it to compromise thousands of credentials in under six hours, according to Google's Threat Intelligence Group. Troubleshooting and IP rotation ran without an operator; traffic exited through the victim's own addresses, making it look legitimate on the way out.
The same report names UNC6780 (also tracked as TeamPCP) as the group behind poisoned forks of Model Context Protocol servers across PyPI, npm, and Docker Hub. Its DUSTMAKER credential stealer drops files into hidden directories like .claude and .cursor, where AI tooling reads them as ordinary developer clutter. Some malware samples embedded prompt injections written as extreme requests about biological and nuclear weapons, text apparently designed to make LLM-based security scanners refuse the file and skip the malicious JavaScript underneath.