Windows CLOSEDQUORUM malware uses AI models to autonomously select post-compromise actions
A new Windows malware called CLOSEDQUORUM can query up to four LLM providers - Google Gemini, DeepSeek, Qwen, and Mistral - to autonomously select from predefined post-compromise actions, including stealing users’ credentials and cryptocurrency…
Read the full story at The Register ↗
ImpactMinor 28/100
Why it mattersRule-based estimate: no strong signals; trust 6/10.
RegionsGlobal
Published5 h ago (Tue, 22 Sep 2026 21:33:29 GMT)
RetrievedWed, 23 Sep 2026 01:01:01 GMT via rss
ClassifiedWed, 23 Sep 2026 01:01:07 GMT by heuristic