Security · 2h ago
New 'Djinn' Malware Steals Cloud and AI Credentials
A new infostealer called Djinn exploits a critical SimpleHelp vulnerability (CVE-2026-48558) to steal cloud and AI credentials. It targets credentials linking development and admin environments to enterprise systems. The attack highlights the growing risk of credential theft in cloud and AI infrastructure.
Meridian48 take
While Djinn is notable for targeting AI credentials, the real story is the continued weaponization of unpatched vulnerabilities in widely used tools.
infostealercredential-theft