Security · 2h ago
North Korea-Linked macOS Malware Uses Prompt Injection to Fool AI Defenses
SentinelOne discovered macOS.Gaslight, a malware strain linked to North Korea, that uses prompt injection to mislead AI-based analysis tools. It steals data and communicates via Telegram for command-and-control. The technique highlights a growing arms race between malware and AI security systems.
Meridian48 take
The use of prompt injection against AI analysis tools is a clever escalation, but the reliance on Telegram for C2 is a weakness that defenders can exploit.
Read the full reporting
North Korea-Linked macOS Malware Uses Prompt Injection to Evade AI Analysis →
TechRepublic
macos-malwareprompt-injection