{"data":{"id":"5c8828be-64b0-4afd-b92d-6fb79f6b951b","title":"Hackers build AI frameworks for widescale credential theft","summary":"Threat actors are increasingly using multi-agent AI frameworks (systems where multiple AI agents work together autonomously to accomplish complex tasks) to automate credential theft and other cyberattacks, requiring less human oversight than traditional methods. In one incident, attackers deployed an autonomous framework that harvested thousands of credentials in under six hours, while another exposed command-and-control server (a central server attackers use to coordinate compromised systems) called \"Recon\" managed over 23,800 stolen secrets like API keys. Google's threat intelligence team found that while fully autonomous hacking hasn't become widespread yet, various state-backed and financially motivated groups are experimenting with AI to automate reconnaissance, credential theft, malware development, and exploitation.","solution":"Google reported that Gemini, its AI model, caught many of these abuses early and responded in accordance with its safety protocols, allowing Google to take additional action, disrupt the campaigns, and ban the associated accounts. However, no specific technical mitigation, patch, or version update is explicitly described in the source for defending against or remediating this threat.","labels":["security"],"sourceUrl":"https://www.bleepingcomputer.com/news/security/hackers-build-ai-frameworks-for-widescale-credential-theft/","publishedAt":"2026-09-08T12:03:03.000Z","cveId":null,"cweIds":null,"cvssScore":null,"cvssSeverity":null,"severity":"high","attackType":["prompt_injection","supply_chain"],"issueType":"news","affectedPackages":null,"affectedVendors":["Google"],"affectedVendorsRaw":["Google","Gemini","OpenAI"],"classifierModel":"claude-haiku-4-5-20251001","classifierPromptVersion":"v3","cvssVector":null,"attackVector":null,"attackComplexity":null,"privilegesRequired":null,"userInteraction":null,"exploitMaturity":null,"epssScore":null,"patchAvailable":null,"disclosureDate":"2026-09-08T12:03:03.000Z","capecIds":null,"crossRefCount":0,"attackSophistication":"advanced","impactType":["confidentiality","integrity","availability"],"aiComponentTargeted":"agent","llmSpecific":true,"classifierConfidence":0.92,"researchCategory":null,"atlasIds":null}}