The AI agent swarm that attacked Hugging Face is a warning for the future
An army of AI agents was responsible for the Hugging Face incident. What does it mean for the future of AI?
Cybersecurity researchers discovered 19 malicious browser extensions across Chrome and Edge that were designed to steal wallet secrets and drain cryptocurrency from users. The extensions, which shared code similarities and tradecraft patterns, were published over a six-month period, suggesting a coordinated campaign by the same threat actors. The findings highlight ongoing risks from malicious extensions targeting users' cryptocurrency assets.
Read full article at The Hacker News ↗An army of AI agents was responsible for the Hugging Face incident. What does it mean for the future of AI?
During my last FOR610 session, a student asked me if I had some statistics in mind about the compilers used to generate malicious PE files? A couple of months ago, I shared some stats about the trend in 64bits VS. 32bits malware[1]. Can we go a bit further? I (vibe-)coded a Python script based on the pefile library[2] to extract some info from the PE headers. Indeed, the PE file format contains a lot of metadata! They can be accessed using a lot of tools, like Detect It Easy:
It's 'built to be operated by a human with no technical background'
Dark Caracal has deployed GoCaracal, an upgraded variant of the Bandook toolkit, targeting a communications organization in Venezuela with novel command-and-control capabilities. The malware incorporates an Ethereum-based C2 fallback mechanism designed to maintain resilient communications even if primary command channels are disrupted. Arctic Wolf Labs researchers attribute the June 2026 intrusion to the Lebanon-linked espionage group, marking a continuation of their targeting of Venezuelan entities.