New Gaslight macOS Malware Uses Prompt Injection to Disrupt AIAssisted Analysis

Image for article New Gaslight macOS Malware Uses Prompt Injection to Disrupt AIAssisted Analysis
News Source : Internet

News Summary

  • A previously undocumented Rust-based macOS implant and information stealer has been found to embed a prompt injection payload.
  • The payload is designed to trick a malware analyst's artificial intelligence (AI) tools and trick it into aborting or refusing an analysis of the artifact.
  • The malware has been codenamed Gaslight owing to this deceptive behavior.
  • It's been assessed with high confidence that the tool is the work of North Korea-aligned threat actors.
  • "Its most notable feature is an embedded cascade of fabricated system-failure messages, designed to make an LLM-assisted triage agent doubt its own session," researcher Phil Stokes said.

Must read Articles