New Gaslight macOS Malware Uses Prompt Injection to Disrupt AIAssisted Analysis
News Source : Internet
News Summary
- A previously undocumented Rust-based macOS implant and information stealer has been found to embed a prompt injection payload.
- The payload is designed to trick a malware analyst's artificial intelligence (AI) tools and trick it into aborting or refusing an analysis of the artifact.
- The malware has been codenamed Gaslight owing to this deceptive behavior.
- It's been assessed with high confidence that the tool is the work of North Korea-aligned threat actors.
- "Its most notable feature is an embedded cascade of fabricated system-failure messages, designed to make an LLM-assisted triage agent doubt its own session," researcher Phil Stokes said.
Never miss a story from us, subscribe to our newsletter