Tag: skills
-
North Korea’s APT Capabilities Are No Longer State-Exclusive
Tags: access, apt, cyber, finance, group, hacker, infrastructure, korea, lazarus, malware, military, north-korea, ransomware, skillsAhnLab Found Shared Malware, SSH Keys and Infrastructure Across Two Campaigns. Shared malware, infrastructure and access methods link Lazarus Group to Gunra ransomware activity, while former North Korean military hackers allegedly used state-trained skills to steal bank funds, exposing cyber capability diffusion and blowback inside the regime. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/north-koreas-apt-capabilities-are-no-longer-state-exclusive-a-32392
-
ESET tracks rise in malicious AI skills and adaptable malware
Attackers are adapting established techniques to AI platforms, emerging technologies, and changing user behavior. ESET’s new threat report examines the rise of malicious AI skills, AI-assisted malware, ClickFix attacks, record quishing activity, and ransomware tools designed to disable security software. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/eset-tracks-rise-in-malicious-ai-skills-and-adaptable-malware/
-
Chinese-Speaking Hacker Uses DeepSeek Agent to Launch Autonomous Cyberattacks
Chinese-speaking threat actor “knaithe” (aka KnYuan) has been caught running an AI-enabled autonomous attack stack built around DeepSeek and the Hermes Agent framework, proving that large language models can now drive end”‘to”‘end offensive operations with minimal human oversight. Hermes provided terminal access, skills orchestration, and Model Context Protocol (MCP) integrations. At the same time, DeepSeek…
-
SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 107
Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape Malware Newsletter UAC-0145 Primary Compromise Vectors as of July 2026 SleeperGem: Compromised git_credential_manager, Dendreo, and fastlane RubyGems Drop a Persistent Backdoor AgentBaiting: How 800+ Fake AI Skills and MCP Servers Delivered Malware Chaos ransomware’s msaRAT: Living…
-
Barracuda expands partner program around pipeline, skills and MSP growth
First seen on scworld.com Jump to article: www.scworld.com/news/barracuda-expands-partner-program-around-pipeline-skills-and-msp-growth
-
59 Prozent der Security-Rollen brauchen neue Skills – Cybersicherheit scheitert nicht am Fachkräftemangel
First seen on security-insider.de Jump to article: www.security-insider.de/cybersecurity-skills-gap-recruiting-problem-a-b55a39c337a0df571b20a33259602f1b/
-
AI can’t fix cybersecurity’s hiring problem
Organizations are redefining cybersecurity roles through workforce frameworks and placing greater emphasis on verified skills as AI and new regulatory requirements change … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/22/cybersecurity-workforce-trends-report/
-
AI agents tricked into recommending malicious GitHub repositories
Roughly 7,600 malicious GitHub repositories were uncovered, more than 800 of them posing as AI Skills or Model Context Protocol (MCP) servers, in a wave that peaked in April … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/21/github-repos-malware-campaign-fakegit-ai-agents/
-
AgentBaiting Uses Fake AI Skills and MCP Servers to Deliver SmartLoader and StealC Malware
AgentBaiting is the clearest sign yet that AI agents and their capability ecosystems have become a first”‘class malware delivery surface, with FakeGit’s 7,600″‘repo operation pushing SmartLoader and StealC directly into AI Skills and MCP workflows. By turning agent”‘readable READMEs, public AI registries, and GitHub trust signals into a weaponized “AI capability supply chain,” attackers now…
-
Neo Launches With $100M to Guard Agentic Enterprise Software
Agentic Security Startup Identifies AI Capabilities Embedded Across Enterprise Apps. Neo emerged from stealth with $100 million in funding to help enterprises discover, analyze and govern AI-enabled software, arguing that agentic applications, plug-ins and AI skills have created a fast-growing security blind spot that traditional endpoint tools weren’t built to address. First seen on govinfosecurity.com…
-
FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware
Cybersecurity researchers have discovered nearly 7,600 malicious GitHub repositories, out of which more than 800 pose as artificial intelligence (AI) skills or Model Context Protocol (MCP) servers to deliver a malware family known as SmartLoader as part of an ongoing campaign codenamed FakeGit.”FakeGit uses copied projects, lookalike developer profiles, convincing READMEs, and malicious ZIP First…
-
The top scorer for World Cup coverage | Brief letters
Barney Ronay | England’s World Cup | Former PMs fund | Jobs for hackers | Chatty waitersNow that it’s all over, it’s time to praise the skills of the Guardian football writers. Top scorer is Barney Ronay’s description of Thomas Tuchel’s pitch-side demeanour (<a href=”https://www.theguardian.com/football/2026/jul/10/nosferatu-golf-weekend-england-players-trust-thomas-tuchel”>10 July). “Nosferatu on a golfing weekend” is up there with…
-
Agentische KI: Produktivität mit hohem Risiko
Management Summary Agentische KI eröffnet Unternehmen erhebliche Produktivitätspotenziale, erweitert aber zugleich die Angriffsfläche, da KI-Agenten selbstständig auf Systeme, Daten und Anwendungen zugreifen können. Schatten-KI entsteht, wenn Mitarbeitende private oder nicht freigegebene Tools nutzen; dadurch können vertrauliche Informationen unkontrolliert an externe Dienste gelangen. Besonders kritisch sind Erweiterungen, Skills und Plugins, die manipuliert sein können und mit……
-
ESET-Warnung: Schadhafte AI Skills bieten KI-Agenten neue Angriffsflächen
First seen on datensicherheit.de Jump to article: www.datensicherheit.de/eset-warnung-schadhaft-ai-skills-ki-agenten-neu-angriffsflaechen
-
Malicious AI agent skills can slip past the scanners built to stop them
Developers who build with AI coding agents grab capabilities off public marketplaces the same way they grab packages from npm or PyPI. The add-ons are called agent skills. … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/09/malicious-ai-agent-skills-scan/
-
Thousands of malicious AI skills found capable of stealing data, running malware
AI agents can browse the web, use external tools, execute commands, and perform tasks on behalf of users. Many rely on skills that define how they interact with services and … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/07/08/eset-ai-threat-trends-report/
-
Middle East urged to prioritise prevention as cyber workforce gap hits 300,000
As cyber attacks accelerate and organisations expand their digital footprints, security leaders are being urged to prioritise prevention and zero-trust architectures over expectations that AI will close the region’s growing skills gap First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366645533/Middle-East-urged-to-prioritize-prevention-as-cyber-workforce-gap-hits-300000
-
Malicious Agent Skills Can Steal Credentials, Exfiltrate Source Code, and Install Backdoors
Malicious AI agent skills can be packaged to steal credentials, exfiltrate source code, and install backdoors while still bypassing many current skill-auditing systems. The paper finds that static scanners are especially weak against payload-preserving evasions, while runtime behavior auditing is far more resilient. The core threat is simple but serious: an agent skill is not…
-
SkillCloak Lets Malicious AI Agent Skills Evade Static Scanners with Self-Extracting Packing
Scanners meant to catch malicious add-on “skills” for AI coding agents can be fooled by a few simple changes that leave the malware working, according to a new study from researchers at the Hong Kong University of Science and Technology.Their strongest trick slipped past every scanner tested more than 90% of the time, and the…
-
ClawHavoc Attack Hits ClawHub With 1,184 Malicious Skills and 247,000 Installations
The AI-agent ecosystem experienced its largest supply-chain compromise to date when ClawHavoc detonated across ClawHub, the official skill marketplace for OpenClaw. Our full AIG-powered scan of nearly 50,000 ClawHub Skills found 1,184 clearly malicious packages tied to 12 compromised publisher accounts and confirmed 247,693 installations. The campaign combined typosquatting, ranking manipulation, and multi-stage payload delivery…
-
Weiterhin Engpässe bei Personal für Cybersecurity Sicherheit bleibt eine der gefragtesten Skills
First seen on security-insider.de Jump to article: www.security-insider.de/cloud-sicherheitskompetenzen-bedarf-waechst-a-4f0090f0904e65ca587dfe5b5b044f21/
-
More Malicious OpenClaw Skills Threaten AI Supply Chain
OpenClaw removed five packages from ClawHub, its skills marketplace, that bypassed security checks even though they included infostealers and other threats. First seen on darkreading.com Jump to article: www.darkreading.com/cyber-risk/malicious-openclaw-skills-clawhub-threaten-ai-supply-chain
-
Google’s open standard for AI agents to discover and verify tools
AI agents depend on tools, skills, and other agents spread across many teams, organizations, and platforms. These capabilities live in separate systems with their own … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/18/google-agentic-resource-discovery/
-
AI Is Reshaping Cybersecurity Training Priorities
ISC2 Survey Says AI Skills Top Training Agendas, But Teams Need to Act Quickly. AI now tops cybersecurity training priorities for 47% of security leaders, as critical cyber skills gaps are growing, according to an ISC2 survey. Most organizations train in-house, and 53% cite time – not budget – as the biggest barrier to effective…
-
Partners can help secure AI and increase trust
Context and Veeam underline the challenges and importance of securing artificial intelligence, while Arrow takes steps to increase partner skills around the technology First seen on computerweekly.com Jump to article: www.computerweekly.com/microscope/news/366643947/Partners-can-help-secure-AI-and-increase-trust
-
ClawHub, Cisco, and Vercel Skill Detection Tools Evaded by Malicious Uploads
Security researchers have shown that AI skill security scanners from ClawHub, Cisco, and Vercel’s skills.sh can be reliably bypassed using simple techniques, raising serious concerns about agentic AI supply chain defenses. In tests conducted by Trail of Bits, multiple malicious skills designed to exfiltrate data, hijack agents, or execute arbitrary code were successfully uploaded and…
-
NVIDIA goes open source with a big batch of physical AI agent tools
NVIDIA just dropped a big batch of open-source >>physical AI<< skills and tools, and they're designed to make a roboticist's life a whole lot easier. The … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2026/06/01/nvidia-open-source-physical-ai-skills/
-
JFrog-Report 2026: KI-Governance hinkt hinterher – Angriffe auf Software-Lieferketten explodieren
Besonders brisant ist die Entwicklung rund um KI-Agenten und automatisierte Entwicklerwerkzeuge. Viele manipulierte KI-Agenten-Skills mit gefährlichen Payloads First seen on infopoint-security.de Jump to article: www.infopoint-security.de/jfrog-report-2026-ki-governance-hinkt-hinterher-angriffe-auf-software-lieferketten-explodieren/a45250/
-
How Parts Inventory Management Software Fixes Inventory Challenges
Why do maintenance teams struggle? Is it because they lack skills? Or do they need more advanced resources?… First seen on hackread.com Jump to article: hackread.com/parts-inventory-management-software-inventory-challenges/

