Cybercriminals Use Fake AI Guides and Dev Tools to Spread AsyncRAT Malware

2026-06-11T14:52:17Z4fb9041f7d1ea62a898ea365dc52e1bef47a637384b93ef5209097d2e18af438
AI-assisted malwareAsyncRATChromeEverest FormsSilabRATSniperDzVidaragentjackingphishingphpBBransomware/extortionvulnerability-managementzero-day

What happened

Multiple active campaigns and vulnerabilities reported: threat actors are distributing AsyncRAT via fake AI guides and malicious developer tools (with indicators of AI-assisted coding), while other campaigns push Vidar stealer via fake software videos and SilabRAT trojan for session/crypto theft. Law enforcement dismantled the SniperDz phishing-as-a-service platform. Research warns of new “agentjacking” attacks that can hijack AI coding agents. Vulnerability activity is high — Microsoft fixed ~200 CVEs (including three zero-days), Google patched Chrome CVE-2026-11645 (in-the-wild exploit), and

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
infosecurity_magazine
Record identifier
4fb9041f7d1ea62a898ea365dc52e1bef47a637384b93ef5209097d2e18af438
Enrichment time
2026-06-11T14:52:17Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.